Privacy
Last updated 18 September 2026
This describes what The Interagentic Company collects when you use the services we operate, and what the protocols are designed to avoid collecting in the first place.
What we never receive
- Private keys. They are generated on your machine and stay there. We only ever see a public key and a signature.
- Your API traffic, when you self-host the proxy. A self-hosted proxy asks us only for the credential values it needs, keyed by placeholder name. Request and response bodies never reach us.
- Provider credentials, in readable form. Credentials you connect are encrypted at rest and released only to satisfy a call you authorised.
Identity is scoped per service
When a service asks the broker whether a human is linked to an agent, it receives an identifier derived from its own domain together with our internal user identifier. The derivation is stable for that pair and is not reversible.
The practical effect is that the same person appears as an unrelated identifier at every service they use. Two services comparing notes cannot determine that they are talking about the same human. A service also sees only the permissions granted to it — never what you granted to anyone else, and never which other services you use.
What we do collect
- Account details. The email address you sign in with, and billing details where you have bought services.
- Namespaces and public keys. Public by design: a namespace’s key set is world-readable, because that is what lets anyone verify your agent without asking us.
- Call records. For calls that go through services we operate: which agent, which provider, which scopes, when, and the result status. Not the request or response bodies.
- Charges. What was bought, by which agent, from which provider.
- Beta requests. If you request beta access, the email address you verified, the page you asked from, and when. The verification code is sent by AuthLocker, our email-verification service. A cookie then remembers for 90 days that you have joined, so you are not asked again. We use your address only to tell you when your access is ready.
Website analytics
This site uses no advertising cookies and no cross-site tracking. That is also why you have not been shown a consent banner: there is nothing to consent to.
Retention
Call records and charge records are kept while your account is open, so you can audit what your agents did. Deleting your account removes them, except where we are required to keep billing records.
Your rights
If you are in the European Union, the United Kingdom, or another jurisdiction with equivalent law, you can request access to your data, correction, deletion, or a portable copy. Write to hello@interagentic.dev and we will respond within the period the law requires.
Running your own
Everything above applies to the broker we operate at id.interagentic.dev. The protocol does not privilege it. If you would rather we held nothing at all, run your own broker and your own proxy — agents and services will treat yours exactly the same way.
Contact
This page describes how the service works and is written to be read. It is not legal advice, and it is not a substitute for review by counsel in your own jurisdiction.