Legal

Privacy Policy

Last updated October 2026

Template only, not legal advice. Have it reviewed for your jurisdiction before launch.

We built Dark GPT to collect as little data as possible. This page describes exactly what we process.

What we store

  • Account: a one-way hash of your access token, its last 4 digits, your plan and its dates. No email, name or password.
  • Sessions: a hashed session ID and its expiry, so you stay logged in.
  • Usage counters: the number of messages and tokens used per billing period, to enforce plan limits.
  • Orders: plan, amount, coin, deposit address, transaction IDs and status, to deliver what you paid for.

What we don't store

  • Your conversations. Chat history is saved only in your browser's local storage.
  • Your IP address, beyond short-lived, hashed rate-limit counters that expire automatically.
  • Analytics or advertising trackers.

Third parties

  • AI provider (DeepSeek): your messages and conversation context are sent to generate replies. Their own privacy policy applies to that processing.
  • CryptAPI: processes crypto payments and forwards funds. It sees the deposit address and on-chain transaction data.
  • Hosting and infrastructure (e.g. Vercel, the database host, Upstash): process requests on our behalf.

Deleting your data

You can delete your account from the dashboard at any time. This immediately removes your account, sessions, usage counters and orders from our database. Clear your browser storage to remove local chat history.

Contact

Questions? Contact us at [your contact address].

Privacy Policy · Dark GPT