Legal

Privacy Policy

Last updated: 23 August 2026

This policy explains how APIs Platform handles personal data when you create an account, browse our sites or call our APIs. It is the canonical policy for the hub and the product sites.

Terms of Service

1. Data we collect

  • Account data: email address, optional name, password hash, and email-confirmation status.
  • Acceptance records: timestamp and terms version when you accept the Terms of Service and Privacy Policy, plus confirmation that you are at least 18. We do not collect a date of birth.
  • Billing data: subscription status, plan, and payment references. We do not store full card numbers. Card checkout, when enabled, is handled by a payment processor such as Stripe; some plans may still be completed manually.
  • Usage data: API key identifiers, endpoints called, timestamps, success or error counts, and rate-limit counters.
  • Lookup data: IP addresses you submit to the geolocation API, processed only to return a location estimate. You are the controller of those IPs; we are the processor.
  • Security data: results of security checks, the IP address used to sign in or call the API, approximate location (city, region and country) used in new-device alerts, and basic request metadata.
  • Presentment data: the country associated with your request, used to show localized prices and language. We store the resulting currency preference (USD, BRL, EUR or GBP) and, if you have an account, on the account. These methods are collected and used as described in these terms.
  • Support data: whatever you send to support@apis-platform.com. Tickets include your account, product, plan and queue (normal or priority).
  • Account audit events (Scale dashboard): sign-in, email or password changes, MFA changes, API key create or revoke, and plan changes or cancellation. Each event stores UTC time, actor, action, source IP and result. We keep these records for up to 12 months.
  • We do not collect optional site-measurement analytics such as Google Analytics. On the IP Geolocation product site we load the Google Ads tag to measure campaign conversions (sign-ups and paid subscriptions).

2. Why we process it

We process account, billing and usage data to perform the contract (provide the APIs, enforce quotas, send confirmation and reset emails). We process security logs, abuse signals and the country associated with your request under legitimate interest, so we can protect the service and show published prices and language. We keep some records to meet legal and accounting duties. We do not run Google Analytics or remarketing. On the IP Geolocation product site we use Google Ads conversion measurement. We do not sell personal data.

3. Cookies and similar technologies

We use cookies, local storage and similar technologies to keep you signed in and remember language and currency. On geolocate-api.com we also load the Google Ads tag to measure campaign conversions. Product sites use their own session cookies. A session on any of our sites can offer Continue as on the others; the login page may briefly visit those sites to look for a session, and you still confirm before a cookie is created on the site you opened. Signing in on a product can also set the hub session cookie. Signing out of one site does not sign you out of the others. Details: Cookie Policy.

4. Processors

We use infrastructure, email, security and payment providers to operate the service. Card payments, when enabled, may be processed by Stripe. From the IP Geolocation product site we send conversion events to Google Ads to measure paid campaigns. We do not send API lookup payloads to Google. Providers only receive what they need to perform their role. When you submit other people’s data through the APIs, the Data Processing Agreement applies.

5. Children

The service is for people 18 or older. We do not knowingly collect personal data from children. If you believe we have, email support@apis-platform.com and we will delete it.

6. Retention

We keep account and billing records while the account is open and for a limited period afterwards where we need them for security, accounting or legal reasons. Usage aggregates are kept to operate quotas and show dashboards. Account audit events are kept for up to 12 months. Support tickets are kept while the account is open and for a limited period afterwards. You can delete the account from Settings, or email support@apis-platform.com. After you request deletion the account stays recoverable for 48 hours; we then delete data that we are not required to keep.

7. Regional privacy rights

Depending on your location, you may have additional rights under applicable data protection laws, including the GDPR, UK GDPR, LGPD, and other applicable privacy legislation.

Those rights typically include access, correction, deletion, portability, restriction or objection to certain processing, and withdrawal of consent where processing is based on consent. You can delete the account or change cookie preferences in Settings, or email support@apis-platform.com. We will respond within the time the applicable law requires.

You may also lodge a complaint with the data-protection authority in your country. Exercising these rights does not affect any other remedy you have under local law.

8. International transfers

The service is delivered from a global network. Your data may be processed in countries other than your own. We rely on the contractual and technical safeguards those providers offer for cross-border processing.

9. Changes

We may update this policy. The “Last updated” date will change when we do. Material changes will be announced by email when practical.

10. Contact