Privacy Policy

Version 1.8 · Effective April 7, 2026 · Last updated June 9, 2026

1. Who we are

AGLedger LLC (“AGLedger,” “we,” “us,” or “our”) operates the website at agledger.ai, agledger.io, and their respective subdomains. We provide self-hosted accountability infrastructure software for AI agents and autonomous systems.

Contact:
AGLedger LLC
Email: [email protected]
Web: https://agledger.ai

2. Scope

This Privacy Policy describes how we collect, use, and protect information when you visit our Website (agledger.ai, agledger.io, and their respective subdomains).

This policy does not apply to the AGLedger software product.

AGLedger is self-hosted software that runs in your infrastructure. We do not access, process, or store any data that you put into your AGLedger deployment. Your use of the AGLedger software is governed by the Software License Agreement.

3. Information we collect

3.1 Automatically collected information

When you visit the Website, we automatically collect:

Aggregate analytics via Cloudflare Web Analytics: pages visited, referral source, and approximate geographic location (country/region), measured cookielessly. Cloudflare Web Analytics sets no cookies, uses no client-side fingerprinting, and assigns no cross-site or persistent visitor identifier; metrics are aggregate page-view counts, not individual visitor profiles.

Server logs collected by our hosting provider (Hostinger): IP address, request timestamps, URLs accessed, HTTP status codes, user agent string.

3.2 Information you provide

If you contact us by email (e.g., [email protected], [email protected], [email protected]), we collect the information you include in your message: name, email address, company name, and message content.

3.3 No software usage data

The AGLedger software (Enterprise or Developer Edition) collects no usage data or other data, and AGLedger operates no service that receives data from your deployment. AGLedger has no visibility into your self-hosted installation.

3.4 Information we do not collect

We do not require account creation or registration on the Website.

We do not collect payment card data through the Website.

We do not use tracking pixels, social media trackers, or advertising networks.

We do not access or collect any data from your self-hosted AGLedger deployment (Enterprise or Developer Edition).

4. How we use information

Website improvement: understanding how visitors use the Website to improve content and navigation.

Analytics: measuring Website traffic and identifying popular content at an aggregate level. Our analytics are cookieless and do not profile individual visitors.

Communication: responding to your inquiries and providing requested information.

Security: detecting and preventing abuse, unauthorized access, and security incidents.

We do not use your information for targeted advertising, behavioral profiling, or automated decision-making.

5. How we share information

We share information only with the following categories of recipients:

RecipientPurposeData shared
Cloudflare (web analytics + CDN/edge)Cookieless website analytics and content deliveryAggregate page-view counts; no cookies, no cross-site identifiers, no personal profiles
Hostinger (hosting provider)Website hostingServer logs (IP, timestamps, URLs)

We do not sell, rent, or trade your personal information to any third party. We do not share personal information for cross-context behavioral advertising.

We may disclose information if required by law, court order, or government request, or to protect the rights, property, or safety of AGLedger, our users, or the public.

6. Cookies

The Website sets no analytics, advertising, or tracking cookies.

Our web analytics (Cloudflare Web Analytics) are cookieless: they record aggregate page views without storing a cookie on your device or assigning you a persistent or cross-site identifier. We do not use cookies for advertising, retargeting, or cross-site tracking. Because the Website does not place non-essential cookies, no cookie-consent banner is required.

If your browser session involves a strictly necessary cookie set by our CDN/security provider (Cloudflare) for load balancing or bot mitigation, it is used solely to deliver and protect the Website and is exempt from consent under the ePrivacy Directive Article 5(3) “strictly necessary” exception.

7. Data retention

Web analytics data: Cloudflare Web Analytics stores only aggregate, non-personal page-view metrics; no individual visitor record is created or retained.

Server logs: retained per Hostinger’s standard retention policy (typically 30 days).

Email correspondence: retained for the duration of the business relationship or inquiry, then deleted upon request.

8. Your rights under GDPR

If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have the following rights under the General Data Protection Regulation:

Access: request a copy of the personal data we hold about you.

