Skip to content
LarkTide API
PricingTermsPrivacyContactRequest access

Privacy Policy

Last updated: September 29, 2026

This Privacy Policy explains how LarkTide Technologies LLC ("LarkTide", "we", "us") collects, uses, shares and protects personal information when you visit larktide.com (the "Website") or use LarkTide API, including the console at console.larktide.com and the API at https://api.larktide.com/v1 (together, the "Service"). LarkTide API is in an invite-only beta, and the console and API are being launched. This policy describes how we will handle information when you have an account and use the Service during the beta and afterwards.

The Service is for software developers and businesses, for business and professional use only. It is not for consumers and not for anyone under 18. The Service is not offered in mainland China, in any country or region subject to comprehensive U.S. sanctions or embargoes, to persons on U.S. restricted-party lists, or where the relevant model provider does not offer its service. This policy does not make the Service available in those places. It should be read together with our Terms of Service, Acceptable Use Policy and Refund Policy.

On this page:

  • Summary
  • Who we are
  • What we collect
  • How we use personal information
  • Prompts, outputs and model providers
  • Legal bases (EEA and UK)
  • Who we share information with
  • No sale or sharing for advertising
  • International transfers
  • How long we keep information
  • Security
  • Your rights and how to exercise them
  • Children
  • Changes to this policy
  • Contact

Summary

This summary is for convenience. The sections below are the full policy.

  • Website: a static site on Cloudflare with no cookies, no trackers and no forms. Cloudflare may process technical request data, such as your IP address, to deliver and secure the site.
  • Service: we collect your account email address, API usage metadata and purchase records. Card payments will be processed by Stripe; LarkTide never sees full card numbers.
  • Prompts and outputs: we do not store the content of your prompts or of model outputs for normal requests. Your content is sent to, and processed by, the third-party provider of the model you choose, under that provider's terms. Providers may process data outside the United States.
  • No sale, no advertising: we do not sell personal information and we do not share it for advertising.
  • Retention: usage metadata is kept for up to 400 days, then deleted or aggregated. Purchase records are kept as required for tax and accounting.
  • Requests: email privacy@larktide.com to access, correct, delete, port or object to the use of your personal information.

1. Who we are

The controller of the account, usage, purchase and communications information described in this policy is LarkTide Technologies LLC, a Wyoming limited liability company. "Controller" means the party that decides why and how personal information is used. You can reach us about privacy at privacy@larktide.com. We handle privacy matters by email.

Content you send through the API. You decide what content to send and which model, and therefore which provider, receives it. We handle that content on your instructions, to send it to the provider you select and return the output to you, as described in Prompts, outputs and model providers. If your content includes personal information about other people, you are responsible for having a lawful basis to send it and for giving any notices the law requires.

2. What we collect

The Website

The Website (larktide.com) is a static site hosted on Cloudflare. It has no cookies, no trackers and no forms. When your browser requests a page, Cloudflare may process technical request data, such as your IP address, to deliver and secure the site. Because the Website has no cookies or trackers, browser signals such as Do Not Track do not change how it works.

The Service

When you request access, create an account or use the Service, we collect the following.

CategoryWhat it includesWhere it comes from
Account informationThe email address of your account, the invitation code used to create it, and the API keys and spending limits you set up.You
API usage metadataFor each request: the model used, token counts, cost, timestamp, request ID, IP address and user agent. Usage is tracked per API key, so this metadata is associated with the key that made the request.Generated when you call the API
Purchase recordsRecords of your credit purchases and payments, such as amount, date, credits added and payment status. Card payments will be processed by Stripe; LarkTide never sees full card numbers.You and Stripe
CommunicationsYour email address and the contents of messages you send to our addresses (support, access, privacy and security), including access requests.You

What we do not collect

  • We do not store the content of prompts or model outputs for normal requests (see section 4).
  • We do not receive full payment card numbers.
  • We do not use cookies or trackers on the Website.
  • We do not ask for sensitive personal information, such as health, biometric or government identification data. Please do not include it in messages to us.

Providing an email address is necessary to have an account. You are not required to provide any other personal information to us, but we cannot provide the Service, billing or refunds without the information described above.

