Privacy Policy

Last updated: February 2026

1. Information We Collect

Account Information

When you sign up, we collect your email address and payment information (processed by Stripe). We do not store your credit card details.

Assistant Data

Your AI assistant stores data that you create through interactions: conversation history, memory entries, preferences, scheduled tasks, and configuration. This data is stored on encrypted, isolated storage dedicated solely to your account.

Usage Data

We track AI token usage for billing purposes (number of tokens processed, models used, timestamps). We do not track or store the content of your conversations for billing.

2. How We Use Your Information

  • To provide and maintain the Service
  • To process payments and track usage for billing
  • To send service notifications (low credit balance, maintenance, etc.)
  • To respond to support requests

3. Data Sharing

We share your data only with:

  • AI Model Providers (OpenAI, Anthropic): Your messages are sent to these providers for AI processing. They have their own privacy policies.
  • Stripe: For payment processing.
  • AWS: Your data is hosted on AWS infrastructure.
  • Messaging Platforms (WhatsApp, Telegram): Messages flow through these platforms when you use them.

We never sell, rent, or share your personal data or assistant data with any other third party.

4. Data Security

We implement the following security measures:

  • Network isolation: Each customer's assistant runs in an isolated container with its own network boundary
  • Storage isolation: Each customer has a dedicated, access-controlled storage volume
  • Encryption: All data is encrypted at rest and in transit
  • API key protection: AI provider API keys are centrally managed and never exposed to customer instances
  • Hardened configuration: OpenClaw is configured with restricted permissions (sandboxed execution, disabled browser automation, restricted skill installation)

5. Data Retention

  • Active accounts: Data is retained as long as your subscription is active
  • Cancelled accounts: Data is retained for 30 days after cancellation, then permanently deleted
  • Usage records: Billing records are retained for 7 years for tax/legal compliance

6. Your Rights

  • Export: You can export all your assistant data at any time from the dashboard
  • Delete: You can request deletion of your data by cancelling your subscription (data deleted after 30 days) or by contacting support for immediate deletion
  • Access: You have full access to your assistant's data through the dashboard and messaging integrations

7. Known Limitations

OpenClaw is open-source software with known security considerations. While we apply security hardening, we want to be transparent:

  • AI agents can be susceptible to prompt injection attacks through ingested data
  • Your assistant has access to connected services (calendar, email, etc.) which increases the potential impact of any security incident
  • We cannot guarantee that data sent to AI model providers is handled according to our standards

8. Contact

For privacy-related questions or requests, contact us at info@hello-claw.ai.