Privacy Policy
Free-pi Privacy Policy
Effective date: August 20, 2026
This Privacy Policy explains how DappHero Corp (“free-pi,” “we,” “our,” or “us”) collects, uses, stores, and shares information when you use the free-pi command-line service, including free-pi-cli and related services (the “Service”).
Our contact email is legal@freepi.ai.
1. Our Plain-Language Summary
free-pi is free because advertising helps pay for the AI inference users receive.
When you use free-pi, we may collect your coding-session content, including prompts, model responses, source code, and files or context that the agent reads. We call these records “traces.” We may use traces to operate and improve the Service, including to train and improve AI models.
We save your traces and use them to train models. We may share or sell that data to third parties. Once you accept, there is no opt-out, except where the law gives you one. We do our best to remove personal information from traces before we store them, but we cannot promise a trace is perfectly clean. free-pi is in alpha and testing; by using it you acknowledge this.
Ads are displayed in the terminal interface. Ad content never enters the model’s context. We do not include an advertisement’s content in the prompts, source code, or other context sent to the AI model.
2. Information We Collect
Information you provide or the Service receives from your coding session
We may collect and store traces, including:
- prompts, messages, and instructions you send;
- model responses;
- source code, file content, terminal context, and other material the agent reads or receives;
- configuration and command information necessary to provide the Service; and
- feedback you provide.
These traces can contain confidential information, proprietary code, personal information, credentials, API keys, passwords, tokens, or other secrets if they are included in your prompts or context. We do not ask users to submit secrets, but we may inadvertently receive them when they appear in a session.
Account and authentication information
When you sign in through GitHub, we may receive and store:
- your GitHub identifier;
- your GitHub handle; and
- your GitHub account creation date.
We do not receive or store your GitHub password.
Usage and operational information
We may collect information about how you use the Service, including:
- token usage, request counts, inference cost, daily allowance usage, and billing/operational metrics;
- device, command-line, application-version, and diagnostic information;
- IP address, approximate location derived from IP, timestamps, and log information; and
- information used to detect fraud, abuse, security incidents, or attempts to bypass Service controls.
Advertising and analytics information
We may collect information about terminal ad delivery, including ad impressions, clicks, campaign identifiers, and measurement information.
Our current providers include:
- OpenRouter and applicable model providers for AI inference;
- PostHog for product analytics;
- Google Analytics for website analytics on freepi.ai, subject to the cookie choice you make there; and
- our own ad server for advertising delivery and measurement. When you click an ad, the advertiser receives a click identifier so it can attribute the visit to free-pi.
3. How We Use Information
We use information to:
- provide and maintain the Service, including authentication, inference, and daily allowance management;
- send permitted inputs to AI providers and return model responses;
- store, analyze, train, evaluate, develop, and improve our models, tools, and Service;
- measure usage, costs, performance, quality, and reliability;
- display, measure, and improve advertising;
- detect, prevent, and investigate fraud, abuse, security incidents, and violations of our Terms;
- respond to requests, enforce agreements, and comply with legal obligations; and
- communicate changes, technical notices, and support information.
We may create aggregated or de-identified information and use it for these purposes to the extent permitted by law.
4. Our Legal Bases for Processing
If you are in the EEA, UK, or another jurisdiction that requires a legal basis, we process personal information as follows:
- Performance of a contract: to provide the Service you request, authenticate your account, process prompts, return responses, and administer usage limits.
- Legitimate interests: to secure and improve the Service, prevent abuse, measure operational performance, maintain records, protect our rights, and to train and improve our models. Where the law gives you a right to object to legitimate-interest processing (for example in the EEA/UK), you may contact us (see §6 and §9).
- Consent: where applicable, including for certain advertising, measurement, cookies or similar technologies, and any processing for which consent is required. You may withdraw consent where it is the applicable legal basis.
- Legal obligations: to comply with applicable law, lawful requests, and enforceable legal processes.
We rely on legitimate interests for training on your traces, whether or not you have purchased credits. The consent screen in free-pi-cli records that you have read and accepted our Terms and this Policy; it is not the legal basis for training. free-pi's stance is take-it-or-leave-it: the Service, free or paid, includes training, and users who do not want it can decline to use the Service. Where the law independently grants a right to object (EEA/UK), we will honor it as required.
5. How We Share Information
We may share information with:
- AI and infrastructure providers, including OpenRouter and the model providers it routes to, to provide inference. Those providers process your requests under their own data policies, which may include retaining or using your Content to improve their models. We may change our routing and provider mix at any time as we optimize cost, speed, and quality;
- analytics providers, including PostHog, to understand and improve the Service;
- advertising providers to display ads and measure performance;
- service providers that provide hosting, storage, security, support, and technical operations;
- professional advisers such as lawyers, accountants, and insurers when reasonably necessary;
- government authorities or other parties when we reasonably believe disclosure is required by law, legal process, or to protect rights, safety, security, or property; and
- a successor organization in connection with a merger, financing, sale, reorganization, or transfer of assets.