Rectification: request correction of inaccurate personal data.

Erasure: request deletion of your personal data.

Restriction: request that we restrict processing of your personal data.

Portability: request your personal data in a structured, machine-readable format.

Objection: object to processing based on legitimate interests.

Withdraw consent: withdraw consent at any time where processing is based on consent.

Legal basis for processing: we process personal data based on legitimate interest (cookieless website analytics for improving the Website and ensuring security). Because our analytics are cookieless and set no non-essential cookies, no consent is required for them under the ePrivacy Directive; any strictly necessary CDN/security cookies are likewise consent-exempt.

To exercise your rights, contact us at [email protected]. We will respond within the timeframe required by applicable law.

Appeal right (EU/UK).If we decline any request, our response will explain the reason and your right to lodge a complaint with your local data protection authority (for example, the Irish Data Protection Commission, the UK Information Commissioner’s Office, or the supervisory authority of your EEA Member State), and your right to a judicial remedy.

9. Your rights under CCPA/CPRA

If you are a California resident, the California Consumer Privacy Act (as amended by the CPRA) provides you with the following rights:

Right to know: request the categories and specific pieces of personal information we have collected about you.

Right to delete: request deletion of your personal information.

Right to correct: request correction of inaccurate personal information.

Right to opt out of sale or sharing: we do not sell or share your personal information for cross-context behavioral advertising.

Right to non-discrimination: we will not discriminate against you for exercising your rights.

Categories of personal information collected in the preceding 12 months:

CategoryExamplesCollected
IdentifiersIP address, email address (if you contact us)Yes
Internet activityPages visited, referral source, session durationYes
GeolocationApproximate location (country/region from IP)Yes
Professional informationCompany name (if you contact us)Yes

We do not collect: financial information, biometric data, protected classifications, sensory data, or precise geolocation.

To exercise your rights, contact us at [email protected]. We will verify your identity and respond within the timeframe required by applicable law.

Designated method for submitting requests. AGLedger operates exclusively online; email to [email protected]is the designated method for submitting requests under California Civil Code § 1798.130(a)(1)(A).

Global Privacy Control (GPC). AGLedger honors the Global Privacy Control browser signal (Sec-GPC: 1) as a valid opt-out of sale and sharing under California Civil Code § 1798.135(b). As stated in Section 5, AGLedger does not sell or share personal information for cross-context behavioral advertising, so the practical effect is limited; we nevertheless reflect the signal in our records and refrain from any future processing inconsistent with it. The signal is honored without requiring you to enter any other information.

10. International data transfers

Our website uses Cloudflare (CDN and cookieless, aggregate analytics) and Hostinger (website hosting; server logs stored in the EU). The cookieless analytics metrics are aggregate and non-personal. To the extent these vendors process any limited website data outside your region, it is subject to the vendors’ own transfer safeguards.

11. Children’s privacy

The Website is not directed at children under the age of 16. We do not knowingly collect personal information from children. If we become aware that we have collected personal information from a child, we will delete it promptly.

12. Security

We implement reasonable technical and organizational measures to protect the information we collect, including HTTPS encryption for all Website traffic. However, no method of transmission or storage is 100% secure.

13. Changes to this policy

We may update this Privacy Policy from time to time. We will post the revised version on the Website with an updated “Last Updated” date.

14. EU / UK representatives

AGLedger is established in the United States. Its limited website processing (cookieless aggregate analytics and transient server logs) is unlikely to trigger GDPR or UK GDPR Article 27. To the extent Article 27 does apply, AGLedger will designate a representative if and when required by law. EEA and UK individuals and supervisory authorities may contact AGLedger directly at [email protected].

15. Sub-processors

A current list of sub-processors engaged by AGLedger is published at agledger.ai/subprocessors. AGLedger engages zero sub-processors for data stored in self-hosted Licensee deployments.

16. Contact

For privacy-related inquiries or to exercise your data rights:

AGLedger LLC
Privacy: [email protected]
Security: [email protected]
Web: https://agledger.ai

See also: Terms of Service · Acceptable Use Policy · Sub-processors