Agent OSBuild your assistant
privacy

Agent OS Privacy Policy

Version 1.7 · effective September 3, 2026

In plain words: what data we collect, why we need it, and how you can control it.

1. Who we are

Agent OS is a service that delivers personal AI assistants in Telegram. For questions about your data, message our manager in Telegram (the "Help" button in your dashboard).

2. What data we process

  • Account: your Telegram ID, name, and username — to sign you in and reach you.
  • Your request: the task description, your assistant's settings (role, style, what to remember).
  • Conversations with the assistant: messages are needed so the assistant can reply and remember context.
  • Files you upload to the assistant.
  • Client mode: if you turn on "Reply to customers" in your dashboard, the assistant processes and stores — separately from your own personal conversations — messages from third parties, your customers, who write to the bot. You turn this mode on yourself, and you're responsible for informing your customers that the assistant processes their messages.
  • Payment metadata: the plan, the amount, and the date of a confirmed payment, the amount in Stars and the Telegram transaction ID, the Tribute payment ID, the crypto payment ID and the transfer address. We don't have your card details or payment credentials — the payment provider processes those.
  • Technical logs: service events for stability and security.

3. Why

To provide the service (running the assistant and its memory), billing, support, security, and abuse prevention. We don't sell your data, and we don't use the content of your conversations for advertising. Separately, we measure ad performance: Meta receives the fact that a request was submitted — without the content of the request or your conversations (details — section 8).

4. AI processing

To generate replies, messages are sent to our AI model provider (OpenAI) and processed under its policies. We don't use your conversations to train models.

5. Who we share data with

We use: Telegram (the platform and payments), Tribute (card payments), NOWPayments (crypto payments), OpenAI (AI models), Vercel (site hosting and cookieless analytics), PostHog (product analytics for the site), Meta Platforms (Facebook Pixel and Conversions API — ad performance measurement), Cloudflare R2 (encrypted backups), as well as our own server, which runs your assistant. Each customer's data is isolated. The full subprocessor list with roles and jurisdictions is on a dedicated page; business customers who need a signed document can use our DPA.

6. How long we keep it

  • Conversations with the assistant — 12 months.
  • Correspondence with a support manager is kept while we're supporting your account; we'll delete it on request to the manager.
  • Files you attach in a conversation are deleted right after the assistant has processed them and replied — we don't store them separately. A personal file library (saving a file on your "save to library" command) is currently disabled; once we turn it on, files saved that way will have a separate retention period — 30 days.
  • Technical logs — 90 days.
  • Backups — 30 days.
  • After account deletion, assistant and account data is deleted within 30 days. Payment records and consent records (we're required to keep these) and support correspondence are retained — we'll delete the latter on a separate request.

7. Your rights

At any time, you can:
  • export your data — with a button in your dashboard (a JSON archive; uploaded files — on request to a manager);
  • delete your account and data — in your dashboard or by request to a manager;
  • object to marketing — a button in your dashboard turns off the digest, low-credits nudges, win-back, and trial tips; we keep sending service messages about your own assistant;
  • request a correction to your data or ask a question about how it's processed.
If you're in the EU, you also have the right to lodge a complaint with a data protection supervisory authority.

California residents (CCPA/CPRA): we don't sell or share your personal information for cross-context behavioral advertising. You can still submit a Do Not Sell or Sharerequest — it uses the same opt-out as "object to marketing" above — and you have the right to know, delete, and correct your personal information (the export/delete tools above cover this) without discrimination for exercising these rights.

8. Cookies and analytics

Your dashboard uses a functional session cookie to keep you signed in. Site analytics are Vercel Analytics (cookieless) and PostHog, which stores an anonymous visit ID in your browser so the steps of your journey chain into one sequence. The content of your conversations with the assistant never reaches analytics. We also use Meta's Facebook Pixel and Conversions API to understand which ads bring people in. Your browser gets the _fbp and _fbc cookies — a visit ID and an ad-click marker. From our server, Meta receives the fact that a request was submitted, along with technical connection data (IP address, User-Agent, these cookies). We also store these same cookies alongside your request, so we can later match a confirmed payment to it; they're kept together with the request's technical records. The content of the request, your assistant's settings, and your conversations are not sent; we don't send your email or phone number for this either. You can turn it off with an ad blocker or your browser settings — it doesn't affect the service.

9. Security

Data is transmitted over encrypted channels, access to servers is restricted, and backups are encrypted. Each customer's conversations and memory are stored separately from everyone else's.

10. Age

The service is intended for users age 16 and up.

11. Policy changes

The version and date are shown at the top. We'll notify you of material changes in your dashboard or through the bot.

12. Consent

By submitting a request, you confirm your agreement with this Policy and the Terms of Use. We record the version of the documents you agreed to.