Privacy Policy

Last updated: March 2026

1. Overview

AgentPay ("we", "our", "us") is a payment infrastructure platform for autonomous AI agents. This Privacy Policy explains how we collect, use, and protect information when you use our API and platform. AgentPay does not hold customer funds. All payment execution is performed through Coinbase Developer Platform (CDP) infrastructure.

2. Information We Collect

  • Account information: Email address and organization name when you register.
  • API usage data: Transaction logs, agent IDs, payment amounts, recipient addresses, and timestamps required for audit trails.
  • Technical data: IP addresses, API request logs, and error reports used for security and reliability monitoring.
  • Blockchain data: Transaction hashes and on-chain records that are inherently public on Base.

3. How We Use Your Information

  • Providing and operating the AgentPay platform
  • Generating immutable audit trails for compliance purposes
  • Detecting fraud and enforcing spending guardrails
  • Communicating product updates and security notices
  • Complying with applicable laws and regulations

4. Data Retention

Transaction logs are retained for a minimum of 7 years to comply with financial record-keeping requirements. API keys are stored as irreversible hashes — we cannot recover your raw key if lost. On-chain transaction data is permanent and public by nature of blockchain technology.

5. Third-Party Services

AgentPay uses Coinbase Developer Platform for wallet infrastructure and key management. Payments are executed on Base (an Ethereum L2). By using AgentPay, you also agree to the applicable terms of these infrastructure providers. We do not sell your data to third parties.

6. Security

API keys are stored as SHA-256 hashes. All API communication requires HTTPS. We implement rate limiting and anomaly detection on all payment endpoints. SOC 2 Type I assessment is in progress (target Q3 2026).

7. Contact

For privacy-related inquiries, contact us at privacy@agentpay-hq.com.