Privacy Policy
m0x Labs ("we", "our", or "us") operates as the parent identity provider and infrastructure layer for m0x IDE (ide.m0x.in) and m0x API Console (console.m0x.in). We adhere to a strict Zero-Retention Policy for your source code and model inference payloads. Your proprietary code is never used to train public models.
01.Information We Collect
We collect minimal data necessary to authenticate users, route API requests, and meter compute resources across our platforms:
Full name, developer email address, OAuth profile IDs (GitHub, Google), and cryptographically signed JWT auth tokens.
Request timestamps, endpoint paths, latency figures, status codes, token consumption count, and IP addresses for DDoS mitigation.
02.Zero-Retention Source Code Policy (m0x IDE)
When utilizing m0x IDE (ide.m0x.in) for agentic pair programming, multi-file code synthesis, and AST workspace indexing:
- Local AST Parsing: Your workspace index and abstract syntax trees are processed locally within your environment or isolated container whenever feasible.
- Ephemeral Model Routing: Code snippets sent to AI inference models are transmitted over TLS 1.3, processed strictly in volatile RAM, and instantly discarded upon response generation.
- No Model Training: Under no circumstances is your private code, prompts, or repository content stored or used to train foundational AI models.
03.API Gateway & Telemetry Privacy (m0x API Console)
When dispatching inferencing requests through console.m0x.in:
- Payload Confidentiality: Prompt payloads and model completions are not persisted to persistent disks. We log solely metadata (token counts, latency, status code) for billing and analytics.
- Master Key Protection: Developer API keys (`m0x_live_sk_...`) are hashed using Argon2/SHA-256 before storage.
04.Security Standards & Certifications
We implement enterprise-grade administrative, technical, and physical safeguards:
05.Your Data Rights (GDPR & CCPA)
Regardless of your geographic location, we provide all developers with full data sovereignty rights:
- Right to Access & Export: Download all account telemetry and compute usage records at any time.
- Right to Rectification: Modify your developer profile and SSO email association.
- Right to Erasure (Deletion): Permanently delete your master account, API keys, and historical billing telemetry with 1-click.
06.Data Protection Officer & Contact
For privacy requests, audit reports, or Data Processing Agreements (DPA), contact our security and legal team: