maviapi legal/02 of 05

Privacy Policy

What personal data we collect when you use maviapi, why we collect it, who processes it, and the rights you have over it.

Effective
23 June 2026
Version
v1.1
Reading time
8 min
Applies to
Account holders and visitors of maviapi.com

This policy explains what personal data maviapi collects, why we collect it, who we share it with, and the choices and rights you have. We try to collect as little as the service needs, and we do not sell your data.

Overview and who we are

maviapi is operated by KuzenLabs. For the personal data we handle about our users and visitors, KuzenLabs is the data controller. You can reach us about any privacy matter at support@maviapi.com.

This policy covers maviapi.com and our API at api.maviapi.com. It does not cover the third-party websites whose data our endpoints retrieve; those sites have their own privacy practices. How data flowing through our endpoints is handled is described in Section 5.

Information we collect

We collect the following categories of personal data:

Account data
Your name, email address, and an avatar if you set one. If you sign up with email and password, we store only a securely hashed version of your password. If you sign in with Google or GitHub, we receive a basic profile and email from that provider.
API keys and sessions
We store a one-way hash of each API key (never the key itself) plus a short prefix and its last-used time. We also set a session token so you stay signed in.
Subscription and usage data
Your plan, billing period, the number of credits you have used, and daily usage totals. Payments are handled by our payment processor; we do not store full card numbers.
Technical and log data
Your IP address (used to apply rate limits and prevent abuse), and request metadata such as the endpoint pattern, method, response status, approximate country, and response time. Operational logs are kept briefly for debugging and security (see Section 7).
Communications
Messages you send us, for example by email to support.
Cookies
One essential cookie that keeps you signed in. We do not use advertising or cross-site tracking cookies. See our Cookie Policy.

How we use information

We use personal data to:

  • create and operate your account and authenticate you;
  • provide the API service, meter credit usage, and bill your subscription;
  • apply rate limits, detect and prevent abuse, and keep the service secure;
  • send transactional emails you need, such as email verification, password resets, security alerts, and account notices;
  • respond to your support requests;
  • understand reliability and improve the service in aggregate;
  • comply with legal obligations and enforce our Terms.

We send optional product and update emails only if you have opted in, and you can turn them off at any time in your notification settings.

Data our APIs return

Responses are generated on demand and streamed back to you. We may briefly cache responses to keep the service fast and reduce load on source sites, but the content of responses is not used to profile individuals.

You are responsible for using returned data lawfully, including any data-protection obligations that apply when the data concerns identifiable people. See Acceptable use in our Terms.

Sharing and subprocessors

We do not sell personal data and we do not share it for advertising. We share it only with service providers (subprocessors) who process it on our behalf to run maviapi, and where we are legally required to.

ProviderPurpose
CloudflareHosting and compute (Workers), database (D1), object storage for log archives (R2), aggregate request analytics, and transactional email delivery.
Payment processorProcessing subscription payments. Card details are held by the processor, not by us.
Email and identity providersDelivering and receiving email, and, if you choose social sign-in, verifying your identity with Google or GitHub.

We may also disclose data to comply with the law, enforce our agreements, protect rights and safety, or in connection with a merger or acquisition (in which case we will notify you).

How long we keep data

  • Account data is kept while your account is active, and deleted or anonymized after you delete your account, except where we must retain it by law.
  • Usage and billing records are kept as long as needed for billing history and to meet tax and accounting obligations.
  • Operational logs are kept for a short window for live debugging (about three days), with compressed archives retained for up to ninety days before automatic deletion.
  • Aggregate analytics hold request metrics that are not used to identify you.

Security

We protect data with measures appropriate to its sensitivity: encryption in transit (HTTPS), hashing of passwords and API keys so the originals are never stored, access controls and least-privilege practices, and an infrastructure provider with strong security posture. No system is perfectly secure, but we work to keep your data safe and to respond quickly if something goes wrong.

International transfers

maviapiruns on a global edge network, so your data may be processed in countries other than your own. Where personal data is transferred across borders, we rely on appropriate safeguards, such as the European Commission’s standard contractual clauses, offered by our providers.

Your rights

Depending on where you live, you may have the right to access, correct, delete, export, or restrict the processing of your personal data, to object to certain processing, and to withdraw consent. You can exercise many of these directly:

  • update your profile and notification preferences in your account settings;
  • delete your account, which removes your account data, from the same page;
  • contact support@maviapi.com for any other request.

We will respond within the time the law requires. You also have the right to complain to your local data-protection authority.

Children's privacy

maviapi is not directed to children and is intended for users who are at least 18 years old. We do not knowingly collect personal data from children. If you believe a child has provided us data, contact us and we will delete it.

Changes and contact

We may update this policy as the service evolves. When changes are material we will update the effective date above and, where appropriate, notify you. This version is effective 23 June 2026.

For any privacy question or request, email support@maviapi.com.