TRANSPARENCY STATEMENT: This service logs all queries, character system prompts, model parameters, and AI responses. We believe in full transparency about our data practices. If you do not wish your prompts, roleplay data, or conversational content to be recorded and accessible via admin diagnostics, do not use this free proxy service.
1. INTRODUCTION & SCOPE
This Privacy Policy ("Policy") describes how the Freeseek reverse proxy service ("Service", "we", "us", "our") collects, uses, stores, and protects information when you access or use the Service. This Policy applies to all users who register an account, generate an API key, or send requests through the Freeseek proxy endpoint.
By creating an account or using the Service in any capacity, you acknowledge that you have read, understood, and agree to the data practices described in this Policy. This Policy should be read in conjunction with our Terms of Service.
2. DATA WE COLLECT
Due to the nature of this free proxy service, we collect the following categories of data:
2.1 ACCOUNT REGISTRATION DATA
- Username: The unique identifier you choose during registration.
- Password: Stored exclusively as a cryptographically hashed value using industry-standard bcrypt hashing. We never store plaintext passwords.
- Registration Timestamp: The date and time your account was created.
- API Key: Your generated personal API key (prefixed with
fsk-), stored in its hashed form for authentication.
2.2 REQUEST & CONVERSATIONAL DATA
When you send requests through the proxy endpoint, we automatically record:
- Full Message Trees: Complete conversational history including all System, User, and Assistant message turns. This includes character system prompts, persona definitions, scenario descriptions, example dialogues, and roleplay content.
- Model Parameters: The model identifier requested, temperature, top-p, max tokens, frequency penalty, presence penalty, stop sequences, and streaming configuration.
- AI Responses: The complete text content of responses returned by the upstream DeepSeek model.
2.3 TECHNICAL & NETWORK METADATA
- Client IP Address: The IP address from which requests originate.
- Timestamps: Precise date and time of each request.
- Token Usage: Prompt token count, completion token count, and total token count for each request.
- Request Latency: Round-trip response time in milliseconds.
- HTTP Headers: Standard request headers including User-Agent and Content-Type.
- Error Logs: Any error messages, HTTP status codes, or upstream failure details associated with failed requests.
2.4 CUMULATIVE USAGE STATISTICS
- Per-User Totals: Total number of API calls, cumulative prompt tokens, cumulative completion tokens, and total tokens consumed over the lifetime of your account.
- Aggregate Service Metrics: Total registered users, total requests processed, average response latency, and server uptime statistics (exposed via the public telemetry dashboard).
3. HOW WE USE YOUR DATA
Collected data is used for the following purposes:
- Service Operation: Authenticating users, validating API keys, routing requests to the upstream DeepSeek API, and delivering responses back to your client.
- Debugging & Diagnostics: Investigating upstream DeepSeek connectivity failures, API syntax errors, malformed requests, and response quality issues.
- Performance Monitoring: Measuring request latency, server load, token throughput, and overall system health to optimize Service performance.
- Abuse Prevention: Detecting and blocking spam, automated exploitation, rate limit circumvention, and other abusive patterns.
- Service Administration: Managing user accounts, enforcing Terms of Service compliance, processing account bans/unbans, and maintaining system integrity.
- Public Telemetry: Displaying aggregate, anonymized statistics (total requests, total tokens, average latency, active users) on the public-facing telemetry dashboard. No individual user data or conversational content is ever exposed publicly.
4. DATA STORAGE & SECURITY
We implement the following security measures to protect your data:
- Local Database Storage: All data is stored in a local SQLite database on the server. Data is not replicated to third-party cloud storage providers, external analytics platforms, or advertising networks.
- Password Hashing: User passwords are hashed using bcrypt with a strong work factor before storage. Plaintext passwords are never stored or logged.
- Admin Authentication: Access to detailed request logs, user management, and diagnostic data is restricted to the service administrator via a secure admin authentication key.
- GZip Compression: API responses are compressed in transit using GZip to reduce data exposure during transmission.
While we take reasonable precautions to secure your data, no method of electronic storage or transmission over the internet is 100% secure. We cannot guarantee absolute security and are not liable for any breach resulting from sophisticated attacks, zero-day vulnerabilities, or circumstances beyond our reasonable control.
5. DATA RETENTION
Data is retained according to the following schedule:
- Account Data: Retained for the lifetime of your account. If your account is terminated or banned, account records may be retained indefinitely for abuse prevention purposes.
- Request Logs: Conversational data, model parameters, and request metadata are retained indefinitely in the local database for debugging and diagnostics purposes.
- Usage Statistics: Cumulative per-user and aggregate statistics are retained indefinitely.
We do not currently offer automated data deletion or data export functionality. If you wish to request deletion of your data, you may contact the service administrator, and we will make reasonable efforts to accommodate your request, subject to our operational requirements and legal obligations.
6. DATA SHARING & THIRD PARTIES
We do not sell, rent, trade, or otherwise share your personal data or conversational content with any third parties, with the following limited exceptions:
- Upstream API Provider (DeepSeek): By design, all conversational messages are forwarded to DeepSeek's API servers for model inference. DeepSeek's own data handling practices are governed by DeepSeek's privacy policy and terms of service, which are outside our control.
- Legal Compliance: We may disclose data if required to do so by applicable law, regulation, legal process, or governmental request.
- Service Protection: We may disclose data to protect the rights, property, or safety of the Service, its users, or the public.
We do not use cookies, third-party analytics services, advertising trackers, or social media pixels on this Service.
7. YOUR RIGHTS & CHOICES
Depending on your jurisdiction, you may have certain rights regarding your personal data:
- Right to Access: You may request a summary of the personal data we hold about your account.
- Right to Rectification: You may request correction of inaccurate account information.
- Right to Deletion: You may request deletion of your account and associated data, subject to our retention requirements.
- Right to Withdraw Consent: You may withdraw consent to data processing at any time by ceasing use of the Service.
- Right to Object: You may object to certain processing of your data where applicable under local law.
To exercise any of these rights, please contact the service administrator through the platform's designated communication channels. We will respond to verifiable requests within a reasonable timeframe.
Important: The primary choice available to you is whether or not to use the Service. If you do not consent to the comprehensive data logging described in this Policy, you should not register an account or send requests through the proxy.
8. CHILDREN'S PRIVACY
The Service is not intended for use by individuals under the age of 18 (or the age of legal majority in your jurisdiction, whichever is greater). We do not knowingly collect personal information from minors. If we become aware that a minor has provided us with personal data, we will take steps to delete such information and terminate the associated account.
9. INTERNATIONAL DATA CONSIDERATIONS
The Service is operated from a single server location. If you access the Service from outside the server's jurisdiction, you understand and consent to the transfer and processing of your data in the jurisdiction where the server is located. Data protection laws in this jurisdiction may differ from those in your country of residence.
10. CHANGES TO THIS POLICY
We reserve the right to modify this Privacy Policy at any time. Changes will be effective immediately upon publication on this page. We will update the "Last Revised" date at the top of this Policy to reflect the date of the most recent changes. Your continued use of the Service after any modifications constitutes your acceptance of the revised Policy.
We encourage you to review this Policy periodically to stay informed about how we are protecting your data.
11. RELATIONSHIP TO TERMS OF SERVICE
This Privacy Policy is incorporated into and forms part of our Terms of Service. In the event of any conflict between this Policy and the Terms of Service, the Terms of Service shall prevail unless the conflicting provision specifically relates to data privacy, in which case this Policy shall control.
CONTACT: If you have any questions, concerns, or data-related requests regarding this Privacy Policy, please reach out to the service administrator through the platform's designated communication channels.