3. How we use personal information

  • Provide the Service. Create and administer accounts, authenticate API requests, send each request to the provider of the model you select, return responses, track usage per API key, apply spending limits and deduct credits at the published per-token rates.
  • Billing. Process credit purchases through Stripe, issue refunds, handle disputes and chargebacks, and keep the records that tax and accounting law require.
  • Communicate with you. Send transactional emails about your account and purchases and important service notices, and respond to support, access, privacy and security messages.
  • Keep the Service and Website secure. Detect and prevent fraud, abuse and unauthorized access, enforce our Terms and Acceptable Use Policy, and troubleshoot errors, including by reviewing logged provider error responses.
  • Run and plan the Service. Understand aggregated usage, such as total tokens per model, to plan capacity and maintain the Service.
  • Meet legal obligations. Comply with tax, accounting, sanctions and export-control laws, respond to lawful requests from authorities, and establish, exercise or defend legal claims.

We do not use personal information for advertising, we do not sell it, and we do not use the content of prompts or outputs to train models.

4. Prompts, outputs and model providers

LarkTide API gives you one OpenAI-compatible API and one API key for open-weight AI models from third-party providers: Zhipu Z.ai (GLM), DeepSeek, Moonshot AI (Kimi) and MiniMax. The models are developed and served by those providers, not by LarkTide. The available models are listed on our pricing page.

What happens to your content

  • When you make a request, we send the content you include, together with the parameters needed to process it, to the provider of the model you selected. The output comes back through us to you.
  • LarkTide does not store your prompt or output content for normal requests. We process it only as needed to forward your request to the provider and return the output to you.
  • Exception: error responses returned by a model provider may be logged for troubleshooting. Because the provider generates those responses, we do not control what they contain.

What the providers do

  • The model providers are independent third parties. They receive your content at your direction, and each processes it under its own terms and privacy policy. How long a provider keeps content, whether it uses content for any other purpose, and where it processes content are decisions made by the provider, not by LarkTide.
  • Providers may process data outside the United States.
  • Models with cached-input rates on the pricing page support prompt caching. Where caching applies, the provider may temporarily retain parts of your prompts under its own practices.
  • Review the terms and privacy policy of each provider whose models you use before you send it content.

Your responsibilities

Send only content you have the right to send. Do not send sensitive or regulated data, or personal information about other people, unless you have confirmed that doing so is lawful and consistent with the relevant provider's terms. Our Acceptable Use Policy also applies to your content.

5. Legal bases (EEA and UK)

If you are in the European Economic Area or the United Kingdom, the GDPR and UK GDPR require us to have a legal basis for using your personal information. We rely on the following.

PurposePersonal informationLegal basis
Providing the Service, including sending your requests to the model provider you selectAccount information, usage metadataPerformance of our contract with you
Billing, payments and refundsAccount information, purchase recordsPerformance of our contract with you
Tax and accounting records; responding to lawful requests; sanctions and export-control compliancePurchase records, account informationCompliance with a legal obligation
Security, fraud and abuse prevention; enforcing our Terms and Acceptable Use Policy; troubleshootingUsage metadata (including IP address and user agent), technical request data, logged provider error responsesOur legitimate interests in keeping the Website and Service secure and functioning
Delivering and securing the WebsiteTechnical request data, including IP addressOur legitimate interests in operating a secure website
Capacity planning and maintenance using aggregated usageUsage metadataOur legitimate interests in running the Service efficiently
Responding to emails and requests you send usCommunicationsPerformance of our contract with you (if you are a customer) or our legitimate interests in responding to inquiries

Personal information contained in content you send through the API is handled on your instructions, as described in section 1 and section 4.

We do not rely on consent for the processing described in this policy. If we ever ask for your consent, you may withdraw it at any time. Where we rely on legitimate interests, you can object as described in section 11.

6. Who we share information with

We share personal information only with the recipients below, and in the limited cases described after the table. Cloudflare, Stripe, DigitalOcean and Resend are service providers that help us operate the Service and the Website. The model providers are independent third parties that receive your content at your direction, as described in section 4. Each recipient processes information under its own terms and privacy policy.

