AgenX Direct AI · Privacy

AgenX Direct AI Privacy.

This policy explains how the AgenX Direct AI app handles prompts, supported attachments, API keys, and direct xAI processing for an owner-approved internal TestFlight audience.

What the app sends

AgenX Direct AI processes supported attachments on the device. It sends the tester's prompt, extracted document text, and normalized images directly to xAI to generate the requested response.

The app does not use an AgenX Systems proxy or content database. AgenX Systems does not receive or retain app prompts, attachments, or responses through an app backend.

Your xAI API key

Each tester supplies an xAI API key that the tester is authorized to use. The app stores the saved key locally in a non-synchronizing, device-only Keychain item and does not display it after saving.

Never send an API key, password, token, Apple credential, prompt, attachment, response, raw payload, device identifier, or unredacted screenshot to AgenX Systems support.

App storage and xAI retention are different

Requests set store: false. That disables stateful Responses storage for later retrieval or continuation, but it is not a Zero Data Retention guarantee.

Treat the tester's xAI team as non-ZDR unless xAI confirms team-level ZDR for that exact account. xAI currently documents default retention of API requests and responses for 30 days for abuse and misuse auditing. Provider terms, account settings, and documentation may change.

Review xAI's current API Security and retention FAQ, Responses storage guidance, Enterprise Terms, and Acceptable Use Policy. xAI's general Privacy Policy says it does not govern data processed on behalf of business API customers, so it does not replace the API-specific terms or documentation.

Approved content only

Internal testing is limited to synthetic, public, or tester-owned non-confidential content. Testers must own the submitted content or be authorized to process it.

Do not submit regulated, health, financial, customer, employer-confidential, highly sensitive, or third-party confidential data.

Consent and local deletion

The app stores only the accepted policy version in UserDefaults. If consent is missing, revoked, or for an older policy version, the app blocks Keychain access and xAI networking.

In Settings, a tester can revoke direct xAI processing consent and use Delete Key to remove the local credential. A material policy change requires a new policy version and renewed consent.

V1 boundaries

V1 includes no analytics SDK, advertising, tracking, crash-reporting SDK, xAI Files API, streaming, retry queue, tool execution, or third-party runtime SDK.

AgenX Systems is not affiliated with or endorsed by xAI. xAI, Grok, and related names are used only to identify the service the app connects to.

Contact and support

Review the AgenX Direct AI Support page for setup, safe troubleshooting, and incident steps. Contact info@agenxsystems.com with sanitized, non-sensitive context only.