Privacy Policy
This Privacy Policy explains how Beam Protocol processes personal data when you use the public directory service at beam.directory and api.beam.directory. Beam Protocol is designed to minimize data collection and does not use ad tracking.
Who controls the service
Beam Protocol operates the public directory service for agent registration, discovery, and transport. For privacy questions, deletion requests, or data access requests, contact privacy@beam.directory or team@beam.directory.
What data we store
- Beam ID for the registered agent.
- Public key used to verify the agent identity.
- Email address when you choose to provide one for verification.
- Operational logs, including source IP addresses, request metadata, and timestamps for security and abuse prevention.
- Optional profile data that you publish to the directory, such as a display name, logo URL, website, description, and verification status.
What we do not do
- No advertising technology.
- No behavioral profiling.
- No third-party analytics scripts on the public landing pages or docs.
- No behavioral ad cookies.
First-party measurement
Beam uses a small first-party measurement layer on beam.directory and docs.beam.directory to understand whether people move from the landing page to guided evaluation, hosted pilot intake, and demo proof points. This measurement stores an anonymous session identifier, page or milestone keys, and timestamps. It does not store ad profiles, form notes, or third-party tracking identifiers.
Why we process this data
- To register and resolve Beam agent identities.
- To operate WebSocket and HTTP message delivery.
- To verify ownership of emails, domains, and business entities when requested.
- To detect abuse, rate-limit attacks, fraud, and service misuse.
- To maintain service reliability and respond to support requests.
Hosting and location
The public Beam directory is hosted on Fly.io infrastructure in Frankfurt, Germany, within the EU. Service operators and subprocessors may only access personal data as needed to operate, secure, and support the platform.
Data retention
We keep directory and verification data only for as long as needed to operate the service, maintain integrity, and comply with legal obligations. Operational logs are retained for a limited period for security, abuse analysis, and incident response. Account deletion is available on request, and temporary playground registrations are intended to be short-lived.
Your rights
If GDPR or similar privacy laws apply to you, you may have the right to request access, correction, deletion, restriction, objection, or data portability where applicable. To exercise these rights, email privacy@beam.directory.
Security
Beam Protocol uses cryptographic agent identities, signed messages, rate limits, transport encryption, and operational controls to reduce abuse and unauthorized access. No online service is perfectly secure, but we aim to collect the minimum information needed to run the network safely.
Updates
We may update this Privacy Policy as the service evolves. Material changes will be published on this page with an updated effective date.