Privacy Policy
Last updated: March 1, 2026
This Privacy Policy describes how AUGLAB LLC, a Florida limited liability company (“we,” “us,” or “the Company”) collects, uses, and protects your information when you use the augLab platform (“the Service”). By using the Service, you agree to the collection and use of information in accordance with this policy.
1. Information We Collect
Account Information: When you create an account, we collect your name, email address, and a hashed version of your password. If you join an organization, we also store your membership role and association with that organization.
Billing Information: Payment details are collected and processed by Stripe. We store your Stripe customer ID and subscription status but do not store credit card numbers, bank account details, or other payment credentials on our servers.
Usage Data: We collect information about how you use the Service, including agent configurations, workflow definitions, run history, knowledge base metadata, and feature usage patterns.
Device & Log Data: We may collect your IP address, browser type, operating system, referring URLs, and access timestamps when you interact with the Service.
2. API Keys & Credentials
API keys you store in augLab are encrypted at rest using AES-256 (Fernet) encryption. Keys are only decrypted in-memory during agent execution and are never logged, persisted in plaintext, or transmitted to third parties beyond the intended service provider (e.g., your chosen LLM provider). You are responsible for the security and rotation of your own API keys.
3. How We Use Your Data
We use the information we collect to:
- Provide, operate, and maintain the Service
- Process payments and manage your subscription via Stripe
- Send transactional emails (welcome emails, organization invitations)
- Enforce usage limits based on your subscription tier
- Monitor for abuse, fraud, and security incidents
- Improve the Service based on aggregated, anonymized usage patterns
- Respond to your support requests and inquiries
We do not sell, rent, or trade your personal data to third parties.
4. Agent Execution & Data Processing
When your agents execute, they may send data to third-party LLM providers and other services using API keys you have configured. augLab acts as an intermediary and does not control how third-party providers process that data. We do not use the content of your agent inputs or outputs for training models or any purpose other than executing your requested operations.
Run history and agent outputs may be stored temporarily to provide you with execution logs. You may delete this data at any time through the Service.
5. Cookies & Tracking
We use essential cookies and local storage to maintain your authentication session and preferences. We may use privacy-respecting analytics to understand aggregate usage patterns. We do not use third-party advertising trackers or sell data to advertisers.
6. Third-Party Services
We share data with the following categories of third-party services:
- Stripe — for payment processing (name, email, billing details)
- LLM Providers — only data you explicitly send through your agent configurations, using your own API keys
- Hosting Provider — our infrastructure provider processes data as needed to host the Service
- Email Provider — your email address and name for transactional emails
Each third-party service is governed by its own privacy policy. We require that all service providers maintain appropriate data protection standards.
7. Organizations & Shared Data
If you create or join an organization, other members of that organization may be able to see your name, email address, role, and shared resources within the organization workspace (such as agents, workflows, and knowledge bases). Organization administrators may have access to usage data and member activity within the organization.
8. Data Retention
Your data is retained as long as your account is active. If you delete your account, we will delete your personal data within 30 days, except where we are required to retain it for legal, tax, or compliance purposes. Anonymized, aggregated data that cannot identify you may be retained indefinitely for analytics.
9. Data Security
We implement industry-standard security measures to protect your data, including encryption in transit (TLS), encryption at rest for sensitive credentials (AES-256), hashed passwords (bcrypt), and access controls on our infrastructure. However, no method of transmission or storage is completely secure, and we cannot guarantee absolute security.
10. Your Rights
Depending on your location, you may have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you
- Correction: Request correction of inaccurate or incomplete data
- Deletion: Request deletion of your personal data
- Export: Request a portable copy of your data in a machine-readable format
- Objection: Object to certain processing of your data
- Restriction: Request that we limit how we process your data
To exercise any of these rights, contact us at contact@auglab.ai. We will respond to your request within 30 days.
11. California Privacy Rights (CCPA)
If you are a California resident, you have the right to: (a) know what personal information we collect and how it is used, (b) request deletion of your personal information, (c) opt out of the sale of your personal information (we do not sell personal information), and (d) not be discriminated against for exercising your privacy rights. To make a request, contact us at contact@auglab.ai.
12. International Data Transfers
The Service is hosted in the United States. If you access the Service from outside the United States, your data may be transferred to and processed in the United States, where data protection laws may differ from those in your jurisdiction. By using the Service, you consent to this transfer. We take appropriate safeguards to ensure your data is treated in accordance with this Privacy Policy regardless of where it is processed.
13. Children's Privacy
The Service is not intended for use by anyone under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child under 18, we will take steps to delete that information promptly. If you believe we have collected information from a child, please contact us at contact@auglab.ai.
14. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by email or by posting a notice on the Service at least 30 days before the changes take effect. Your continued use of the Service after the effective date constitutes acceptance of the updated policy.
15. Contact
If you have questions about this Privacy Policy or wish to exercise your data rights, please contact us at contact@auglab.ai.