Tonbo Privacy Policy
Effective date: August 18, 2026
This Privacy Policy explains how Tonbo IO Inc. ("Tonbo," "we," "us," or "our") collects, uses, stores, and shares personal information when you visit tonbo.io or use Tonbo services.
Information we collect
- Account information. When you sign in with Google or GitHub, we receive basic profile information authorized by you, such as your name, email address, profile image, provider account identifier, and authentication status.
- Service and billing information. We process project configuration, API credentials, service usage, prepaid credit activity, and transaction records needed to operate and bill for Tonbo services. Payment-card details are handled by our payment processor and are not stored by Tonbo.
- Technical information. We may collect IP address, browser and device information, request metadata, security events, diagnostics, and service logs.
- Communications. We collect information you send when you contact us for support or otherwise communicate with Tonbo.
Google user data
Tonbo requests only the Google scopes needed for sign-in: OpenID, email, and basic profile. We use this information to authenticate you, create and secure your Tonbo account, display your account identity, and provide account support. Tonbo does not request access to your Google Drive files, contacts, calendar, or Gmail content.
We do not sell Google user data or use it for advertising. We do not transfer it to third parties except to provide or secure Tonbo, comply with law, or complete an action you request. Tonbo's use and transfer of information received from Google APIs follows the Google API Services User Data Policy, including its Limited Use requirements.
How we use information
- Provide, maintain, and improve Tonbo services.
- Authenticate users and protect accounts and infrastructure.
- Measure usage, administer prepaid credit, and process payments.
- Respond to support requests and send service-related communications.
- Detect abuse, investigate incidents, and comply with legal obligations.
How we share information
We share information only with service providers that help us operate Tonbo, such as cloud infrastructure, authentication, security, observability, and payment providers. These currently include Amazon Web Services, Cloudflare, Supabase, Stripe, Google, and GitHub, depending on the feature you use. We may also disclose information when required by law, to protect rights and safety, or as part of a corporate transaction. We do not sell personal information.
Retention and deletion
We retain personal information for as long as needed to provide Tonbo, meet legal and accounting obligations, resolve disputes, and protect the service. You may request account deletion by contacting us. We may retain limited records where required by law or for legitimate security and fraud-prevention purposes.
Security and international processing
We use administrative, technical, and organizational safeguards designed to protect personal information. No system is completely secure. Tonbo and its service providers may process information in the United States and other countries where they operate.
Your choices
You can review and update supported account information in Tonbo User Center. You can revoke Tonbo's Google access from your Google Account and disconnect supported identities from Tonbo. Depending on where you live, you may have additional rights to access, correct, delete, or restrict the use of your personal information.
Children
Tonbo is not directed to children under 13, and we do not knowingly collect their personal information.
Changes to this policy
We may update this policy as Tonbo changes. We will publish the revised policy here and update its effective date.
Contact
Questions or privacy requests may be sent to [email protected].