RecipientWhat it doesInformation involved
CloudflareWebsite hosting and delivery, DNS, and email routing for messages sent to our addressesTechnical request data, including IP address; emails you send us
StripeCard payment processing for credit purchasesCard and payment details you enter with Stripe, and purchase information. LarkTide never sees full card numbers.
DigitalOceanHosting of the Service, in the United StatesAccount information, usage metadata and purchase records held on our systems, and request content while we process the request
ResendTransactional email deliveryYour email address and the contents of emails we send you
Model providers (independent third parties): Zhipu Z.ai (GLM), DeepSeek, Moonshot AI (Kimi), MiniMaxProcess requests for the models they develop and serveContent of requests you send to their models, and outputs. Your request goes to the provider of the model you select.

We may also disclose personal information:

  • when required by law, legal process or a valid request from a public authority;
  • when reasonably necessary to protect the rights, property or safety of LarkTide, our users or others, or to investigate fraud, abuse or security incidents;
  • in connection with a merger, acquisition, financing or sale of all or part of our business, in which case we will require the successor to honor this policy for information already collected, or we will give you notice and any choices the law requires before it is used differently; and
  • with your direction or consent.

We may also use or share aggregated or de-identified information that does not identify you, such as total token counts per model. We will not try to re-identify it.

7. No sale or sharing for advertising

We do not sell personal information, and we do not share it for advertising, including cross-context behavioral advertising or targeted advertising. We do not disclose personal information to third parties for their own direct marketing. Because of this, there is nothing to opt out of, and an opt-out preference signal such as Global Privacy Control would not change how we handle your information. Content you choose to send to a model provider through the API is disclosed at your direction to perform the Service, and we do not treat that disclosure as a sale or sharing.

8. International transfers

LarkTide is based in the United States, and the Service is hosted in the United States. If you use the Website or the Service from outside the United States, your personal information will be transferred to, and processed in, the United States, where data protection laws may differ from those in your country.

Other parties may process information elsewhere. Cloudflare may process technical request data in countries other than the one you are in. Model providers may process your content outside the United States, in countries whose data protection laws may not match those of your home country. You choose the model, and so the provider, for each request.

Where data protection law requires a legal mechanism for these transfers, we rely on a mechanism the law permits. To ask about the safeguards that apply to your information, email privacy@larktide.com.

9. How long we keep information

InformationHow long we keep it
API usage metadataUp to 400 days, then deleted or aggregated
Purchase recordsAs long as required for tax and accounting purposes
Account informationWhile your account is open. After it is closed, we delete or de-identify it once we no longer need it for refund requests, disputes, fraud prevention or legal obligations.
Prompt and output contentNot stored by LarkTide for normal requests. Model providers keep content according to their own policies.
Provider error responses logged for troubleshootingOnly as long as needed for troubleshooting
Emails you send usAs long as needed to respond and to keep a record of the matter, including requests made under this policy and our responses
Website technical request dataHandled by Cloudflare under its own policies

Where the law requires it, or where specific records are needed to resolve a pending legal claim, dispute or investigation, we keep only those specific records for as long as that requirement or matter lasts, and then delete them.

10. Security

  • We use technical and organizational measures that are reasonable for the risks, including serving the Website and API over HTTPS and limiting access to personal information to people who need it to operate the Service.
  • We reduce what we hold by not storing prompt or output content for normal requests.
  • No system is completely secure, and we cannot guarantee the security of information. If a breach affects your personal information, we will notify you and the relevant authorities as the law requires.
  • Your part: keep your API keys secret and treat them like passwords. If you think a key or account has been compromised, contact security@larktide.com.

To report a security vulnerability, email security@larktide.com.

11. Your rights and how to exercise them

EEA and UK (GDPR and UK GDPR)

If you are in the EEA or the UK, you have the right to:

  • access the personal information we hold about you and receive a copy;
  • have inaccurate information corrected;
  • have your information deleted;
  • restrict how we use your information;
  • receive your information in a portable format (data portability);
  • object to our use of your information based on legitimate interests;
  • withdraw consent, where we rely on it; and
  • complain to your local data protection authority. In the UK, this is the Information Commissioner's Office. We would appreciate the chance to address your concern first.

