Overview
40 sectionsEffective Date: July 27, 2026 Last Updated: July 27, 2026
This Privacy Policy describes how Deployed IT Solutions, doing business as Anzoth ("Anzoth," "we," "us," or "our"), collects, uses, discloses, and otherwise processes personal information in connection with:
- the Anzoth website and related webpages;
- the Anzoth account dashboard;
- the Anzoth conversational chatbot;
- Anzoth application programming interfaces and API keys;
- Anzoth command-line tools, SDKs, and related software;
- Anzoth model-routing, Knowledge Base, and retrieval features; and
- support, beta, and related services,
collectively, the "Services."
This Privacy Policy should be read together with the Anzoth Terms of Service and the Anzoth Acceptable Use Policy. Capitalized terms not defined here have the meaning given in the Terms of Service.
Where a signed enterprise agreement, order form, or data processing addendum governs Anzoth's processing of Customer Content, that agreement controls to the extent of any conflict with this Privacy Policy.
If you are located in the European Economic Area, the United Kingdom, Switzerland, or California, additional disclosures that apply to you are set out in Section 15 ("Regional and State-Specific Disclosures").
1. Personal Data We Collect
1.1 Account and Identity Data
When you create or administer an account, we collect your name, email address, and, where applicable, organization name and business details, account role, and permissions. We do not store your password in readable form.
1.2 Payment Information
Anzoth uses Stripe, Inc. as its payment processor. If you purchase credits or a subscription, Stripe collects your billing information and payment method. See Section 3.3.
1.3 Input, Output, and Actions ("Customer Content")
You may submit prompts, messages, files, images, audio, code, documents, or other content to the Services ("Input"), and receive generated content in response ("Output"). Where you enable agents or tools, the Services may perform Actions on your behalf. Input, Output, and Actions are collectively "Customer Content." If Customer Content contains personal data — about you or someone else — you are responsible for ensuring you have the rights and permissions necessary to submit it.
1.4 Knowledge Base and File Data
Documents and data you upload for indexing, embedding, or retrieval are collected and processed as necessary to provide that feature, including extracted text, metadata, chunks, and embeddings.
1.5 API Keys and Authentication Data
When you create or use an API key, we process an identifier and masked or hashed representation of the key rather than the complete readable key, along with permissions and scopes, creation and expiration dates, last-used time, request counts, and revocation status.
1.6 Usage and Log Data
We collect request date and time, requested and used model, response status, error codes, latency, input/output/total token counts, rate-limit and quota activity, request or correlation identifiers, feature usage, and similar operational data. Depending on account configuration, logs may contain limited portions of Customer Content when necessary for request history, error investigation, or abuse prevention.
1.7 Device and Connection Data
IP address, device type, operating system, browser type, and similar technical identifiers.
1.8 Cookies and Similar Technologies
We and our service providers use cookies and similar technologies on the Anzoth website and dashboard for authentication, session management, security, and basic analytics. We do not currently use cookies for third-party advertising.
1.9 Communications and Feedback
If you contact us for support, including through the in-product chatbot, we collect your contact information and the contents of your communications. If you rate an Output or otherwise submit feedback, we may store the related conversation as part of that feedback.
1.10 Information From Other Sources
We may receive limited information from identity-verification, fraud-prevention, or security vendors, from Stripe, and from an organization that manages your account.
2. Model Provider Data Practices
Anzoth operates a multi-provider AI gateway and model-routing platform. This section explains what happens to your data depending on how a request is processed.
2.1 Anzoth-Operated and Third-Party Models
Depending on the model, routing configuration, and features available to you, a request may be processed by Anzoth-operated infrastructure or transmitted to an identified third-party model provider ("Third-Party Model"), whether selected by you or through automatic routing or fallback features you have enabled. Associated metadata, and where applicable retrieved Knowledge Base content, may be transmitted along with your Input.
Some third-party providers or models may not yet be available to all users. Availability may change as Anzoth adds, removes, or updates supported providers and routes.
2.2 Provider Practices Vary
Different model providers maintain different practices regarding logging, retention, human review, and use of data for model training or improvement. Some providers may retain or use Inputs and Outputs for their own purposes under their own terms; others may not. Anzoth does not control, and is not responsible for, a Third-Party Model provider's handling of data once it is transmitted to that provider.
Before using a particular model, you are responsible for reviewing that provider's applicable terms and data-handling documentation. Anzoth may provide summaries or labels describing model-provider data practices for convenience. Those summaries may be incomplete, may change, or may not reflect a provider's most recent terms. The provider's then-current terms and documentation control.
2.3 Anzoth's Own Handling of Routed Data
Independent of what a selected provider does with your data, Anzoth itself may process Input, Output, and related metadata as necessary to route the request, calculate usage, maintain security, and provide the Services, as described in Section 3.
2.4 No Guarantee of Zero Data Retention Across All Routes
Unless Anzoth expressly identifies a particular model or route as supporting a defined retention configuration (such as Zero Data Retention) in the applicable product documentation, you should not assume that a given route offers a specific retention guarantee. Anzoth may introduce retention-controlled configurations for particular routes over time; any such configuration will be described in the applicable feature documentation when available.
