← Back to ThoughtProof

Privacy Policy

Effective: 19 September 2026 · ThoughtProof LLC · Deutsche Fassung (Website)

Privacy Terms Imprint

1. Who we are

ThoughtProof LLC
30 N Gould St, Ste N
Sheridan, WY 82801
United States

Contact: raul@thoughtproof.ai
Managing Member: Raul Jäger

This Privacy Policy describes how we handle information when you use thoughtproof.ai, our APIs (including api.thoughtproof.ai, verify.thoughtproof.ai, v3.thoughtproof.ai), dashboards, SDKs, CLI tools, MCP servers, and third-party agent surfaces that call our APIs (for example Meta Muse custom or directory connectors).

2. Summary

  • The marketing website is informational and does not use advertising cookies or analytics pixels.
  • API and product use requires account and key data so we can authenticate requests, bill usage, and issue verification receipts.
  • Verification requests may include mandates, proposed actions, reasoning text, and related context that you or your agent submit.
  • We do not sell personal data.
  • Agent platforms (e.g. Muse) that call ThoughtProof are separate controllers for their own user data; we process API traffic as described here.

3. Website visitors

For ordinary browsing of the public website:

  • No first-party advertising cookies
  • No Google Analytics / Matomo / ad pixels on the static site
  • No website account required to read docs or this policy

The site is hosted by Vercel Inc. Vercel may process technical server logs (IP address, timestamp, requested URL, user agent) as needed to operate the CDN and security edge. See Vercel’s privacy policy.

4. Product and API data

4.1 Account and billing

Depending on the product surface you use, we may process:

  • Name, work email, company name
  • API keys and operator identifiers
  • Billing and payment metadata (e.g. Stripe customer/subscription ids; on-chain payment references such as x402/USDC where used)
  • Usage metrics (request counts, tiers, rate-limit counters)

4.2 Verification content

When you or an agent calls our verification endpoints, the request body may include user mandates, proposed actions, model reasoning, evidence/context strings, agent ids, and related metadata. We process this content to:

  • Run verification and return a verdict / execute flag
  • Generate receipts, attestations, or audit artifacts you request
  • Operate abuse prevention, security, and service reliability
  • Improve product quality where permitted by your plan and settings

Do not submit secrets you do not intend us to process (passwords, raw private keys, full payment card PANs, health records, or other regulated data) unless a written agreement expressly covers that use case.

4.3 Agent and connector integrations

If you connect ThoughtProof through an agent product (including Meta Muse), that product may send verification requests on your behalf using credentials you provide to that product’s secure credential store. ThoughtProof receives the API call and associated payload; the agent product’s own privacy policy governs how it collects and stores your credentials and chat history.

5. Legal bases (EEA/UK where applicable)

  • Contract — providing the API and account you request
  • Legitimate interests — security, fraud prevention, service stability, limited product analytics
  • Legal obligation — tax, accounting, lawful requests
  • Consent — where required for optional communications

6. Sharing

We share data only with:

  • Infrastructure providers (hosting, edge, databases, email delivery) under contract
  • Payment processors (e.g. Stripe; blockchain networks for crypto rails)
  • Model / compute providers used to perform verification when your request requires multi-model evaluation
  • Professional advisers under confidentiality
  • Authorities when legally required

We do not sell personal information.

7. International transfers

ThoughtProof LLC is US-based. Data may be processed in the United States and other countries where our processors operate. Where required, we use appropriate safeguards (e.g. standard contractual clauses / framework participation by processors).

8. Retention

  • Account and billing records: for the life of the account and as required by law
  • API logs and verification receipts: according to product tier / configuration; security logs may be kept longer
  • Email correspondence: as needed to handle the request

9. Security

We use industry-standard controls appropriate to an API product (TLS in transit, access-controlled keys, least-privilege operations). No method of transmission or storage is 100% secure. Report issues to raul@thoughtproof.ai.

10. Your rights

Depending on your location, you may have rights to access, correct, delete, restrict, or port personal data, and to object to certain processing. Contact raul@thoughtproof.ai. EEA users may lodge a complaint with their supervisory authority.

11. Children

Our services are not directed to children under 16 (or the higher age required in your jurisdiction).

12. Changes

We may update this policy. The “Effective” date above will change. Material changes may be announced on the website or by email where appropriate.

13. Contact

Privacy questions: raul@thoughtproof.ai
Terms of Service: https://www.thoughtproof.ai/terms