Legal
Privacy Policy
Effective 1 August 2026
The short version: we use Google Analytics on this site, and only if you accept it — decline and no analytics cookies are set at all. We run no advertising, session recording, or fingerprinting either way. If you book a call, we use your name and email to put a calendar invite in front of you. Our product records how many tokens your AI calls consume. It never records what those calls say.
Who we are
Capsera (“we”, “us”) is a cost-tracking tool for teams running large language models. This policy covers the marketing site at capsera.ai, the booking flow on that site, and the product at app.capsera.ai.
Capsera is an early-stage project operated by its three founders from Dubai, United Arab Emirates. It is not yet an incorporated company, so the founders are jointly responsible for the data described here. If that changes we will update this page and the effective date above.
For anything in this policy, including requests to access or delete your data, contact privacy@capsera.ai.
When you browse the marketing site
We use Google Analytics 4to understand how this site is found and used — which pages people reach, which search terms bring them, and whether they get as far as pricing. It loads only after you accept it in the cookie banner. If you decline, the Google Analytics script is never requested and no analytics cookies are set. You can change your mind at any time using Cookie Settings in the footer of any page.
We do not run advertising, retargeting, session recording, or fingerprinting technology, with or without your consent.
The site is hosted on Vercel, which keeps short-lived server logs containing your IP address, user agent, and the pages requested. These are standard infrastructure records used to serve the site and defend against abuse. They are collected regardless of your analytics choice, because serving you the page requires them, and we do not use them to build a profile of you.
When you book a call
The booking form asks for:
- your name and email address, so we can send you the invite and know who we are meeting
- optional notes about what you would like to discuss
We use this only to schedule and hold that meeting. Submitting the form creates an event in a founder’s Google Calendar with a Google Meet link, emails the invitation to you, and sends the founders an internal notification containing the same details, so that a booking does not sit unnoticed until the day. That notification is sent from a founder’s own Google account, so no email company outside Google handles your details. They live in that calendar event and in that email. The marketing site has no database and stores nothing itself.
We will not add you to a mailing list or send you marketing because you booked a call. If you would like the event and your details removed afterwards, email privacy@capsera.ai and we will delete it.
Google Calendar access
This section matters if you are reviewing our use of Google APIs.
The booking feature needs to know when the founders who take intro calls are free. Each founder has explicitly authorized Capsera to access their ownGoogle Calendar. Visitors never sign in with Google and we never access a visitor’s Google account.
We request three scopes against founder accounts only:
calendar.freebusy— returns only blocks of busy and free time. It does not expose event titles, guests, or descriptions, and we do not request them.calendar.events— used solely to create the booking you requested, with its Meet link and invitations.gmail.send— sends one internal email telling the founders you booked, from a founder’s own account. It permits sending only: it cannot read, search, or change any mail in that account, and we request no scope that could. We use it for this one message and nothing else.
Capsera’s use of information received from Google APIs follows the Google API Services User Data Policy, including its Limited Use requirements. We do not transfer Google user data to third parties except as needed to provide this booking feature, we do not use it for advertising, and we do not allow humans to read it except with permission, for security, or where the law requires it.
When you use the product
Creating an account at app.capsera.ai means we hold:
- Account details from the GitHub or Google account you sign in with: your email address, name, and workspace membership. We receive these from the sign-in provider and never see your password.
- Usage records sent by the SDK for each AI call: the model used, token counts, the computed cost, latency, timestamps, and any agent, team, or tag labels you attach.
- Prompt structure, if you turn on prompt analysis: token estimates, message counts, cache usage, and a one-way hash of your system prompt used to spot repeats.
- API keys you create, stored only as a cryptographic hash. We cannot recover the original key, which is why it is shown only once.
What we deliberately do not collect
We never receive the content of your prompts or completions. This is a design decision, not a policy promise we could quietly reverse: the SDK extracts counts and structural metadata in your own process and sends only those numbers. The text of your prompts, your model’s responses, and any data inside them stay in your infrastructure and never reach our servers.
We also do not collect payment card details. If we introduce paid plans, a payment processor will handle card data and we will update this policy first.
Why we process this data
We use the data above only to:
- show you your own usage, costs, budgets, and forecasts
- enforce the budgets and limits you configure
- schedule and hold calls you ask us for
- keep the service secure, available, and free from abuse
- answer your support questions
We do not sell personal data, share it with advertisers, or use it to train machine learning models.
How long we keep it
- Booking details stay in the calendar event, and in the notification email in our own inboxes, until you or we delete them. Ask us and we will remove both.
- Account and usage data are kept while your account is open, and deleted within 30 days of you asking us to close it.
- Infrastructure logs expire on our hosting providers' own short schedules.
- Analytics data is retained by Google for 14 months, then deleted. This is the shortest retention Google Analytics 4 offers for the reports we use.
Your rights
You can ask us at any time to:
- give you a copy of the personal data we hold about you
- correct anything inaccurate
- delete your data and close your account
- stop a particular use of your data, or withdraw consent you gave earlier
For analytics specifically you do not need to email anyone: Cookie Settings in the footer of any page reopens the choice, and declining stops Google Analytics from loading on your next page view.
Email privacy@capsera.ai and we will respond within 30 days. We will not charge you or make you justify the request. If you are in the UK or the European Economic Area, these mirror your GDPR rights, including the right to complain to your local data protection authority.
Security
All traffic runs over HTTPS. API keys are stored as hashes rather than in a readable form, sessions use signed tokens, and access to production systems is limited to the founders. Because prompt and completion text never reaches us, the most sensitive material in an AI application is not ours to lose.
No system is perfectly secure. If we discover a breach affecting your personal data, we will notify you and the relevant regulator without undue delay.
Where your data is processed
We operate from Dubai, United Arab Emirates, and our providers run infrastructure in several countries, so your data may be processed outside the country you live in. Where the law requires safeguards for those transfers, our providers offer standard contractual clauses or equivalent protections.
To be specific about the one that most often matters to reviewers: if you accept analytics, that data is processed by Google on infrastructure that includes the United States, under Google’s standard contractual clauses.
Children
Capsera is a developer tool intended for adults. It is not directed at children, and we do not knowingly collect data from anyone under 16. If you believe a child has given us personal data, email privacy@capsera.ai and we will delete it.
Changes to this policy
We are early and the product is moving quickly, so this policy will change. When it does we will update the effective date at the top. If a change materially affects how we use your data, we will contact account holders directly rather than relying on you to re-read this page.
Contact
Questions, requests, or complaints about privacy go to privacy@capsera.ai. A real founder reads that inbox.