Privacy Policy

Last updated: September 3, 2026

Voxell, Inc. (“Voxell,” “we,” “us”) operates the Forge embedding platform and related services. This Privacy Policy explains how we collect, use, and protect information when you use our services.

1. Information We Collect

  • Account information: Email address, name, and hashed password when you create a Forge account. If you sign up via Google or GitHub, we receive the account identifier and email address those providers share with us.
  • Billing information: Payment details are collected and processed by Stripe. We store your Stripe customer ID but never your card number.
  • Usage data: API request counts, token volumes, model selection, and request origin country for billing and analytics.
  • Content you submit: Documents and queries you ingest into the Answers or Spaces products are stored to provide those products, and are processed by our LLM subprocessor (see §4) to generate answers.
  • Infrastructure telemetry: GPU utilization, latency, error rates, and other operational metrics from our inference nodes. This data is about our infrastructure, not about you or your content.

2. How We Use Your Information

  • To provide and operate the Forge embedding API, Answers, and Spaces products.
  • To process billing and usage metering through Stripe.
  • To monitor and improve service reliability.
  • To respond to support requests.

3. Third-Party API Keys You Provide (BYOK)

Some Answers features let you supply your own third-party API key (e.g., for a comparison measurement against another provider’s embedding model). That key is used only for the single request it authorizes, is never written to our database, and is never logged. It is discarded once the request completes.

4. Data Sharing

We do not sell your personal information. We share data only with:

  • Stripe: Payment processing.
  • Slack: Internal alert delivery to the Voxell team (not a customer-facing feature).
  • Cloudflare: API gateway, CDN, and edge caching.
  • Google Cloud Platform (GCP) / RunPod: Infrastructure hosting for our control plane and inference nodes.
  • Google Gemini / Vertex AI: When you use the Answers product, your query text and the document passages retrieved to answer it are sent to Google’s Gemini API (via Vertex AI) to generate the answer. This is separate from GCP-as-infrastructure-host above — it is a processor of your content, not just a hosting provider.
  • Resend: Delivery of transactional email (account verification, receipts, notifications).
  • Google / GitHub: If you sign up or sign in using Google or GitHub, those providers process your authentication on our behalf per their own privacy policies.

5. Data Retention

Account data is retained while your account is active. Usage records are retained for billing reconciliation (rolling 90 days of hourly records, daily aggregates retained indefinitely). Infrastructure telemetry (heartbeats, alert history) is pruned after 30 days. You may request account deletion at any time via your account settings or by emailing support@voxell.ai.

6. Security

We use industry-standard measures to protect your data: passwords are hashed with bcrypt, API keys are stored as SHA-256 hashes, all traffic is encrypted in transit with TLS 1.3 (AES-256-GCM), with TLS 1.2 the minimum accepted and older versions refused, and JWT tokens expire after 15 minutes. Infrastructure access is restricted to authorized personnel.

7. Your Rights

You may access, correct, or delete your personal data at any time. For requests, contact support@voxell.ai.

8. Changes

We may update this policy from time to time. Material changes will be communicated via email to account holders.

9. Contact

Voxell, Inc. Email: support@voxell.ai Web: https://voxell.ai