Privacy Policy
Last updated: November 20, 2025
This page explains what data MachineID.io collects, how we use it, and the small set of third-party services involved in operating the platform.
1. Data we collect
We collect only the data needed to run the service and understand how it’s used:
- Account details you provide (such as email address).
- Organization identifiers and API keys related to your account.
- Device identifiers you register through the API.
- Basic request logs, including IP address, user agent, timestamps, and endpoint details.
- Operational event logs about key actions (such as org creation, device registration, or plan changes).
2. Payments & billing
All payments are handled by Stripe. We do not store your full card number or full payment details. We may store Stripe customer IDs, subscription IDs, and related metadata to understand your plan and apply device limits.
3. Org keys, device data & local storage
MachineID.io issues org keys that identify your account in the API. These keys are stored in our database so we can authenticate requests, enforce plan limits, and tie usage to your subscription.
Device identifiers you send to the API are stored so we can track registration, revocation status, and plan-based counts. We also record limited metadata about API usage (such as timestamps and status codes) in an internal event log for reliability and security monitoring.
For convenience, the dashboard and related pages may store your current org key in your
browser’s localStorage (for example under a key like machineid_org_key).
This keeps your org active as you move between pages.
You can clear this value at any time using the “Clear key” controls in the UI or by clearing your browser storage. The value is only used to call the MachineID.io API on your behalf.
4. Third-party services
MachineID.io uses a small number of third-party providers to operate the service, including:
- Infrastructure hosting and database providers.
- Stripe, for billing and subscription management.
- Email providers (such as SendGrid) for transactional and operational messages.
These providers process data on our behalf and are only allowed to use it to provide their services to MachineID.io.
5. How we use data
We use the data we collect to:
- Provide and maintain the MachineID.io API and dashboard.
- Enforce subscription limits and device caps.
- Monitor performance, reliability, and security of the service.
- Investigate and respond to abuse, misuse, or security incidents.
- Communicate with you about your account, billing, or important changes.
6. Sharing & selling
We do not sell or rent your data. We only share data with service providers that help us operate MachineID.io, or when required by law (for example in response to a valid legal process).
7. Retention
We keep account and billing information for as long as you have an account and for a reasonable period afterward, as needed for accounting, legal, or operational purposes. Log data may be kept for a limited time to monitor system health and security.
8. Your choices
You can contact us to update or remove account information we hold about you, subject to any legal obligations we have to keep certain records. You can also remove org keys from your browser at any time by clearing local storage or using the “Clear key” UI controls.
9. Changes to this policy
We may update this privacy policy from time to time. When we do, we will update the “Last updated” date at the top of this page. If changes are significant, we may also notify you by email or through the dashboard.
10. Contact
If you have questions about this policy or how we handle data, you can reach us at support@machineid.io.