AgentConciergePrivacy Policy
Legal

Privacy Policy

Effective date: April 9, 2026

1. Overview

AgentConcierge ("we," "us," or "our") operates agentconcierge.ioand its associated services, APIs, and tools (collectively, the "Platform"). This Privacy Policy describes how we collect, use, disclose, and protect information about you when you access or use the Platform.

By using the Platform, you agree to the practices described in this Policy. If you do not agree, please do not use the Platform.

This Policy applies to all users, including visitors, registered users, Pro and Business subscribers, and API consumers. It does not apply to third-party services linked from our Platform — those services have their own privacy policies.

2. Data We Collect

We collect information in the following categories:

2.1 Information You Provide

  • Account data: name, email address, and profile information collected when you create an account via our authentication provider (Clerk).
  • Payment data: billing details processed by Stripe. We do not store raw payment card numbers — Stripe handles PCI-DSS compliance.
  • Agent stack data: the AI tools, agents, and usage metrics you voluntarily add to your stack and dashboard.
  • Recommendation inputs: responses you provide during our AI-powered recommendation flow (role, use case, budget, goals). This data is used to generate your personalized recommendations.
  • Communications: messages you send us via support, email, or contact forms.
  • Submitted content: agent suggestions, feedback, and ratings you submit through the Platform.

2.2 Automatically Collected Data

  • Usage data: pages visited, agents searched, clicks, session duration, and feature interactions.
  • Click-through data: when you click outbound links via our /go/[slug] tracking system, we record the agent, timestamp, referring source, and your user ID (if signed in). This data is used for affiliate attribution and analytics.
  • Device and technical data: IP address, browser type and version, operating system, referring URL, and time zone.
  • Log data: server logs, error reports, and API request logs.
  • Cookies and similar technologies: see Section 7.

2.3 Data From Third Parties

  • Authentication providers: if you sign in via Clerk, we receive your name and email from that provider.
  • Payment processors: Stripe provides us with transaction status and billing summaries.
  • Analytics providers: aggregated and anonymized usage data from Vercel Analytics and Upstash.
  • Affiliate networks: if you arrive via an affiliate referral, we may receive click attribution data from Impact.com.

3. How We Use Your Data

We use the data we collect for the following purposes:

  • Providing the Platform: operating the agent catalog, search, recommendation engine, dashboard, ROI tracking, and all core features.
  • Personalization: generating AI-powered agent recommendations tailored to your inputs. Your recommendation inputs are processed by our AI engine and by Anthropic's Claude API. See Section 6 for details on third-party AI processing.
  • Account management: creating and maintaining your account, authenticating logins, and managing subscriptions.
  • Billing: processing payments, managing subscription upgrades and downgrades, and issuing refunds.
  • Analytics: understanding how users interact with the Platform to improve features and performance.
  • Affiliate attribution: tracking outbound clicks to partner products to attribute referral commissions. Click data is associated with your user ID when signed in.
  • Security: detecting fraud, abuse, spam, and unauthorized access.
  • Legal compliance: meeting applicable legal obligations, responding to lawful requests, and enforcing our Terms of Service.
  • Communications: sending transactional emails (account, billing, security) and, where you have opted in, product updates and newsletters.

We do not sell your personal data to third parties. We do not use your personal data to train AI models without your explicit consent.

4. Proprietary Systems & Intellectual Property

The following components of the Platform constitute proprietary intellectual property of AgentConcierge and are protected under applicable copyright, trade secret, and intellectual property laws:

  • Recommendation engine: our AI-powered matching algorithm, including its prompt architecture, filtering logic, scoring methodology, and output formatting, is a trade secret of AgentConcierge.
  • Agent catalog and taxonomy: the structure, categorization, tagging system, and curation criteria applied to our catalog of AI agents represent significant original work and constitute proprietary data assets.
  • Attribution system: our /go/[slug] outbound tracking architecture, affiliate parameter injection logic, and commission attribution pipeline are proprietary.
  • ROI modeling: the formulas, inputs, and weighting applied to ROI calculations in user dashboards are proprietary.
  • Brand assets: the AgentConcierge name, logo, gradient mark, and visual identity are protected trademarks.

User data you submit to the Platform does not grant AgentConcierge any ownership rights over your data. You retain all rights to your stack configuration, notes, and uploaded content. We are granted a limited license to process that data solely to provide the Platform to you.

Conversely, your use of the Platform does not grant you any rights in our proprietary systems, algorithms, catalog structure, or brand assets. Reverse engineering, scraping, or systematic extraction of Platform data is prohibited.

5. Disclosure of Your Data

We do not sell or rent personal data. We may share data in these circumstances:

  • Service providers: companies that help us operate the Platform (hosting, authentication, payments, email, search indexing, rate limiting). These providers are contractually bound to process data only as directed by us.
  • Affiliate partners: click attribution data (agent slug, timestamp, referral source, anonymous user identifier) is shared with affiliate networks solely for commission tracking.
  • Legal requirements: when required by law, court order, or governmental authority, or to protect the rights, property, or safety of AgentConcierge, our users, or others.
  • Business transfers: in connection with a merger, acquisition, or sale of assets, with appropriate confidentiality protections.
  • With your consent: for any other purpose with your explicit consent.

