Privacy Policy
Last updated: 26 June 2026
This policy explains what personal data TokenHunger (“we”, “us”) collects when you use tokenhunger.com, why we collect it, who we share it with, and the rights you have. The legal entity responsible for processing is identified in our Legal Notice.
1. Data we collect
| Category | What | Why |
|---|---|---|
| Account / identity | Your GitHub username, GitHub user ID, email address and avatar, received via GitHub OAuth when you sign in. | To create and authenticate your account and contact you. |
| Session | A session cookie containing a random token. | To keep you signed in. Strictly necessary. |
| Benchmark content | The tasks, test cases, inputs and expected answers you submit, plus the model outputs and scores produced. | To run benchmarks and show you results and history. |
| Billing | Your credit balance and ledger of purchases and usage. Card payments are processed by Stripe; we do not see or store your full card details. | To operate prepaid credits and process payments. |
| Usage analytics | Page views, events, approximate location, device/browser, and referrer, via PostHog. Linked to your account ID when signed in. | To understand product usage and improve the service. |
| Technical logs | IP address and request metadata, including rate-limit counters for anonymous use. | Security, abuse prevention and debugging. |
2. Legal bases (GDPR)
- Contract — account, benchmarks, credits and billing are needed to provide the service you request.
- Legitimate interests — security, abuse prevention, and product analytics, balanced against your rights.
- Legal obligation — retaining transaction records where required by law.
- Consent — where required for non-essential analytics; you may withdraw it at any time.
3. Where your benchmark data goes
When you run a benchmark, the inputs and expected answers you supply are transmitted to the AI model providers you select (for example OpenAI, Anthropic, Google and others) so each model can produce an answer. Those providers process the data under their own terms and privacy policies. We do not control their processing. Treat any data you submit as disclosed to those providers.
4. Sub-processors and third parties
- GitHub — authentication (OAuth identity).
- Stripe — payment processing.
- PostHog — product analytics (hosted in the EU).
- YouTube / Google — embedded promo video on the public landing page, served through YouTube's privacy-enhanced player.
- AI model providers — to execute the benchmarks you request.
- Hosting / infrastructure providers — to operate the service and database.
We do not sell your personal data.
5. International transfers
Some processors may process data outside your country, including in the United States. Where required, such transfers rely on appropriate safeguards such as the EU Standard Contractual Clauses.
6. Retention
We keep account data while your account exists, benchmark history until you delete it or your account, and billing records as long as required for accounting and tax purposes. Logs and analytics are kept for a limited period and then deleted or aggregated.
7. Your rights
Depending on where you live, you may have the right to access, correct, export, restrict, or delete your personal data, to object to certain processing, and to withdraw consent. To exercise any of these, email [email protected]. You also have the right to complain to your local data protection authority.
8. Cookies
We use a strictly necessary session cookie to keep you signed in. Analytics may set additional cookies or use similar technologies; these are not essential and are used in line with section 2 above.
9. Children
TokenHunger is not directed at children under 16, and we do not knowingly collect their data.
10. Changes
We may update this policy. Material changes will be reflected by the “last updated” date above, and where appropriate we will notify you.
11. Contact
Questions about privacy: [email protected]. See also our Legal Notice for the responsible entity.