United States, including California

Depending on where you live and on whether the law applies to us, U.S. state privacy laws, including the California Consumer Privacy Act as amended (CCPA), may give you rights to:

  • know what personal information we collect, use and disclose, and access the specific information we hold about you;
  • correct inaccurate personal information;
  • delete personal information;
  • receive a portable copy of your personal information;
  • opt out of the sale or sharing of personal information and of targeted advertising (we do neither); and
  • not be discriminated against for exercising your rights.

Privacy laws in other U.S. states may give residents similar rights, subject to each law's scope and exemptions, including for individuals acting in a business context.

California disclosures. Categories of personal information we collect, where it comes from, and to whom we disclose it for business purposes:

CategoryExamplesSourceDisclosed to
IdentifiersAccount email address; IP address; request IDsYou; your use of the ServiceService providers listed in section 6
Commercial informationPurchase recordsYou; StripeStripe; hosting provider
Internet or other electronic network activityModel used, token counts, cost, timestamps, user agentYour use of the ServiceHosting provider
CommunicationsEmails you send usYouCloudflare (email routing)

We collect and use this information for the purposes in section 3 and keep it as described in section 9. We do not sell or share it. Card details are entered with and processed by Stripe, and we never see full card numbers. We use your API keys only to authenticate your requests and to track usage and apply spending limits per key. We do not use or disclose sensitive personal information for purposes that would give you a right to limit it.

How to make a request

  1. Email privacy@larktide.com and say which right you want to exercise. We accept requests by email only.
  2. Verification. To protect your information, we need to confirm that the request is yours. We will usually ask you to write from the email address on your account, and may ask for limited additional information. We may decline a request we cannot verify.
  3. Authorized agents. If someone submits a request for you, we may require proof of their authority and confirmation from you.
  4. Timing. We respond within the time the law requires: for example, one month under the GDPR and UK GDPR and 45 days under the CCPA, each extendable where the law allows. We will tell you if we need more time.
  5. Cost. We do not charge a fee to handle a request, unless the law allows one because a request is manifestly unfounded or excessive.

Appeals

If we decline all or part of your request, we will explain why. If your state's law gives you a right to appeal, reply to our response, or email privacy@larktide.com with "Appeal" in the subject line. We will answer in writing within the time the law requires. If we deny your appeal, you may contact your state attorney general.

Limits

  • Content. We do not store prompt or output content for normal requests, so we generally cannot access, correct or delete it. Requests about content held by a model provider should go to that provider.
  • Records we must keep. We may keep information that we are legally required to keep, such as purchase records for tax and accounting, or that we need to establish, exercise or defend legal claims or to prevent fraud.
  • Credits. If you close your account, or we close it other than for a violation of our Terms or Acceptable Use Policy, you can request a refund of any remaining paid credit balance to the original payment method by emailing support@larktide.com. See our Refund Policy.

Nothing in this policy limits rights that you have under mandatory data protection law.

12. Children

The Service is for business and professional use by people who are 18 or older. It is not directed to children, and we do not knowingly collect personal information from anyone under 18. If you believe a person under 18 has given us personal information, email privacy@larktide.com and we will delete it.

13. Changes to this policy

We may update this policy, for example when we change how the Service works or when the law changes. We will post the updated version on this page and change the "Last updated" date. For material changes, we will give reasonable advance notice where practical, for example by email to the address on your account. If you do not agree with an update, you can stop using the Service and close your account.

14. Contact

Use the address that fits your message. These are our only contact channels.

  • privacy@larktide.com for privacy requests and questions about this policy
  • support@larktide.com for support, billing and legal notices
  • access@larktide.com for access requests to the beta
  • security@larktide.com for security reports

See also our contact page, Terms of Service, Acceptable Use Policy, Refund Policy and pricing.

PricingTerms of ServicePrivacy PolicyAcceptable UseCredits & RefundsContact

LarkTide API is operated by LarkTide Technologies LLC, a Wyoming limited liability company. Contact: support@larktide.com

Model names and trademarks belong to their respective owners and are used only to identify the models available through the API. LarkTide is not affiliated with or endorsed by the model providers.

© 2026 LarkTide Technologies LLC