Skip to main content

Zero data retention

Zero data retention is the default for this API. Prompts, outputs and request-specific intermediate content are not stored.
  • This includes traces that contain content, reconstructed prompts and embeddings of your content.
  • Fortytwo does not call tools and does not store tool definitions, arguments or results.
  • store: true is rejected with 400 zdr_storage_not_supported.

No training on customer content

Customer content is not used to train models by default. This applies to every model that serves the request: swarm, draft, decoder, ranking and reward models, and models used for inference upsampling. A content-sharing programme requires a separate express opt-in. Before the opt-in, the programme states what is covered, the purpose, the period, who has access and how to withdraw. Accepting the Terms or a cookie banner is not an opt-in.

Abuse checks

Automated safety and abuse checks can run on requests while they are processed. If a check flags a request as a probable serious violation of Terms of Service, section 4, the flagged content and related identifiers can be kept for up to 30 days. They are used only to investigate, to enforce the Terms or to meet a legal duty, and only designated staff can access them. A documented investigation, dispute or legal requirement can extend the period. Flagged content is never used for training. This is the only content kept without the customer’s choice.

Prompt caching

A prefix of the prompt can be served from a short-lived cache. This sets the cached-input price — see Pricing. A cache miss is charged at the full input price and gives the same result. usage.prompt_tokens_details.cached_tokens shows how many prompt tokens came from the cache. See Privacy Policy, section 3.

Where inference runs

Inference runs on Fortytwo-controlled infrastructure in the United States. Requests are not routed to independent public node operators. The provider register lists every provider that processes data for Fortytwo — see Privacy Policy, sections 7 and 8.

Retention

See Privacy Policy, section 9.

Data not to send

Fortytwo is not PCI-DSS certified and does not offer a HIPAA business associate agreement. Do not send protected health information. Do not send card security codes, secrets for other systems, classified information, or other data with special regulatory requirements, unless Fortytwo has expressly agreed to that processing and the API supports it — see Terms of Service, section 4.

Data Processing Addendum

A Data Processing Addendum is available from legal@fortytwo.network. It applies automatically to Business Customers once published. If this page conflicts with the Terms of Service, the Terms prevail.
Last modified on October 3, 2026