1. Data processed
- Account data: email, display name, locale, and protected password hash. The password is not stored in plain text.
- Sign-in data: provider identifier and verified email when the user signs in through Google.
- Technical data: IP address, user-agent, session information, security events, and activity logs.
- Usage data: selected model, service direction, current charge coefficient, token counts, cost, execution time, request status, API key, and balance operations.
- Web Chat data: conversation settings, selected key, selected model, context limit, and local history records stored in the user's browser where the user keeps Web Chat history enabled.
- Payment data: selected payment method, top-up operation details, transaction identifiers, payment status, amount, currency, LAVA commission amount when applicable, promo-code data, and provider metadata required to reconcile LAVA, Heleket, or another available payment method. The service does not request or store full bank-card details, bank authentication codes, or cryptocurrency private keys.
2. Why data is used
Data is used to create and protect accounts, process API requests, calculate cost, maintain balances, process payments through LAVA, Heleket, or another selected provider, prevent abuse and fraud, support users, and improve service reliability.
Prompt text, system prompts, and uploaded content are sent to the selected model provider only when the user sends a request. Server-side billing records keep technical metadata such as model, provider direction, charge coefficient, token counts, status, cost, key identifier, and timestamps; Web Chat conversation history is designed to remain in browser storage.
3. Cloudflare Turnstile
Cloudflare Turnstile is used to protect sign-in and registration forms from automated attacks. The check analyzes technical browser and connection signals to distinguish ordinary users from automated requests without ad tracking or visual puzzles in most cases.
Cloudflare data processing is governed by its Privacy Policy, Turnstile Privacy Addendum, and Website Terms.
4. Data transfer
Data may be transferred to infrastructure, payment, and model providers only to the extent required to deliver the requested function. Payment data may be transferred to LAVA, Heleket, banks, payment agents, blockchain networks, anti-fraud, AML/KYC, and chargeback-processing services when this is necessary for payment acceptance, confirmation, refund, dispute handling, or legal compliance. Disclosure may also occur under a lawful request from an authorized authority or to protect users and infrastructure.
5. Storage and protection
Data is stored for as long as needed to operate the account, perform billing, maintain security, and comply with mandatory requirements. Protected cookies, access controls, logging, and encryption of sensitive secrets are used. No system can guarantee absolute security.
Generated image data stored by Web Chat is bounded by browser-storage limits and can be removed by clearing browser data or deleting conversations in the interface. The service does not treat browser-local history as a guaranteed backup.
6. Cookies
The service uses necessary cookies for protected authorization and session operation. They are not intended for advertising tracking. Language and volume settings may be stored locally in the browser.
7. User rights
The user may request information about their data, correction, account deletion, or withdrawal of consent where processing is based on consent. Some information may be retained when required for security, billing, or legal compliance.
8. Changes and contact
The current version of this policy is published on this page. Questions about data, correction, or account deletion are accepted at pluswstore@gmail.com, by phone +7 (993) 555-51-61, and through Telegram @pluswstore. Working hours: Mon-Fri 10:00-19:00 (MSK). Tax ID: 612204854706.