2.5 Biometric and Sensitive Content in Multimodal Input
If a model you use accepts or generates image, audio, or video content depicting an identifiable individual's face or voice, processing that content may involve biometric identifiers under certain laws. You are responsible for ensuring you have the necessary rights and consents before submitting such content.
3. How We Use Personal Data, and Who We Share It With
3.1 Purposes of Use
We use personal data to: create, maintain, and secure your account; provide, operate, and improve the Services, including routing, Knowledge Base retrieval, and dashboard functionality; calculate usage and process billing; provide customer support; detect, investigate, and prevent fraud, abuse, and security incidents; enforce the Terms of Service and Acceptable Use Policy; comply with legal obligations; and communicate with you about the Services.
3.2 Model Training
Anzoth does not currently use private API Input, non-public chatbot conversations associated with your account, or private Knowledge Base content to train Anzoth-operated models. Anzoth reserves the right to offer an optional program for this in the future; any such program will require your affirmative opt-in and will be described in your account settings before it applies to you. Using operational data to provide, secure, troubleshoot, or maintain the Services is not considered model training for purposes of this section. This section addresses Anzoth's own training practices only and does not affect a Third-Party Model provider's separate practices, described in Section 2.
3.3 Payment Processing
Anzoth uses Stripe as its payment processor. When you make a purchase, your payment information is transmitted directly to Stripe and is subject to Stripe's own privacy policy. Anzoth receives limited information such as transaction status, payment-method type, and billing identifiers, but does not typically receive or store your complete card number.
3.4 Other Recipients
We may disclose personal data to: service providers and infrastructure vendors who host, process, or secure data on our behalf, under contractual confidentiality and data-protection obligations; model providers, as described in Section 2; your organization's administrators, if your account is part of an organizational account; professional advisors, as necessary; government authorities or other third parties, where we have a good-faith belief that disclosure is required by law, necessary to prevent harm, or necessary to enforce our rights or the rights of others; a successor entity, in connection with a merger, acquisition, financing, or sale of assets; and anyone you direct us to share information with.
We do not sell personal data, and we do not share personal data for third-party targeted advertising.
4. Data Retention
We retain personal data only for as long as reasonably necessary for the purposes described in this Policy. Retention periods vary by category:
- Account records — retained while your account is active and for a reasonable period afterward for security, legal compliance, and recordkeeping.
- Billing records — retained as necessary to comply with tax, accounting, and legal obligations.
- Usage and API metadata (request logs, token counts, correlation identifiers) — retained as necessary for billing, security, and abuse prevention, generally independent of whether the underlying Customer Content is deleted.
- Request content (Input/Output) — retained according to the feature used and your account configuration, until deleted by you, an authorized administrator, or Anzoth where retention is no longer necessary.
- Knowledge Base documents — deleting a Knowledge Base document or a Knowledge Base removes the active stored document, extracted chunks, and associated embeddings, subject to the exceptions below.
- Backups — deleted information may remain temporarily in encrypted or access-restricted backups until overwritten under our backup schedule.
- Security and abuse records — may be retained longer than other categories where necessary to investigate incidents, enforce policies, or comply with a legal hold.
Deleting content or closing your account may not immediately remove information from backups, security logs, billing records, or content already transmitted to a Third-Party Model provider.
5. Data Security
We maintain administrative, technical, and organizational safeguards designed to protect personal data against loss, misuse, and unauthorized access, disclosure, alteration, or destruction. No method of transmission or storage is completely secure, and we cannot guarantee absolute security. You are responsible for safeguarding your account credentials and API keys as described in the Terms of Service. Security concerns may be reported to [email protected] with "Security Report" in the subject line.
6. International Data Transfers
Anzoth is based in the United States, and personal data we collect is generally processed and stored in the United States. If you access the Services from outside the United States, your information may be transferred to, stored, and processed in the United States and other countries whose data-protection laws may differ from those of your home jurisdiction. Where required, we rely on appropriate safeguards — such as standard contractual clauses or applicable adequacy decisions — for transfers of personal data originating in the European Economic Area, United Kingdom, or Switzerland.
7. Your Rights and Choices
Depending on where you live, you may have some or all of the following rights regarding your personal data: right to know / access what personal data we hold about you and how it is used and disclosed; right to correction of inaccurate personal data; right to deletion, subject to legal exceptions such as billing records we must retain; right to data portability, in a reasonably usable format; right to object to or restrict certain processing; right to withdraw consent, where processing is based on consent, without affecting the lawfulness of prior processing; and right to non-discrimination for exercising any of these rights.
To exercise these rights, contact us at [email protected] with "Privacy Request" in the subject line. We may need to verify your identity before completing a request. If we deny a request, you may appeal by replying to our response with "Privacy Appeal" in the subject line. Depending on your location, you may also have the right to lodge a complaint with a data-protection supervisory authority.
We will respond within the time period required by applicable law (for example, one month under GDPR, extendable in complex cases; 45 days under CCPA, extendable to 90).