Sale and sharing. We may share or sell traces and related data, including prompts, source code, context, and model responses, to third parties, including for their own model training. Some privacy laws define “sale,” “sharing,” or “targeted advertising” broadly, and our practices fall within those definitions. See Section 9 for the rights the law gives you.
We do not permit advertisers to place ad content into the model’s context or receive your prompts, source code, or traces merely because they advertise through the Service.
6. Model Training and Session Traces
Training is on by default for every user, whether or not you have purchased credits: we may use traces, including prompts, source code, context, and model responses, to train, evaluate, and improve models and related tools. Purchasing credits buys additional usage; it does not turn training off. This helps fund the Service.
Training and sharing are part of using the Service. If you do not want your Content saved, used for training, or shared or sold to third parties, do not use the Service. This applies whether or not you have purchased credits. Once you accept, there is no self-service opt-out, and we do not offer a way to use the Service with training or sharing turned off.
Region-specific rights. Where the law gives you a right to object to this processing (for example in the EEA/UK), contact legal@freepi.ai and we will handle your request as the law requires.
This is an important part of the free-pi model. Please do not submit code or information that you are not permitted to disclose or that you do not want processed for these purposes.
We strive to apply reasonable safeguards and access controls. However, no system can guarantee that a model will never produce similar content, that all sensitive information will be detected automatically, or that all content can be removed from already-created model artifacts. We will honor applicable deletion rights and explain any applicable limitations when responding to a request.
Filtering and redaction. Before we store a trace, we run an automated pattern-based filter over the request and the response. The filter replaces values stored under credential-type field names (for example authorization, token, password, and API key) and text that matches known formats for API keys, private key blocks, signed web tokens, email addresses, public IP addresses, and payment card numbers. Each removed item is replaced with a placeholder that records only the type of item removed. The filter is pattern-based only. It does not use a model to detect personal information, and it can miss personal information that does not match a known format, such as a name or a postal address in free text. We applied the same filter to the traces stored before we introduced it. This is a best-effort process. We do our best to remove personal information before storage, but we cannot promise that a stored trace is perfectly clean.
7. Retention
We retain information only as long as reasonably necessary for the purposes described in this Policy.
We retain information for as long as reasonably necessary for the purposes described in this Policy, which may be indefinitely. This includes raw session traces, account and authentication information, usage, security, and billing records, advertising and analytics records, and aggregated or de-identified information. We delete information where the law requires us to or where you have an enforceable deletion right.
We may retain information longer when required or permitted by law, to address security or abuse, or to maintain a record of deletion requests.
8. Security
We use reasonable administrative, technical, and organizational safeguards designed to protect information, including encryption in transit, access controls, logging, and automated redaction of credentials and personal information before traces are stored.
No system is completely secure. You should avoid including passwords, API keys, private keys, tokens, or other secrets in prompts or context unless you have assessed the risk and have permission to do so.
If we identify a security incident requiring notification under applicable law, we will provide notice as required.
9. Your Privacy Rights
Depending on where you live, you may have rights to: request access; request correction; request deletion; restrict or stop certain processing; object to processing based on legitimate interests; receive a portable copy; withdraw consent; and opt out of targeted advertising, certain sharing, or certain uses.
To make a request, contact legal@freepi.ai with the subject line “Privacy Request.” We may ask for information to verify your request and may limit or deny a request as permitted by law.
Deletion requests. There is no self-service deletion route yet. Request deletion through legal@freepi.ai.
If you are a California resident, you may have rights under the CCPA/CPRA, including rights to know, delete, correct, and opt out of certain “sale,” “sharing,” or targeted-advertising uses.
If you are in the EEA or UK, you may also have the right to complain to your local data-protection authority.
10. International Transfers
We may process information in the United States and in other countries where we or our providers operate. When required, we use appropriate safeguards for international transfers.
11. Children
The Service is not intended for children. You may not use the Service if you are under 13 in the United States, under 16 in the European Economic Area or the United Kingdom, or under 18 anywhere else. We do not knowingly collect personal information from anyone below these ages.
12. Third-Party Links and Services
The Service may contain links to third-party services, including advertiser links. Their privacy practices are governed by their own policies.
13. Changes to This Policy
We may update this Privacy Policy at any time, including without notice, as our Service, providers, or legal requirements change. We will usually update the effective date on this page, but we do not promise advance notice or in-Service notice of a change, including a material one, except where the law requires it. Check this page for the current Policy before you rely on it.
14. Contact
For privacy questions or requests, contact:
legal@freepi.ai