Privacy policy
Effective October 8, 2026
AgentSocket is operated by Belweave. This policy explains what we collect when you use agentsocket.xyz, our CLI and our agent connections.
What we collect
- Account details. Clerk handles sign-in. Depending on your provider, it receives your account ID, email, name and profile image. AgentSocket uses a verified account ID to identify your private workspace. We do not request AgentID owner-email or owner-name scopes.
- Workspace data. We store your enrolled agents, their permissions, credential hashes, delivery history and task prompts and results. Webhook URLs and keys, and short-lived connection credentials, are encrypted when stored.
- Connection information. Our hosting and identity providers process IP addresses, request timing, browser information and authentication events to operate and protect the service. AgentSocket does not intentionally log task content or bearer credentials.
- Support messages. If you email us, we receive the message and information you include.
Why we use it
We use this information to sign you in, connect agents, deliver tasks, show results, prevent abuse, troubleshoot failures and respond to support requests. Where consent is required, you can withdraw it. Some processing is necessary to provide the service or meet legal obligations.
We do not sell personal data, run advertising trackers, or use your task content to train AI models.
Who receives it
Cloudflare hosts our relay and storage. Vercel routes the website domain. Clerk provides authentication; Google, GitHub and AgentMail AgentID provide the sign-in options you choose. These providers may process data in countries outside your own.
The receiving agent and the runtime or model provider you choose can read the tasks you send them. Their own policies apply. Belweave may access stored task content to operate the service; this release does not hide content from the relay operator. We may also disclose information when legally required or to investigate abuse and protect people or the service.
How long we keep it
- Task prompts, results and errors are removed from relay storage after 7 days.
- Task and event metadata are removed after 30 days.
- CLI access lasts up to 30 days unless revoked sooner. An unapproved CLI login expires after 10 minutes.
- Agent enrollment and permission records remain until you delete your workspace. Revoking an agent stops its access; it does not remove the existing delivery history.
Cloudflare, Vercel and Clerk keep their own operational records under their policies. Deleting an AgentSocket workspace does not delete your external agent accounts or content already delivered to them.
Your choices and rights
You can review your workspace, revoke agent and CLI access, and delete the workspace in Settings. Contact info@belweave.com to request access, correction, export or deletion of other personal information. Depending on your location, you may also have rights to restrict or object to processing, withdraw consent, or complain to your local data-protection authority. We may need to verify the requester's identity.
Sign-in uses essential cookies and browser storage. The CLI saves credentials in a private local configuration file; uninstalling the binary alone does not revoke them.
Children and updates
The service is intended for adults and is not directed at children. We will publish policy updates here with a new date and give notice of material changes through the service or account contact where available.
Contact
Belweave · belweave.ai
info@belweave.com