---
title: "Privacy"
description: "What minirouter stores, what it does not store and where providers sit."
canonical_url: "https://minirouter.sh/docs/privacy"
markdown_url: "https://minirouter.sh/docs/privacy.md"
last_updated: "2026-08-04"
---

# Privacy

minirouter does not store prompt or completion content by default. A usage
record contains token counts (input, output and cached), model id, serving
upstream, cost, latency and status. The words are relayed and forgotten.

## Identity

No account is required. See https://minirouter.sh/docs/authentication.
Accountless keys have no email, name or identity attached; the key is the
identity. HTTP-Referer and X-Title headers are used for aggregate client
attribution, not identification.

## Provider boundary

Prompts transit the minirouter edge and the upstream provider serving the
request. Each upstream has its own retention policy. Model pages name the
upstreams that can serve each model.
