funkshin
Legal

Privacy Policy

Last updated: August 17, 2026

This Privacy Policy describes how Funkshin handles personal information when you visit our websites, create an account, or use the Funkshin platform.

1. Controller and processor roles

For account administration, billing, security, service analytics, support, and operation of the Funkshin website, Funkshin is the controller of the relevant personal information. For personal information that a business customer places into a workspace or sends through an agent on its behalf, the customer is generally the controller and Funkshin is generally the processor. The customer is responsible for providing lawful instructions, notices, and rights support to the people whose data it submits.

Our Data Processing Agreement applies to customer workspace data processed on the customer's behalf. If the nature of a particular processing activity differs, the applicable written agreement controls.

2. Information we collect

We collect information you provide, information generated by your use of the service, and information received from service providers. This may include:

3. Purposes and legal bases

Where GDPR applies, we process information on the following bases: performance of a contract to provide accounts and requested features; legitimate interests to secure, maintain, improve, and support the service, prevent abuse, and keep business records; compliance with legal obligations; and consent where we ask for it, including for optional cookies or marketing. Where we rely on legitimate interests, we balance those interests against your rights and reasonable expectations.

We process token counts, selected models, model routes, usage dates, and workspace or application identifiers to calculate provider-related model costs and Funkshin's variable platform margin, show usage information, and issue billing records. The margin varies with usage and other pricing factors and decreases at higher usage volumes as described on the applicable pricing page. We do not use Your Content to train general-purpose AI models unless we clearly tell you and obtain any consent required by law.

4. How we share information

We may share information with:

Our current provider categories and processing purposes are listed in the Subprocessor List. We do not sell personal information for money.

5. AI routing and provider responsibility

Funkshin can support several routes: Funkshin to OpenRouter to a model provider; Funkshin directly to a model provider; or Funkshin to an inference server controlled by the customer. The route, model, provider, location, retention, and training practices can differ. Before sending personal, confidential, or regulated data, review the selected provider's terms and privacy documentation and confirm that the route is appropriate.

Providers may process prompts, files, system instructions, metadata, and outputs to deliver, secure, monitor, or comply with their services. Funkshin will not intentionally use customer content for general model training, but a provider's own processing terms may apply to data sent through that provider.

Funkshin may use automated systems to process requests, but we do not make decisions about your legal rights or similarly significant matters solely through automated processing.

6. Cookies and similar technologies

Necessary cookies support login, security, session management, preferences, and service operation. Optional analytics or marketing cookies will be used only where permitted and, where required, after consent. You can withdraw optional cookie consent through the applicable consent controls or your browser settings. A separate Cookie Policy explains the categories in more detail.

7. Retention and deletion

We retain account, billing, security, and service records for as long as needed for the purposes described above and for legal or accounting requirements. Customer workspace content is retained according to the customer's account configuration and the Data Processing Agreement. Provider and infrastructure logs may have separate retention periods.

You may request deletion of your account or personal information by contacting us. Deletion may be delayed or limited where we must retain information by law, for security, fraud prevention, backups, or legitimate business records. Workspace administrators may control or delete content belonging to their organization.

8. Security and incidents

We use reasonable administrative, technical, and organizational safeguards designed to protect information, including access controls, authentication, encryption where appropriate, logging, and provider controls. No internet transmission or storage system is completely secure. Keep your credentials and access tokens confidential and notify us promptly of suspected unauthorized access.

We will notify affected customers of a personal-data breach without undue delay where required by the Data Processing Agreement or applicable law.

9. International transfers

Funkshin, Netcup, OpenRouter, direct model providers, and other service providers may process information outside the EEA. Before making a restricted transfer, we will use an applicable GDPR mechanism, such as an adequacy decision, Standard Contractual Clauses, or another lawful safeguard. Because provider routes can vary, customers must review the selected route and may avoid external providers by using an approved customer-owned inference server where available.

10. Your choices and rights

Depending on your location, you may have rights to access, correct, delete, restrict, object to, or receive a copy of your personal information, and to withdraw consent where processing is based on consent. You may also have the right to data portability and to complain to a data-protection authority.

To make a request, contact legal@funkshin.com. We may verify your identity and will respond within the period required by applicable law. If you use Funkshin through an organization, that organization may be the controller of workspace content and you should direct requests to its administrator first.

11. Children

Funkshin is not intended for children under the age required to use online services in their jurisdiction. We do not knowingly collect personal information from children. If you believe a child has provided information to us, contact us so we can investigate and delete it where appropriate.

12. Business and workspace data

When an organization uses Funkshin, the organization may control the workspace and content. Workspace administrators may access, modify, export, or delete content and may manage user access. If you have questions about an organization's handling of your information, contact that organization.

13. Changes to this Policy

We may update this Privacy Policy as our services or legal obligations change. We will post the updated version and revise the "Last updated" date. If a change is material, we will provide additional notice where required. Your continued use of Funkshin after an update means the updated Policy applies to future processing.

14. Contact

Questions or privacy requests can be sent to legal@funkshin.com.