Makojima is the business that operates makojima.com and the public Model API (the "Service"). This Privacy Policy explains what the current public Service handles, why it is handled, how long it is kept, and the choices available to you.
Scope
This policy applies to the public website, Makojima accounts, Developer Access, API Activity, and requests sent to the public Model API. It does not describe an unreleased prototype, internal operator system, or future dataset, adapter, training, marketplace, payment, website Chat, Agent, speech, image, video, CLI, MCP, or extension product as an available service.
Information We Handle
Account And Authentication Information
We handle your email address, account and authentication identifiers, profile name, username and username-change history, email-verification state, account status, security settings, two-factor authentication metadata, recovery status, and the timestamps needed to enforce account rules. Our authentication provider stores the password verifier. Makojima application code does not receive a readable password.
For security, we process sign-in and account events, rate-limit state, keyed network or account identifiers, and bounded request context. For denied requests and important authentication or credential events, we may retain a raw IP address, city, user agent, verified account ID when available, and sanitized path for up to 30 days. We exclude passwords, cookies, bearer credentials, request bodies, two-factor codes, recovery codes, and private model content from that forensic record.
Developer Credentials And Applications
For an API key, we store its account, name, prefix, keyed verification value, creation and expiration times, status, last use, rotation history, and revocation information. The complete key is returned only after creation or rotation and is not stored in retrievable form.
For Sign In with Makojima, we store the registered application, exact callbacks, requested and approved permissions, account grant, application installations, hashed access and refresh credentials, refresh families, single-use authorization records, revocation state, password-change access version, and safe last-use and security events. The application receives only the public data and actions covered by the approved permission.
Model API Requests And Results
We process the messages and settings you submit, selected model, generated result, request and conversation IDs, ordered result checkpoints needed for delivery and recovery, timestamps, status, cancellation state, safe failure reason, and credential or application attribution.
Cloudflare transports the authorized request and response. Durable request, ownership, credit, and result records remain in Makojima's database and storage. Customer content is not used as durable Cloudflare history. The capacity controller receives the approved work and runtime facts needed to place it; it does not receive your account settings, password, API key, application refresh credential, or cloud-administrator credential.
Credits Usage And Operations
We store Trial and Premium grant records, eligibility, expiration, reservations, allocations, settlements, corrections, and exact usage. These records let all credentials for an account share one balance and prevent duplicate reservation or settlement. If financial, tax, refund, dispute, or payment evidence exists from a separately offered transaction, we can retain that evidence for the legally required period even when the related product is no longer active.
Public Website Information
When you visit public pages, infrastructure can process your IP address, user agent, requested path, time, response status, and coarse network or geographic context. Makojima uses cookieless traffic and performance measurement as described in the Cookie Policy. Public model metadata and documentation do not contain your private account data.
How We Use Information
We use information to authenticate accounts; issue and verify credentials; show the correct account, models, requests, results, and balances; authorize, route, stream, cancel, and recover model work; reserve and settle credits; prevent fraud and abuse; protect people and systems; diagnose failures; meet legal duties; enforce our Terms of Service and Acceptable Use Policy; and answer support, security, privacy, accessibility, and copyright requests.
We do not sell personal information or use it for cross-context behavioral advertising. We do not place private account or Model API content in public caches, model catalogs, analytics event properties, or public model pages.
Model Processing And Training
The selected model runtime receives the content needed to answer your request. Makojima applies account, credential, model, context, credit, capacity, retention, cancellation, and safety checks before and during processing. The public response does not reveal the worker address, provider credential, route secret, controller access, or private infrastructure details.
The current Service does not use private Model API content to train a Makojima model and does not offer a training-consent control. Any future training use would require a separate prospective choice and documented retention, withdrawal, rights, and security rules. Copying, retrying, exporting, or reprocessing a request does not create a new consent or restart its original retention deadline.
How We Share Information
We share information only as needed to provide and secure the Service; follow your direction, such as authorizing a registered application; comply with law or valid legal process; investigate abuse, compromise, or rights complaints; protect people and systems; or complete a business transaction subject to applicable safeguards.
We do not disclose one account's private models, credentials, requests, results, balances, settings, or files to another account. An application can access only its approved permission bundle and its attributable requests. Revocation stops future access but cannot erase information the application already received.
Service Providers
The current Service uses Vercel for website hosting and delivery; Supabase for authentication, database, and protected storage; Cloudflare for the public Model API transport, security controls, and related infrastructure; approved GPU and infrastructure providers for self-hosted model execution and controller hosting; a transactional email provider for essential account messages; and optional scrubbed monitoring where configured.
Each provider receives only the information needed for its role under the applicable configuration and agreement. Customer credentials are not provider-administrator credentials. We do not describe Hugging Face imports, Stripe, PayPal, seller verification, marketplace payouts, or another parked integration as active processing merely because historical code or retained records once referenced it.
Security
We use technical and organizational measures intended to protect information, including server-side authorization, row-level database controls, one-way or keyed credential verification, short-lived application access tokens, rotating refresh credentials with replay detection, encrypted transport, restricted service credentials, private controller administration, request bounds, audit events, and least-privilege access.
No system is completely secure. Protect your password and credentials, use a protected credential store, review API Activity, and revoke access you do not recognize. Two-factor authentication is strongly recommended. Contact hello@makojima.com if you suspect compromise. Do not email a password, API key, token, two-factor code, or recovery material.
Retention And Deletion
Model API request content and results expire 30 days after the request is accepted. Retries, copies, checkpoints, exports, or later writes do not restart that deadline. Request identity, usage, settlement, security, and abuse evidence can be retained separately when needed without retaining the request body or generated text.
Archiving, restoration, and website conversation history are not features of the current Model API release. API Activity shows authorized request metadata rather than a permanent message-history view.
Account deletion removes ordinary access and starts a restricted 30-day retention period for covered account content, followed by purge. An earlier request-content deadline remains earlier. New writes, retries, or exports cannot recreate content after its deletion boundary. A narrow legal, security, abuse, or dispute hold can preserve only the affected information for longer when required.
Raw security evidence is normally kept for 30 days and pseudonymous security records for up to 90 days. Required financial, tax, contract, refund, dispute, and legal records may be retained for up to seven years or another period required by law. Backup deletion follows the verified backup lifecycle, and a restored backup must replay deletions before serving traffic.
Your Choices And Rights
Settings lets you review account and security information, enable two-factor authentication, request an export, and request account deletion. Developer Access lets you create, rotate, and revoke API keys and revoke connected applications. API Activity lets you inspect safe request and credit metadata and cancel eligible work.
An export is a private, expiring JSON package containing information you are permitted to receive. It excludes credentials, internal prompts, private infrastructure, proprietary security details, and other people's data. A source record that expires or is revoked before the package is retrieved can be listed as unavailable rather than recreated. Statutory access, correction, objection, restriction, portability, and deletion requests may also be sent to legal@makojima.com, subject to identity verification and applicable exceptions.
International Processing
Makojima is operated from the United States. Information may be processed in the United States and other locations where approved service providers operate. Applicable rights and transfer requirements can vary by location.
Children
The Service is not directed to children under 16. If you believe a child provided personal information contrary to these Terms, contact legal@makojima.com so we can review and take appropriate action.
Changes To This Policy
We may update this policy when the public Service or its handling practices materially change. We will provide notice and request renewed agreement where required. The displayed effective date identifies the current version.
Contact Us
Privacy and legal requests may be sent to legal@makojima.com. Technical and security support may be sent to hello@makojima.com. Include only the information needed to identify the request and do not send credentials or recovery material.