Privacy Policy

Last updated: August 16, 2026

This Privacy Policy explains what information 404aaS ("we", "us", "our") collects when you use our website and API, how we use it, and the choices you have. By using our website or services, you agree to the collection and use of information as described here.

1. Information We Collect

We collect the minimum information needed to provide the service:

  • Account information: your email address and password when you sign up. Passwords are stored and managed by our authentication provider, Supabase, and are never visible to us in plain text.
  • API key data: the names you give your API keys, when they were created, whether they are active, and aggregate usage statistics such as request counts and last-used timestamps. We do not log the content of the requests your applications make through your key beyond what is necessary for billing, abuse prevention, and displaying usage stats in your dashboard.
  • Session cookies: when you sign in, we set cookies to keep you authenticated across requests. These are functional cookies, not advertising or tracking cookies.
  • Contact information: anything you send us directly, such as when you email support, sales, or security.

We do not use third-party analytics or advertising trackers on this site.

2. How We Use Information

We use the information above to:

  • Create and secure your account, and authenticate sign-ins.
  • Issue, display, and let you manage your API keys.
  • Show you usage statistics for your own keys, and detect abuse or unusual activity.
  • Respond to support, sales, or security inquiries.
  • Communicate important changes to the service, such as updates to these policies.

We do not sell your personal information, and we do not use it for advertising. We process this information because it's necessary to provide the account and API key features you request, and to keep the service secure and working reliably.

3. How We Share Information

We do not share your personal information with third parties except:

  • Service providers: we use Supabase to host our database and handle authentication. Supabase processes your account data on our behalf and is bound by its own privacy and security commitments. This may involve transferring your data to servers outside your country of residence.
  • Legal reasons: if required to comply with a legal obligation, or to protect the rights, property, or safety of 404aaS, our users, or others.
  • With your consent: in any other case where you've explicitly agreed to it.

4. Data Retention & Deletion

We retain your account and API key data for as long as your account is active. If you want your account and associated data deleted, contact support@404aas.com and we will delete it, except where we're required to keep certain records for legal or security purposes.

5. Security

We rely on industry-standard practices to protect your data, including encrypted connections (HTTPS) and access controls on our database. API keys are shown to you only once, at generation time, and are not recoverable afterward. No method of transmission or storage is 100% secure, so we can't guarantee absolute security.

6. Your Rights

Depending on where you live, you may have rights to access, correct, export, or delete your personal information, or to object to or restrict certain processing. To exercise any of these rights, contact support@404aas.com.

7. Children's Privacy

Our services are not directed to children, and we do not knowingly collect personal information from anyone under 16. If you believe a child has provided us with personal information, contact us and we will delete it.

8. Third-Party Links

Our site links to third-party pages, such as our API documentation. We aren't responsible for the privacy practices of those third parties, and this policy doesn't cover them.

9. Changes

We may update this Privacy Policy from time to time. Continued use of the service after changes constitutes acceptance of the updated policy.

If you have questions about this policy, please contact us.