6. Third-Party Services

The Platform integrates with the following third-party services. Each has its own privacy policy:

ServicePurposeData Shared
ClerkAuthenticationName, email
StripePaymentsBilling info, subscription status
SupabaseDatabaseUser data, agent stack, analytics events
Anthropic (Claude API)AI recommendationsRecommendation inputs (anonymized where possible)
AlgoliaSearchSearch queries, agent catalog data
VercelHosting & analyticsIP address, usage data
Upstash (Redis)Rate limiting & cachingIP address, request counts
ResendTransactional emailEmail address
SanityBlog CMSNone (content only)
Impact.comAffiliate trackingClick events, referral attribution

When your recommendation inputs are sent to the Anthropic Claude API, they are subject to Anthropic's Privacy Policy. We use Anthropic's API under a commercial agreement that restricts use of submitted data for model training.

7. Cookies & Tracking Technologies

We use the following types of cookies and tracking technologies:

  • Essential cookies: required for authentication, session management, and security. Cannot be disabled without breaking core functionality.
  • Analytics cookies: used by Vercel Analytics to understand usage patterns. Data is aggregated and not tied to personally identifiable information.
  • Affiliate tracking: Impact.com places a tracking pixel and script on the Platform to attribute conversions to affiliate partners. This script may set cookies associated with your browser session.
  • Preference cookies: used to remember your settings and preferences across sessions.

You can manage cookie preferences through your browser settings. Disabling essential cookies will impair your ability to use the Platform. Disabling analytics or affiliate cookies will not affect core functionality.

8. Data Retention

We retain data for as long as necessary to provide the Platform and comply with legal obligations:

  • Account data: retained while your account is active and for up to 90 days after deletion.
  • Stack and dashboard data: deleted within 30 days of account deletion upon request.
  • Analytics events: retained in aggregated form indefinitely; raw event logs retained for 12 months.
  • Click attribution data: retained for 24 months to support affiliate commission reconciliation.
  • Payment records: retained for 7 years as required by financial regulations.
  • Support communications: retained for 3 years.

You may request deletion of your data at any time (see Section 10). Some data may be retained in anonymized or aggregated form after deletion.

9. Security

We implement industry-standard security measures to protect your data, including:

  • TLS encryption for all data in transit
  • Row-level security (RLS) on our database — your data is accessible only by you and our service role
  • Authentication via Clerk with support for multi-factor authentication
  • API rate limiting on all public endpoints to prevent abuse
  • Webhook signature verification for payment events
  • Principle of least privilege applied to all service integrations
  • No raw payment card data stored — all payments handled by PCI-DSS compliant Stripe

No method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security. In the event of a data breach affecting your rights, we will notify you as required by applicable law.

10. Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal data:

  • Access: request a copy of the personal data we hold about you.
  • Correction: request correction of inaccurate or incomplete data.
  • Deletion: request deletion of your personal data, subject to legal retention requirements.
  • Portability: request your data in a structured, machine-readable format.
  • Objection: object to processing based on legitimate interests.
  • Restriction: request that we restrict processing of your data in certain circumstances.
  • Opt-out of marketing: unsubscribe from marketing communications at any time via the unsubscribe link in any email or by contacting us.

To exercise any of these rights, email us at [email protected]. We will respond within 30 days. We may need to verify your identity before fulfilling a request.

California residents (CCPA/CPRA): you have the right to know what personal information is collected, to delete it, to correct it, to opt out of sale or sharing (we do not sell data), and to non-discrimination for exercising your rights.

EEA/UK residents (GDPR/UK GDPR): you have the rights listed above plus the right to lodge a complaint with your local supervisory authority.

11. Children

The Platform is not directed to individuals under the age of 18. We do not knowingly collect personal data from children. If we become aware that we have collected data from a person under 18, we will delete it promptly. If you believe we have inadvertently collected such data, contact us at [email protected].

12. International Data Transfers

AgentConcierge is based in the United States. If you access the Platform from outside the United States, your data may be transferred to and processed in the United States or other countries where our service providers operate. These countries may have different data protection laws than your home country.

Where required, we use appropriate safeguards for international transfers, including Standard Contractual Clauses (SCCs) approved by the European Commission. By using the Platform, you acknowledge and consent to these transfers.

13. Policy Changes

We may update this Privacy Policy from time to time. When we make material changes, we will notify you by updating the effective date at the top of this page and, where appropriate, by sending an email to the address associated with your account or posting a notice on the Platform.

Your continued use of the Platform after any changes constitutes your acceptance of the updated Policy. We encourage you to review this page periodically.

14. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

AgentConcierge

Attn: Privacy

Email: [email protected]

Website: agentconcierge.io

We take privacy inquiries seriously and will respond within 30 days of receipt.

© 2026 AgentConcierge. All rights reserved.Terms of Service