The short version: we process the data file you upload solely to generate your diagnostic report. We do not retain your uploaded data after the report is delivered. Your file is deleted immediately after processing. Generated reports are auto-deleted approximately 15 minutes after delivery. We do not sell or share your data with third parties.
Contents
1. Who we are
TokenomicsIQ is a service operated by Neowise Ventures Ltd ("we", "us", "our"). We provide a fixed-fee AI token spend diagnostic service at tokenomicsiq.ai. You upload your AI API usage data, we analyse it, and we deliver a diagnostic report.
For the purposes of UK GDPR and EU GDPR, Neowise Ventures Ltd is the data controller for personal data processed through this website and service.
Our contact details are at the bottom of this policy.
2. What data we collect
Data you upload
When you use the TokenomicsIQ diagnostic service, you upload an AI API usage data file. Depending on your platform, this is typically a CSV file exported from OpenRouter, a JSON file from TypingMind, or a JSONL file from Portkey. These files contain records of your AI API requests, including model names, token counts, costs, timestamps, and in some cases a truncated API key identifier. They do not typically contain the content of your prompts or AI-generated responses.
We treat this file as business data. However, depending on your organisation's workflows, it may contain information that could indirectly identify individuals (for example, if request timestamps or API key identifiers are linked to specific users in your system). We process this data solely to generate your diagnostic report.
Contact information
When you request a report, we collect your email address in order to deliver the report to you. We may also collect your name and organisation if you provide them when making contact.
Website data
When you visit tokenomicsiq.ai, our hosting infrastructure may log standard technical data including your IP address, browser type, operating system, referring URL, and pages visited. This is standard server log data. If we introduce analytics tools in future, we will update this policy to reflect that.
3. How we use your data
We use the data you provide for the following purposes:
- To process your uploaded data file and generate your TokenomicsIQ diagnostic report.
- To deliver your report to the email address you provide.
- To respond to enquiries and support requests.
- To maintain the security and operation of our service.
- To comply with legal obligations.
We do not use your uploaded data file to train machine learning models, to build any kind of dataset, or for any purpose other than generating your report. We do not analyse your data in aggregate across customers.
4. Legal basis for processing
Under UK GDPR and EU GDPR, we rely on the following legal bases:
- Contractual necessity (Article 6(1)(b)): processing your uploaded data file and email address is necessary to provide the diagnostic service you have purchased.
- Legitimate interests (Article 6(1)(f)): processing standard server log data to maintain the security and operation of our website, where this interest is not overridden by your privacy rights.
- Legal obligation (Article 6(1)(c)): where we are required by law to retain or disclose data.
5. Data retention
We operate a minimal retention model, consistent with the nature of our service.
- Uploaded data files are deleted immediately after your report has been generated. We do not retain your API usage data between reports or after delivery.
- Generated reports are auto-deleted from our systems approximately 15 minutes after delivery to your email address.
- Your email address is retained only for as long as necessary to deliver your report and respond to any follow-up queries directly related to that report. If you contact us separately, we retain that correspondence for a reasonable period to handle your enquiry.
- Server log data is retained for a standard period for security and operational purposes, typically not exceeding 90 days.
We do not retain customer data between report engagements. Each report is a discrete, self-contained engagement. If you commission a second report, you resubmit your data file fresh.
6. Third parties
We do not sell, rent, or share your uploaded data or personal information with third parties for commercial purposes.
We may use the following categories of third-party service provider in operating our service:
- Hosting and infrastructure: our service is hosted on infrastructure provided by TGN Hosting Ltd (our development and hosting partner). Data is processed within systems operated under our instructions.
- Email delivery: we use email to deliver your report. Standard email transmission involves routing through email service infrastructure.
- Payment processing: if you pay online, payment is handled by a third-party payment processor. We do not receive or store your card details.
We may disclose data where required by law, regulation, or court order, or to protect our rights or the safety of our users.
7. Security
We take reasonable technical and organisational measures to protect your data. These include:
- HTTPS encryption for all data transmitted to and from our service.
- Immediate deletion of uploaded files after report generation.
- Access controls limiting who within our team can access data being processed.
- Secure handling of report files during transmission to your email.
No method of transmission over the internet or electronic storage is completely secure. While we implement appropriate safeguards, we cannot guarantee absolute security. If you become aware of any security concern relating to our service, please contact us at the address below.
8. Cookies
Our website uses only functional cookies that are strictly necessary for the operation of the site, such as session management during the report submission process. We do not use tracking, advertising, or analytics cookies.
You can control cookies through your browser settings. Disabling functional cookies may affect your ability to use the service.
9. Your rights
Under UK GDPR and EU GDPR, you have the following rights in relation to your personal data:
- Right of access: you may request a copy of the personal data we hold about you.
- Right to rectification: you may ask us to correct inaccurate personal data.
- Right to erasure: you may ask us to delete your personal data where we no longer have a legal basis to hold it.
- Right to restriction: you may ask us to restrict processing of your personal data in certain circumstances.
- Right to data portability: where processing is based on your consent or a contract, you may request your data in a structured, commonly used format.
- Right to object: you may object to processing based on our legitimate interests.
- Right to withdraw consent: where we rely on consent, you may withdraw it at any time.
Given our minimal retention model, uploaded data files are deleted before most requests would be submitted. If you wish to exercise any of these rights, please contact us using the details below and we will respond within 30 days.
If you are in the UK, you have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk. If you are in the EU, you may lodge a complaint with your relevant data protection authority.
10. International data transfers
Our service is operated from the United Kingdom. If you access our service from outside the UK, your data may be processed in the UK and subject to UK data protection law.
We do not routinely transfer personal data to countries outside the UK or the European Economic Area. If this changes, we will update this policy and ensure appropriate safeguards are in place.
11. Children
TokenomicsIQ is a professional business service. We do not knowingly collect personal data from individuals under the age of 18. If you believe a minor has submitted data through our service, please contact us and we will delete it promptly.
12. Changes to this policy
We may update this privacy policy from time to time. When we do, we will update the "last updated" date at the top of this page. For material changes, we will take reasonable steps to notify users who have engaged with our service. Continued use of our service after a change constitutes acceptance of the updated policy.
13. Contact us
If you have any questions about this privacy policy or how we handle your data, or if you wish to exercise your rights, please contact us:
Neowise Ventures Ltd
Operating tokenomicsiq.ai
Email: privacy@tokenomicsiq.ai
We aim to respond to all privacy-related enquiries within 30 days.