Legal
Privacy Policy
Effective date: May 22, 2025
1. Overview
Downsizing (“we”, “us”, or “our”) operates the Downsizing proxy service and website (the “Service”). This Privacy Policy explains what information we collect, why we collect it, and how we use it.
By using the Service you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
Account data. When you create an account we collect your email address and, if you sign in via a third-party provider (Google, GitHub), the display name and avatar that provider shares with us.
Usage data. We log metadata about API requests routed through Downsizing: timestamp, model requested, tokens consumed, latency, and whether routing saved cost. We do not log the content of your prompts or completions.
Payment data. Billing is handled by Stripe. Downsizing never stores raw card numbers. We receive a tokenised reference and billing status from Stripe.
Cookies and local storage. We use essential cookies to maintain your authenticated session. We do not use third-party advertising cookies.
3. How We Use Your Information
- To provide, operate, and improve the Service.
- To calculate cost savings and display analytics in your dashboard.
- To send transactional emails (receipts, billing alerts, security notices).
- To detect and prevent abuse, fraud, or unauthorised access.
- To comply with legal obligations.
We do not sell, rent, or share your personal data with third parties for their marketing purposes.
4. Data Retention
Account data is retained for as long as your account is active. Aggregated usage metrics are retained for up to 24 months. Detailed per-request logs are purged after 90 days. You may request deletion of your account and associated data at any time.
5. Security
We use industry-standard measures including TLS encryption in transit and AES-256 encryption at rest. No method of transmission over the internet is 100% secure; we cannot guarantee absolute security but we take it seriously.
6. Third-Party Services
We use a small number of sub-processors to operate the Service:
- Anthropic — the AI model provider. Requests are forwarded to their API.
- Stripe — payment processing.
- Supabase — authentication and database hosting.
- Vercel — website and edge function hosting.
Each provider is bound by its own privacy policy and applicable data-processing agreements.
7. Your Rights
Depending on your jurisdiction you may have rights to access, correct, export, or delete your personal data. To exercise any of these rights please email privacy@downsizing.dev.
8. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or by a notice in the Service. Continued use after the effective date constitutes acceptance of the updated policy.
9. Contact
If you have any questions about this Privacy Policy, please contact us at privacy@downsizing.dev.