8. Legal Bases for Processing (EEA, UK, and Switzerland)
Where the GDPR or UK GDPR applies, we process personal data on the following legal bases, depending on the purpose:
- Performance of a contract — to create your account, provide the Services, and process payment;
- Legitimate interests — to secure the Services, prevent fraud and abuse, and improve our products, balanced against your rights and interests;
- Consent — where we ask for it specifically, such as for an optional training program described in Section 3.2, or for certain marketing communications; and
- Legal obligation — where we must retain or disclose information to comply with law.
8.1 Data Controller
For personal data processed in connection with the Services, Deployed IT Solutions, doing business as Anzoth, is the data controller. Contact details are provided in Section 16.
8.2 EU Representative
Article 27 of the GDPR requires a non-EU controller to designate an EU representative where the controller offers goods or services to, or monitors the behavior of, individuals in the EU, subject to a limited exception for processing that is occasional, low-risk, and does not involve large-scale special-category or criminal data. If and when Anzoth offers the Services to individuals in the EU on a basis that requires a representative, that representative's contact information will be designated and published here.
9. Children's Privacy
The Services are not directed to, and are not intended for use by, anyone under 18 years old, consistent with the eligibility requirement in our Terms of Service. We do not knowingly collect personal data from anyone under 18. If you believe a child under 18 has provided us with personal data, please contact us at [email protected] so we can investigate and, if appropriate, delete that information and take other appropriate action.
10. Consumer Health Data
Anzoth is not a healthcare provider, health plan, healthcare clearinghouse, or medical-record service, and the Services are not intended to diagnose, treat, cure, or prevent any condition. You should not submit protected health information or identifiable consumer health data unless you have lawful authority to do so, all required notices and consents have been provided, your use complies with applicable law, and Anzoth has expressly agreed in writing to support that use. Anzoth does not sell identifiable consumer health data and does not use geofences around healthcare facilities to identify, track, collect data from, or send notifications or advertising to individuals concerning health services. Subject to applicable law and contractual limitations, you may request access to or deletion of consumer health data by contacting [email protected].
11. Automated Processing and AI Outputs
The Services use automated systems and artificial-intelligence models to generate Output based on Customer Content. Output may be inaccurate, incomplete, misleading, outdated, or unsuitable for a particular purpose. Anzoth does not use automated processing to make decisions that produce legal or similarly significant effects about individuals unless expressly disclosed and permitted by applicable law. Do not rely on Output as the sole basis for decisions concerning employment, housing, credit, insurance, education, healthcare, legal rights, or another high-impact matter. If Output contains inaccurate personal data about you, contact [email protected]; because AI systems generate responses dynamically, Anzoth may not be able to permanently correct every future output, but we will evaluate requests as required by applicable law.
12. Do Not Track and Global Privacy Controls
Some browsers transmit "Do Not Track" signals. Because no uniform standard currently governs all such signals, the Services may not respond to every Do Not Track signal. Where required by applicable law, Anzoth will process recognized browser-based opt-out preference signals, such as Global Privacy Control, for the browser or device from which the signal is received. Anzoth does not currently sell personal information for money.
13. Third-Party Links and Integrations
The Services may link to, or allow you to connect, third-party websites, applications, or integrations that are not operated by Anzoth. This Privacy Policy does not apply to those third parties. Review their privacy policies before connecting an integration or following a link.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, the Services, or applicable law. We will revise the "Last Updated" date. Where a change materially affects how we process personal data, we may provide additional notice through the website, dashboard, email, or another appropriate method. The updated Privacy Policy applies from its stated effective date. Where applicable law requires consent for a material change, we will obtain that consent separately rather than relying on continued use of the Services.
15. Regional and State-Specific Disclosures
15.1 California
If you are a California resident, the CCPA provides you with the rights described in Section 7, along with the right to know the categories of personal data collected, the categories of sources, the business purpose for collection, and the categories of third parties with whom data is disclosed, covering the preceding 12 months. Anzoth does not sell or share personal data for cross-context behavioral advertising, as those terms are defined under the CCPA, and does not knowingly sell or share the personal information of individuals under 18. You may submit a verifiable consumer request, including through an authorized agent, to [email protected].
15.2 European Economic Area, United Kingdom, and Switzerland
If you are located in the EEA, UK, or Switzerland, the legal bases described in Section 8 apply to our processing of your personal data, and the international-transfer safeguards described in Section 6 apply to transfers of your data outside those regions. You have the right to lodge a complaint with your local supervisory authority.
15.3 Other Jurisdictions
Additional state or national privacy laws may provide you with rights similar to those described above. If a specific law applies to you and is not addressed here, contact us at [email protected] and we will address your request under the applicable law.
16. Contact Information
Deployed IT Solutions Doing business as Anzoth 15640 NE Fourth Plain Blvd Ste 106 #134 Vancouver, WA 98682 United States
Email: [email protected]
Please identify the nature of your request in the subject line — for example, "Privacy Request," "Security Report," "Legal Notice," or "Account Support." Do not include passwords, complete API keys, complete payment-card numbers, or other unnecessary sensitive information in your message.
