Last Updated: June 2026
This Privacy Policy describes how we process personal data in full compliance with the EU General Data Protection Regulation (GDPR).
The Data Controller responsible for processing your data via the Service is detailed in our mandatory Imprint/Impressum. For any privacy-related matters, you can reach us directly at privacy@byphil.eu.
In-Memory Volatility: When you execute a text or document summary request, the payload context is transmitted to our secure loopback gateway (api.byphil.eu) and proxied directly to OpenRouter.
Once the summary token stream is returned to your browser view, the raw source text is permanently expunged from our memory arrays. We do not cache, log, store, or train models on the contents of your documents.
For payment infrastructure, billing, and global tax processing, your transactional data is shared directly with our Merchant of Record, Paddle. You can view Paddle's specific data processing metrics via their privacy documentation at paddle.com/legal/privacy.
To execute AI inferences, text streams are securely forwarded to OpenRouter. Where data is transferred to downstream servers outside the European Economic Area (EEA), we ensure strict security protocols are met via standard zero-data-retention pipeline privacy rules.
As an EU resident, you hold the following statutory rights under the GDPR:
To exercise these rights, submit a request to privacy@byphil.eu. You also reserve the right to lodge an official complaint with a competent data protection supervisory authority.