Legal

Privacy Policy

Last updated: June 2026

Speka collects your account email, usage metadata (model name, token counts, latency), and billing data handled by Stripe. Your prompt content is transmitted to inference providers only to generate responses — Speka does not store prompts or use them to train models. You can request data export or deletion at any time.

This policy explains what we collect and why. We collect account information (email, name), billing data (handled by Stripe), and usage metadata (model, token counts, latency, timestamps).

We use this data to operate the Service, bill accurately, prevent abuse, and improve reliability. We do not sell your personal data.

Prompt content is transmitted to our model-inference provider(s) solely to generate responses. We store request metadata for analytics and billing but do not use your prompts to train models.

Subprocessors include Supabase (auth & database), Stripe (payments) and our model-inference infrastructure provider(s).

You may request export or deletion of your data at any time by contacting support. Deleting your account removes your profile, keys and usage records within 30 days.

If you are located in the European Economic Area, you have rights under the GDPR including the right to access, correct, and erase your personal data.

We apply industry-standard security: encryption in transit (TLS 1.2+), hashed API keys, and row-level data isolation.

FAQ

Frequently asked questions

No. Speka transmits prompt content to model-inference providers only to generate your requested response. Speka does not retain prompt content after the response is returned, and does not use prompts to fine-tune, train, or evaluate any model.
Speka collects three categories of data: account information (email and display name), billing data processed by Stripe, and usage metadata including model name, token input/output counts, request latency, and timestamps. Prompt content is not stored.
Speka uses Supabase for authentication and database storage, Stripe for payment processing, and model-inference infrastructure provider(s) that receive prompt content in transit only to generate responses.
Email support at any time to request deletion. Deleting your account removes your profile, API keys, and usage records within 30 days. Stripe may retain transaction records as required by financial regulations.
Speka stores API keys as hashed values — the original key cannot be recovered after issuance, only rotated. All data in transit is encrypted with TLS 1.2 or higher, and database-layer row-level security prevents any account from accessing another account's data.