Privacy Policy
Draft. This page is waiting on the operator’s legal details and a lawyer’s review.
The short version: we keep what we need to run your rooms and bill you, we don’t sell it, we don’t run ad trackers, and what’s inside your room is yours.
Who we are
Botel (botel.dev) is run by {{LEGAL_ENTITY}}, {{ADDRESS}}, {{COUNTRY}}. We are the controller of the personal data described here. For anything about your data, write to [email protected].
What we collect
Your account
- Your email address and password. The password is stored only as a salted hash.
- For each signed-in session: when it started and expires, and the IP address and browser user agent it came from.
- SSH public keys you add to reach your rooms.
Billing
- A record of every top-up, refund, dispute and charge against your balance, and your Stripe customer ID. Stripe handles card details; we never see or store them.
Your rooms
- Room details: name, size, status, when it was created, woke and slept, and which ports you have opened to the web.
- Usage: how long each room was awake, its storage, and, for managed inference, which model each call used, how many tokens it took and what it cost. We do not store the text of your prompts or the model’s replies; they pass through to the provider.
- An activity log of room events (woke, slept, paused, errors) shown in your console.
- Everything inside the room: files, the agent’s memory and conversations, logged-in browser sessions, installed software. It lives on the room’s disk and in snapshots of its disk and memory, taken so a sleeping room can wake where it left off.
- Keys you give us: model-provider API keys and Telegram bot tokens. We store them encrypted and place them only in your own rooms.
Invite requests
- If you ask for an invite: your email, any note you add, the page that sent you to us, and your browser user agent. We do not store your IP address with it.
Website visits
- Cloudflare Web Analytics counts visits to our public pages without cookies and without identifying you.
Why we use it
- To provide the service you signed up for (performance of a contract): running your rooms, signing you in, metering usage and charging your balance, sending service emails.
- To meet legal obligations: keeping payment and accounting records.
- For our legitimate interests: keeping the service secure, preventing fraud and abuse, answering invite requests, and understanding how many people visit the site.
We do not sell your data, use it for advertising, or use the contents of your room to train models. What a model provider does with the prompts your room sends it is governed by that provider’s own terms.
Who else processes it
We use these providers to run Botel. Each gets only what its job needs.
| Provider | What for | Where |
|---|---|---|
| Scaleway | Hosts the servers that run Botel and every room, and stores room snapshots in object storage. | France (EU) |
| OVHcloud | Stores nightly backups of our database. | France (EU) |
| Scaleway Transactional Email | Sends our service emails: password resets, password-change notices, room-ready notices. | France (EU) |
| Stripe | Takes top-up payments. Card details go to Stripe, never to us. | United States and EU |
| Cloudflare | Sits in front of botel.dev for delivery and protection against attacks, forwards mail sent to our address, and measures visits to our public pages. | Global network, United States company |
| OpenRouter | Routes your room's model requests to the model provider you picked, when you use managed inference. | United States |
| Model providers | Run the model your room calls. Which provider depends on the model you choose. | Varies by provider |
| Telegram | Carries messages between you and your bot, only if you connect one. | Global |
If you use your own model key, your room talks to that provider directly under your own agreement with them, and we are not in the path. The same goes for anything your agent reaches on the internet on your behalf.
Some of these providers are outside the EU. Where personal data leaves the EU, we rely on the safeguards the GDPR allows, such as the European Commission’s standard contractual clauses.
We may also disclose data when the law requires it, or to protect people or the service from harm.
Who at Botel can see your room
Your room is isolated from other people’s rooms. Our operators run the infrastructure underneath it and can technically access its contents. We only do so when you ask us to help, to investigate abuse or a security problem, to keep the service running, or when the law requires it.
How long we keep it
- Account and billing records: while your account is open. Payment records are kept longer where tax or accounting law requires it.
- A room and its snapshots: until you delete the room. If your balance stays at zero, your rooms can be paused, and a room left at zero for 30 days can be deleted along with its contents.
- Room activity log: 90 days.
- Invite requests: 180 days.
- Database backups: 30 days, so data deleted from Botel is gone from backups within 30 days.
- Sign-in sessions: until they expire or you sign out.
Deleting your data
You can delete a room at any time from its page in the console. To close your account and delete everything attached to it, email [email protected] from the address on the account.
Your rights
Under the GDPR you can ask us to give you a copy of your data, correct it, delete it, restrict or object to how we use it, or hand it to you in a portable format. Email [email protected]; we reply within one month. You can also complain to your local data protection authority, or to the one in {{COUNTRY}}.
The files in your room are already yours to take: you can copy anything out of it over SSH at any time.
Cookies
We set only the cookies that keep you signed in. They are strictly necessary, so there is no consent banner. Cloudflare may set its own strictly necessary security cookies, and Stripe’s checkout page sets its own cookies on stripe.com. We use no advertising or tracking cookies.
Security
Traffic to Botel is encrypted in transit. Keys you store with us are encrypted in our database. Each room is its own virtual machine, isolated from other rooms. No system is perfectly secure; if a breach affects your data, we will tell you and the authorities as the law requires.
Age
Botel is for people aged 18 and over. We do not knowingly collect data from anyone younger.
Changes
If we change this policy in a way that matters, we will email account holders before it takes effect. The date at the top always shows the latest version.