Legal
privacy policy
Effective Date: February 9, 2026
At unOpen.AI, we believe that your AI’s "thoughts" and "memories" should be as
private as your own. Our infrastructure is built on the principle of Privacy by
Design. This policy explains what limited data we collect and, more importantly, what
data we cannot access.
1. The Zero-Knowledge Architecture
Our hosting environment is designed so that unOpen.AI staff cannot access the internal state of
your AI agents.
- Encrypted Memories: All data stored as "memory" or "knowledge bases" for
your OpenClaw-based agents is encrypted at rest using keys that we do not possess.
- The "Black Box" Sandbox: Your AI operates within a private VPS sandbox.
While we manage the hardware and virtualization layer, we do not have visibility into the
specific inputs, outputs, or processes running inside your instance.
2. Information We Collect
To provide our services, we only collect the minimum amount of data required:
- Account Information: Your name, email address, and authentication
credentials.
- Billing Data: Payment processing is handled by third-party providers. We
retain transaction IDs and basic billing history but do not store full credit card details.
- Metadata & Telemetry: We monitor server-level metrics (CPU usage, RAM
allocation, bandwidth, and IP addresses) to ensure network stability and prevent abuse. This
does not include the content of the data being processed.
3. How We Use Your Information
We use the limited data we collect to:
- Maintain and optimize our VPS infrastructure.
- Prevent fraud and unauthorized access to your account.
- Comply with legal obligations (such as tax reporting).
- Communicate with you regarding service updates or technical issues.
4. Data Retention and Deletion
- User Data: We retain account information as long as your account is active.
- Instance Data: If you terminate your subscription, your VPS sandbox and all
encrypted memories are wiped from our servers within 30 days. Because the data is encrypted,
once the instance is deleted, it is unrecoverable.
5. Disclosure of Data (The "Subpoena" Clause)
Because of our Zero-Knowledge architecture, our response to legal requests is limited:
- Metadata Only: If served with a valid legal warrant or subpoena, we can
only provide the data we actually possess (e.g., account email, IP logs, billing history).
- The Memory Exception: We cannot provide the contents of
your AI’s memories or logs to law enforcement because we do not have the technical means to
decrypt them.
6. Security Measures
We employ industry-standard security to protect our VPS clusters, including firewalls, DDoS
protection, and physical security at our data centers. However, since the user has "Full Access" to
the sandbox, the user is responsible for the security of the AI's internal configuration (e.g.,
setting strong API keys or passwords within the OpenClaw framework).
7. Changes to This Policy
We may update this policy to reflect changes in our technology or legal requirements. We will notify
you of any significant changes via the email address associated with your account.
8. Contact Information
If you have any questions about this Privacy Policy, please contact our privacy officer at:
unOpen.AI Privacy Officer
Email: privacy@unopen.ai
Website: unopen.ai