Privacy Policy
In progress. We are finalizing this policy with legal counsel.
Draft notice. This page is here so visitors can find the policy location while the final legal text is being prepared. It is not yet the final counsel-approved privacy policy.
Information we expect to cover
The final policy is expected to describe account information, product usage information, marketplace transaction records, seller listing data, support communications, and security or audit records needed to operate Amnetic.
Website analytics
We use Plausible Analytics to measure aggregate site and product usage, including page visits and coarse interactions with signup and portal actions. Plausible is cookieless, sets no persistent identifiers, and does not track you across sites. We configure custom analytics events not to include emails, names, account or listing IDs, tokens, transaction amounts, uploaded content, or other free-form user data; we see anonymous, aggregate statistics.
Identity verification
Identity verification is performed by Stripe. Amnetic receives verification status, not the underlying identity documents.
Email we send
We email only registered users, and only about their own account and the deals they are party to: the sign-up verification code; notices when a buyer requests your data, a draft is waiting for your sign-off, a quote is ready, a buyer has accepted and paid, or a newer version of a listing you bought is available; and reminders when a deal is still waiting on you or your quote is about to expire. We do not send marketing email, and we do not sell email addresses.
Every reminder email has a one-click unsubscribe link. Notices about a deal you are party to are part of using the service. Addresses that bounce or mark our mail as spam are automatically suppressed from further sending. Deal notices and reminders are sent through Amazon Simple Email Service from notifications@amnetic.ai.
Buyer-agent playground — AI providers
The buyer-agent playground is an invited beta in which you upload a document and a reference AI agent analyzes it for you. Claude models, developed by Anthropic, are served by AWS Bedrock in Amnetic's AWS account. Under AWS Service Terms section 50.12.5, AWS may share model-usage information with a model's provider but not Your Content; Amnetic denies the provider_data_share retention mode and never opts into Anthropic abuse-detection content transfer. The bounded residuals are AWS-only abuse-detection retention of inputs and outputs for up to 30 days for models listed on AWS's abuse-detection page (none we route as of 2026-09-08), prompt-cache retention of cached prefixes for up to one hour (account-isolated, never shared with model providers; a cached prefix can include the caller-session transcript), Amnetic-side operator debug access to LLM request and response content under the signed CapDebugLLMContent capability, logged to CloudWatch with retention of no more than 30 days, and sealed playground traces governed by the playground retention design. AWS Bedrock Titan Embed v2 generates search embeddings so documents can be indexed. Amnetic can delete the document and its derived data from Amnetic's own systems. Only upload content if you are entitled to use the content and to have it processed by Amnetic's sub-processors (AWS Bedrock for inference and embeddings, E2B as the sandbox provider). See Where your data goes for the model-layer disclosure.
Closing your account
When your account is closed, its API keys are revoked and the marketplace, its API and its MCP server refuse every new request from it straight away. Sessions already signed in to our hosted-agent service end within 60 minutes of your sign-in identity being deleted. After closure:
- Your sign-in identity is deleted within 30 days.
- API keys stop working at closure and are deleted within 30 days.
- Your profile, listings that were never sold (except as below), drafts and uploads, evaluations, agent conversations and buyer-session transcripts, and your entries in our email-send log are deleted or de-identified within 90 days, including from backups.
- Messages and inquiries about deals are kept for 2 years, then deleted.
- Payment, credit, payout and tax records and the verification status Stripe gives us are kept for 7 years after the end of the tax year of your last transaction.
- Terms-acceptance records, and the records of what you published, approved or priced as a seller (including IP address and browser), are kept for 7 years after closure.
- Signed license agreements are kept for 10 years; audit, fraud-prevention and trust records for 7 years.
- Listings you sold are kept, and stay available to the buyers who licensed them for as long as their licenses allow; they are not deleted when those licenses end. A listing that was never sold is kept in the same way if a buyer licensed its sample, a slice of it or a listing derived from it.
- We keep your unsubscribe, bounce and spam-report status so we never email you again.
- If a seller put your email address on an access list, which decides who may buy their listings, that entry is kept, so it still applies if you sign up again.
- A seller's hosted agent you dealt with keeps the name it knew you by, what it remembered about you and your messages to it, for as long as the seller keeps that agent.
- Application logs are kept up to 90 days and database backups 35 days. Security audit logs, which can record the names of files you upload, are kept up to 400 days.
- A legal hold pauses deletion of what it covers. A hold on a deal, evaluation, buyer session or listing connected to yours, or on the account of someone you dealt with, can also keep your listings derived from theirs, your evaluations, requests and messages with them, your agent conversations and the email address on your account until it is released.
Contact
Questions about privacy can be sent through the contact path on the About page while the dedicated privacy contact is finalized.