Privacy Policy

1. Scope

This policy applies to the MeToken AI website, accounts, console, APIs, and related services operated by CHOME COMMERCE AND TRADE CO., LIMITED.

2. Information we collect

  • Account data: name, email, password hash, invitation code, and settings.
  • Usage and technical data: IP address, sign-in and challenge records, browser/device information, models, usage, errors, task status, and billing records.
  • Temporary service content: prompts, images, videos, audio, and generated outputs that you actively submit, processed only for task execution, delivery, billing review, and security troubleshooting during the applicable service period.
  • Payment data: a payment processor may provide the cardholder name, billing address, card brand, last four digits, payment token, order amount, and transaction status. Full card numbers and card security codes (CVV/CVC) are handled directly by a PCI-compliant third-party payment processor and are not stored by us.
  • Support messages and other information you choose to provide.

3. How we use information

We use information to create and secure accounts, verify identity, process APIs and generation tasks, bill and review refunds, store and deliver media, troubleshoot, improve services, prevent fraud and abuse, comply with law, and respond to requests. We do not sell personal information.

4. Providers and international processing

We may share necessary data with BytePlus/ModelArk, Cloudflare R2, card payment processors, card networks, acquiring and issuing banks, database/hosting, and security providers. Providers may process data only for their service purposes. Data may be processed outside Hong Kong with reasonable contractual, access-control, and security safeguards. When user media expires, the system requests deletion from platform storage and BytePlus assets; limited third-party backups, logs, or legally required records may remain under the provider's security and legal retention rules.

5. Retention and automatic deletion

Prompts, uploaded images/videos/audio, media references, and generated-output links are retained only temporarily. By default, output links are cleared about 24 hours after task completion, while prompts and user media are automatically cleared about 7 days after task completion. Cleanup runs in batches in the background, so actual deletion may be delayed by maintenance. Task status, model, usage, billing, refund, audit, and security records are retained as needed for legal, dispute, and fraud-prevention purposes, without the cleared prompt or media content. Contact rimoon@chome.asia to request access, correction, export, or deletion. Records required by law, anonymized data, and information needed to prevent fraud may remain.

6. Security

We use HTTPS, HttpOnly sessions, hashed/encrypted API-key storage, access controls, and audit mechanisms. No internet transmission or electronic storage is completely secure. Report suspected incidents to rimoon@chome.asia.

7. Your choices and minors

You may manage account information and submit privacy requests. The service is for people aged 18 or older; we do not knowingly collect accounts from minors.

8. Changes and contact

We may update this policy by posting a new version. Contact: rimoon@chome.asia. Operator: CHOME COMMERCE AND TRADE CO., LIMITED; address: ROOM 1003 10/F TOWER 1 LIPPO CENTRE 89 QUEENSWAY ADMIRALTY Hong Kong.