Privacy Policy

Effective September 25, 2026 · Applies to livegraph.ai

LiveGraph is operated by Canweb Ltd. ("we"). This policy covers the hosted service at livegraph.ai. Self-hosted installations run entirely on your own infrastructure — nothing in them reaches us, and this policy does not apply to them.

What we collect

  • Account data — your email address (used for sign-in — alongside a password or a linked Google/GitHub account — and for verification and service notices).
  • Run content — the prompts, inputs, agent outputs, tool calls, and event trails your graphs produce, stored so you can view, resume, and rerun them.
  • Usage data — token counts, estimated costs, page views, and feature usage, for billing and capacity planning.
  • Credentials you add — API keys and tokens you store at /settings, encrypted at rest and never logged or shown again after saving.
  • Billing data — subscription status and identifiers. Card details go directly to Stripe; we never see or store them.

Where your prompts go

LiveGraph routes your prompts and context to the model providers configured on each graph — including any API keys you supply yourself, and any MCP servers or HTTP endpoints you connect. Each provider's own privacy policy applies to what it receives. We do not sell your data and do not use your run content to train models.

Third-party processors

  • Stripe — subscription billing and payment processing.
  • Model providers — whichever providers/models your graphs call (e.g. OpenRouter, Anthropic, Google).
  • Railway — hosting infrastructure for the app, API, and database.
  • Email provider — delivers verification, password-reset, and notification emails.
  • Google Analytics — aggregate site traffic, in cookieless mode (see Cookies).
  • Cloudflare — the bot check (Turnstile) on signup and account-email forms.

Cookies

One strictly-necessary session cookie keeps you signed in. We do not use advertising or third-party tracking cookies.

We measure site traffic with Google Analytics in a cookieless mode: it stores nothing in your browser and cannot recognize you across visits. For each page view Google receives the page path (with any graph, run or other ids removed, and never the query string), the referring site, your browser and device type, and an approximate location derived from your IP address, which Google Analytics does not store. Advertising features are off. If your browser sends Do Not Track or Global Privacy Control, Google Analytics is not loaded at all.

Retention and deletion

Run history and graph configuration are kept while your account is active. You can delete graphs and runs at any time, and request full account deletion — including stored credentials — by emailing us. Encrypted backups may retain deleted data for a limited window before rotating out.

Security

Credentials are encrypted at rest, secrets are redacted from tool output before it reaches a model, and external calls (MCP servers, webhooks, HTTP tools) go through explicit allowlists you control. No system is perfectly secure; if we learn of a breach affecting your data we will notify you.

Changes

If this policy changes materially we'll note it here and, where appropriate, email the address on your account.

Contact

Questions or deletion requests: [email protected]. LiveGraph is operated by Canweb Ltd..