Legal
Privacy Policy
This Policy explains how the legal operator and data controller of Lofee Router handles personal data.
Last updated: 24 August 2026
1. Controller
FLAMEWRIGHT TECHNOLOGIES LTD, a company registered in England and Wales (company number 17351523), is the website operator and data controller for Lofee Router ("Flamewright", "we", "us" or "our"). This Policy applies to lofeerouter.com, the Lofee Router dashboard, APIs and related support communications.
2. Personal data we collect
- Account data: name, email address, organisation, login records and account settings.
- Billing and transaction data: billing contact, payment status, transaction identifiers, purchased credits, invoices and tax information. Full payment-card details are generally handled by our payment providers.
- Service and device data: IP address, device and browser information, API key identifiers, request timestamps, model selected, token counts, diagnostic logs and security events.
- Customer content: prompts, inputs, outputs and related metadata transmitted through the service, to the extent necessary to route and provide API requests.
- Communications: information included in support, compliance and other enquiries.
3. How and why we use personal data
We process personal data to:
- create and administer accounts and perform our contract with you;
- route API requests, measure usage, deduct credits and provide support;
- process payments, maintain accounting records and meet tax obligations;
- protect accounts, prevent fraud and abuse, enforce our Terms and secure the platform;
- comply with legal, sanctions, regulatory and law-enforcement requirements; and
- analyse and improve reliability, performance and user experience using proportionate technical and operational data.
Our lawful bases under UK data protection law include performance of a contract, compliance with legal obligations, and our legitimate interests in operating, protecting and improving the service. Where required, we rely on consent.
4. Cookies and similar technologies
We may use strictly necessary cookies or local storage for authentication, security, session continuity and user preferences. If we introduce non-essential analytics or advertising cookies, we will provide any notice and choices required by applicable law.
5. How we share data
We may share relevant data with:
- AI model and infrastructure providers where necessary to route and fulfil your selected API request;
- hosting, security, monitoring, customer-support and communications providers acting for us;
- payment processors, banks, accountants and professional advisers;
- authorities or other parties where disclosure is legally required or necessary to protect rights and security; and
- a successor in connection with a merger, financing, reorganisation or sale of all or part of our business, subject to appropriate safeguards.
We do not sell personal data.
6. International transfers
Our customers and service providers may be located in different countries. Where personal data is transferred outside the United Kingdom, we use an applicable lawful transfer mechanism and appropriate safeguards, such as adequacy regulations or approved contractual clauses, unless an exception applies.
7. Retention
We retain personal data only for as long as reasonably necessary for the purposes described above, including service delivery, security, dispute resolution and legal, tax and accounting requirements. Retention periods vary by data type. We may retain transaction and compliance records for the period required by law and delete or anonymise operational logs sooner where appropriate.
8. Security
We use reasonable technical and organisational measures designed to protect personal data, including access controls, credential protection, monitoring and data minimisation. No system is completely secure, and you are responsible for protecting your account credentials and API keys.
9. Your rights
Depending on applicable law, you may have rights to access, correct, erase, restrict or object to processing of your personal data, and to receive a portable copy. Where processing relies on consent, you may withdraw it. You may also complain to the UK Information Commissioner's Office or your local supervisory authority. We may need to verify your identity before responding.
10. Children
Lofee Router is a business service and is not directed to children. We do not knowingly collect personal data from anyone under 18. If you believe a child has provided personal data, please contact us so that we can take appropriate action.
11. Updates and contact
We may update this Policy from time to time and will publish the current version and date here. Privacy questions and rights requests may be submitted through your Lofee Router account support channel or via the corporate enquiry details at flamewright.uk.