Privacy Policy
Effective Date: February 10, 2026
At Lobsterpod (“we,” “us,” or “our”), we take your privacy seriously. This Privacy Policy explains how we collect, use, share, and protect your personal information when you use our managed AI agent hosting platform at lobsterpod.com (the “Service”).
1. Information We Collect
1.1 Information You Provide
- Account Information: Email address and authentication credentials (via Google OAuth).
- Payment Information: Billing details processed through Stripe. We do not directly store your complete credit card information.
- AI Agent Configuration: Configuration settings for your AI agents, including messaging channel tokens, agent prompts, and workflow definitions.
- Support Communications: Messages and attachments you send to support@lobsterpod.com.
1.2 Information Collected Automatically
- Usage Data: AI agent activity, deployment logs, API requests, and feature usage patterns.
- Spending and Credits Data: AI credit consumption, spending patterns, and subscription usage to enforce budget caps.
- Technical Information: IP addresses, browser type, device information, operating system, and access times via Vercel.
- Analytics: Vercel Analytics for page views, session duration, and navigation patterns.
1.3 Information from Third Parties
- AI Model Providers: When your agents process requests, message content passes through AI routing services (OpenRouter/LiteLLM) and AI model providers. We receive usage metadata but do not store message content beyond temporary processing.
- Messaging Platforms: When you connect channels (Telegram, Discord, Slack), we receive only data necessary to operate your agents.
2. How We Use Your Information
- Provide the Service: Deploy and manage AI agents, route messages, enforce budget caps, and maintain isolated infrastructure.
- Process Payments: Handle subscription billing, apply AI credits, and prevent fraud.
- Communicate: Send service updates, billing notifications, security alerts, and respond to support requests.
- Improve the Service: Analyze usage patterns to enhance features and optimize performance.
- Security: Detect abuse, prevent unauthorized access, and enforce our Terms of Service.
- Legal Obligations: Respond to lawful requests and enforce our legal rights.
3. How We Share Your Information
We do not sell your personal information. We share data only with:
3.1 Service Providers
- Stripe: Payment processing and subscription management.
- Vercel: Platform hosting and analytics.
- Supabase: Database hosting and authentication.
- OpenRouter/LiteLLM: AI model routing and API gateway.
- AI Model Providers: Your agent messages are processed by providers (OpenAI, Anthropic, etc.) per your configuration.
These providers are contractually obligated to protect your data.
3.2 Legal Requirements
We may disclose information if required by law, legal process, or to protect the rights, property, or safety of Lobsterpod, our users, or the public.
3.3 Business Transfers
If Lobsterpod is involved in a merger, acquisition, or sale of assets, your information may be transferred. We will notify you of any such change.
4. Data Security
- Encryption: All data in transit uses TLS encryption.
- Isolated Infrastructure: Each user's AI agents run in isolated Kubernetes containers.
- Access Controls: Employee access to personal data is restricted on a need-to-know basis.
- Budget Enforcement: Hard spending caps prevent runaway AI costs.
No system is completely secure. You are responsible for maintaining the confidentiality of your account credentials.
5. Data Retention
- Active Accounts: Data retained while your account is active.
- Deleted Accounts: Minimal information retained for 90 days for legal compliance and fraud prevention.
- Usage Logs: AI agent logs and spending data retained for 90 days.
6. Your Rights and Choices
GDPR Rights (EEA Residents)
If located in the EEA, you have the right to: access, rectification, erasure, restriction, portability, objection, and withdrawal of consent.
We process data based on: contract performance, legitimate interests, consent, and legal obligations.
All Users
- Update account information through your dashboard.
- Request a copy of your agent configurations and usage data.
- Delete your account at any time.
- Unsubscribe from marketing emails.
To exercise these rights, contact support@lobsterpod.com. We will respond within 30 days.
California Privacy Rights (CCPA)
California residents have the right to know, delete, and opt-out. We do not sell personal information.
7. International Data Transfers
Your information may be transferred to countries outside your residence, including the United States. We implement appropriate safeguards including Standard Contractual Clauses and Data Processing Agreements.
8. Children's Privacy
The Service is not intended for users under 18. We do not knowingly collect information from children. Contact support@lobsterpod.com if you believe we have.
9. Cookies and Tracking
- Essential Cookies: Required for authentication and session management.
- Analytics: Vercel Analytics for usage statistics.
- Authentication: Google OAuth tokens for sign-in.
We do not use third-party advertising cookies or cross-site tracking.
10. Changes to This Policy
We may update this policy from time to time. We will notify you of material changes by posting a notice on lobsterpod.com and sending an email. Continued use after changes constitutes acceptance.
11. Contact Us
Email: support@lobsterpod.com
Website: lobsterpod.com
For GDPR-related inquiries, include “GDPR Request” in your email subject line.