Privacy Policy
Last updated: August 17, 2026
This Privacy Policy describes how Funkshin handles personal information when you visit our websites, create an account, or use the Funkshin platform.
1. Controller and processor roles
For account administration, billing, security, service analytics, support, and operation of the Funkshin website, Funkshin is the controller of the relevant personal information. For personal information that a business customer places into a workspace or sends through an agent on its behalf, the customer is generally the controller and Funkshin is generally the processor. The customer is responsible for providing lawful instructions, notices, and rights support to the people whose data it submits.
Our Data Processing Agreement applies to customer workspace data processed on the customer's behalf. If the nature of a particular processing activity differs, the applicable written agreement controls.
2. Information we collect
We collect information you provide, information generated by your use of the service, and information received from service providers. This may include:
- Account details such as your name, email address, organization, login credentials, and workspace information.
- Billing and transaction details, processed through payment providers where applicable.
- Your Content, including prompts, files, knowledge-base material, workflow instructions, agent configurations, connected-account details, and outputs.
- Usage data such as token consumption, feature activity, logs, error reports, device information, browser type, IP address, and approximate location derived from IP address.
- Communications you send to us, including support requests and feedback.
3. Purposes and legal bases
Where GDPR applies, we process information on the following bases: performance of a contract to provide accounts and requested features; legitimate interests to secure, maintain, improve, and support the service, prevent abuse, and keep business records; compliance with legal obligations; and consent where we ask for it, including for optional cookies or marketing. Where we rely on legitimate interests, we balance those interests against your rights and reasonable expectations.
We process token counts, selected models, model routes, usage dates, and workspace or application identifiers to calculate provider-related model costs and Funkshin's variable platform margin, show usage information, and issue billing records. The margin varies with usage and other pricing factors and decreases at higher usage volumes as described on the applicable pricing page. We do not use Your Content to train general-purpose AI models unless we clearly tell you and obtain any consent required by law.
4. How we share information
We may share information with:
- Infrastructure, hosting, storage, analytics, customer-support, payment, email, security, and other vendors that process information on our behalf.
- Netcup, which provides hosting or virtual-server infrastructure for Funkshin and may host platform data, agent runtimes, logs, and backups depending on the deployment.
- OpenRouter when a workspace or agent is configured to use it. OpenRouter may route a request to the model provider selected by the user or configured by Funkshin.
- Direct model providers when a workspace uses a provider without OpenRouter.
- A customer-owned inference server when the customer configures one. In that case, Funkshin may transmit requests and results, while the customer controls the inference environment.
- Your organization, workspace administrators, and other users according to your workspace permissions.
- Authorities or other parties when required by law or reasonably necessary to protect rights, safety, security, or the service.
- A buyer, successor, or advisor in connection with a merger, financing, acquisition, restructuring, or sale of assets.
Our current provider categories and processing purposes are listed in the Subprocessor List. We do not sell personal information for money.
5. AI routing and provider responsibility
Funkshin can support several routes: Funkshin to OpenRouter to a model provider; Funkshin directly to a model provider; or Funkshin to an inference server controlled by the customer. The route, model, provider, location, retention, and training practices can differ. Before sending personal, confidential, or regulated data, review the selected provider's terms and privacy documentation and confirm that the route is appropriate.
Providers may process prompts, files, system instructions, metadata, and outputs to deliver, secure, monitor, or comply with their services. Funkshin will not intentionally use customer content for general model training, but a provider's own processing terms may apply to data sent through that provider.
Funkshin may use automated systems to process requests, but we do not make decisions about your legal rights or similarly significant matters solely through automated processing.
6. Cookies and similar technologies
Necessary cookies support login, security, session management, preferences, and service operation. Optional analytics or marketing cookies will be used only where permitted and, where required, after consent. You can withdraw optional cookie consent through the applicable consent controls or your browser settings. A separate Cookie Policy explains the categories in more detail.
7. Retention and deletion
We retain account, billing, security, and service records for as long as needed for the purposes described above and for legal or accounting requirements. Customer workspace content is retained according to the customer's account configuration and the Data Processing Agreement. Provider and infrastructure logs may have separate retention periods.
You may request deletion of your account or personal information by contacting us. Deletion may be delayed or limited where we must retain information by law, for security, fraud prevention, backups, or legitimate business records. Workspace administrators may control or delete content belonging to their organization.
8. Security and incidents
We use reasonable administrative, technical, and organizational safeguards designed to protect information, including access controls, authentication, encryption where appropriate, logging, and provider controls. No internet transmission or storage system is completely secure. Keep your credentials and access tokens confidential and notify us promptly of suspected unauthorized access.
We will notify affected customers of a personal-data breach without undue delay where required by the Data Processing Agreement or applicable law.
9. International transfers
Funkshin, Netcup, OpenRouter, direct model providers, and other service providers may process information outside the EEA. Before making a restricted transfer, we will use an applicable GDPR mechanism, such as an adequacy decision, Standard Contractual Clauses, or another lawful safeguard. Because provider routes can vary, customers must review the selected route and may avoid external providers by using an approved customer-owned inference server where available.
10. Your choices and rights
Depending on your location, you may have rights to access, correct, delete, restrict, object to, or receive a copy of your personal information, and to withdraw consent where processing is based on consent. You may also have the right to data portability and to complain to a data-protection authority.
To make a request, contact legal@funkshin.com. We may verify your identity and will respond within the period required by applicable law. If you use Funkshin through an organization, that organization may be the controller of workspace content and you should direct requests to its administrator first.
11. Children
Funkshin is not intended for children under the age required to use online services in their jurisdiction. We do not knowingly collect personal information from children. If you believe a child has provided information to us, contact us so we can investigate and delete it where appropriate.
12. Business and workspace data
When an organization uses Funkshin, the organization may control the workspace and content. Workspace administrators may access, modify, export, or delete content and may manage user access. If you have questions about an organization's handling of your information, contact that organization.
13. Changes to this Policy
We may update this Privacy Policy as our services or legal obligations change. We will post the updated version and revise the "Last updated" date. If a change is material, we will provide additional notice where required. Your continued use of Funkshin after an update means the updated Policy applies to future processing.
14. Contact
Questions or privacy requests can be sent to legal@funkshin.com.
