Find production-ready solutions for your business

Your Data: Privacy, Ownership, and Security

October 2, 2026 ·

You are running business data on infrastructure we manage, so the privacy questions deserve straight answers.

Where your data lives

On a private virtual machine in the region you chose at purchase. It is not a shared database and not a multi-tenant app partition — it is a whole machine that belongs to your order, isolated from every other customer by the hypervisor and a firewall that blocks everything except the app’s public ports.

Who can see it

  • You, with your logins.
  • The AI model provider you chose, within their API data policy — your prompts and the agent’s output cross their API under your key. Pick a vendor whose retention terms you are comfortable with.
  • Us, in one narrow case: support access when you ask for help. Routine operations do not involve reading your data, and there is no analytics pipeline watching your usage.

What we store on our side

Your order, your billing email, and your server metadata (status, IP, spec). Your AI key is validated when you submit it and then lives only on your server — our database never holds it. Payment details are handled by PayPal; we never see or store card numbers.

Your conversations

Chat sessions live in Open WebUI’s database on your server. Export them, delete them, or wipe the whole machine — they are yours.

Deleting your data

Deleting a server destroys its disk. Daily backup snapshots expire on their 7-day rolling schedule, and when the last snapshot ages out, nothing remains on our side but the order record bookkeeping requires us to keep.

Sensible hygiene

Use the Daily backup option, keep your app passwords unique, and set a usage cap on your AI key at the provider. Those three habits cover nearly every realistic bad day.

More articles