Privacy

Privacy Centre

Our privacy and data policies.

Working to ensure your data is kept safely for peace of mind.

Your data

We collect only what we need to run the platform and improve the service.

Your rights

Access, correct, delete, or restrict your data under UK GDPR.

No selling

We do not sell personal data. Sharing is limited to service providers and legal requirements.

Privacy Policy

Last updated: 12/08/2026

This Privacy Policy explains how Robottik Ltd ("we", "us", "our"), operating as Scalattice, collects, uses, shares, and protects personal information when you visit scalattice.com (including scalattice.ai, scalattice.app, and scalattice.network, which serve the same site), use Scalattice Cloud (including scalattice.cloud), call the Scalattice inference API (including api.scalattice.cloud), register as a provider, download or run the Scalattice agent, or otherwise interact with our services (together, the "Services").

Scalattice is operated by Robottik Ltd, registered in England and Wales (company no. 17193565). If you do not agree with this policy, do not use the Services.

1. Who this policy covers

This policy applies to visitors of our marketing sites, developers and API customers on Scalattice Cloud, GPU providers who connect machines to the network, and people who contact us for support or waitlist access.

2. Information we collect

Account and profile data. Email address, display name, authentication method (magic code or Google sign-in), account preferences, and provider profile details such as payout email and display name.

Authentication and session data. Session cookies (for example slt_session), email verification or magic codes, OAuth exchange codes, and related security events such as token versioning on logout.

Developer and API data. API key metadata (name, prefix, last four characters, status, policy), credit balances, top-up and checkout records, inference usage (model, tokens, cost, timestamps), and routing preferences (region, vetting, security tier).

Provider and agent data. Provider machine keys (hashed), setup codes (short-lived), connection IP (used for approximate region), agent heartbeats, GPU and host specs reported by the agent, enabled models, schedules, completed job counts, and earnings or payout records.

Prompt and output content. To run inference we process prompts and model outputs. Content may be routed to independent provider machines or platform capacity for the duration of a job. We meter usage and may retain limited operational logs. Do not submit data you are not allowed to process.

Payment and billing data. Payments and payouts are processed by Stripe (including Stripe Connect for providers). We receive billing status, amounts, and identifiers needed to credit accounts or pay providers. Card details are handled by Stripe, not stored in full on our servers.

Technical and device data. IP address, browser type, device and OS signals, approximate location derived from IP, request logs, cookies and similar technologies, and diagnostic data from the agent or installers.

Communications. Support emails, waitlist submissions, and other messages you send us.

3. How we use information

We use personal data to:

  • Provide, operate, secure, and improve the Services
  • Create and administer accounts, authenticate users, and manage sessions
  • Route inference jobs, meter tokens, bill credits, and calculate provider earnings
  • Mirror and serve model weights to authenticated agents where applicable
  • Process payments, refunds where required, and provider payouts
  • Detect abuse, fraud, and security incidents; enforce our terms
  • Respond to support requests and send operational notices
  • Comply with law and respond to lawful requests

4. Legal bases (UK GDPR)

Where UK data protection law applies, we process personal data on these bases: performance of a contract (providing the Services you request); legitimate interests (securing the network, improving reliability, preventing abuse), balanced against your rights; consent where required (for example non-essential cookies or optional marketing); and legal obligation where we must retain or disclose information.

5. Sharing and processors

We do not sell personal data. We share information with:

  • Independent GPU providers, who receive job payloads needed to run inference on their machines under our terms
  • Infrastructure and hosting providers that run Scalattice Cloud and related systems
  • Stripe for payments, credits checkout, and provider payouts
  • Email delivery providers for magic codes, receipts, and service mail
  • Analytics or cookie tools, only after consent where required
  • Professional advisers and authorities when required by law or to protect rights and safety

Some providers operate globally. Where we transfer personal data outside the UK, we use appropriate safeguards such as the UK International Data Transfer Agreement or Addendum, or other lawful mechanisms.

6. Retention

We keep account and billing records for as long as your account is active and for a reasonable period afterward for disputes, accounting, and legal requirements. API usage and operational logs are retained for metering, security, and product quality for a limited period. Magic codes, setup codes, and similar secrets expire automatically. Agents store tokens and model weights on the provider's own machine under the provider's control.

7. Security

We use technical and organisational measures appropriate to the risk, including encrypted transport (HTTPS/WSS), hashed API and agent secrets, access controls for internal systems, and isolation of internal APIs from the public internet. No system is perfectly secure. You must protect your passwords, API keys, and provider agent tokens. Revoke credentials you no longer need.

8. Your rights

Under UK data protection law you may have rights to access, correct, delete, or restrict personal data, to object to certain processing, to withdraw consent where processing is consent-based, and to data portability where applicable. You may also complain to the UK Information Commissioner's Office (ICO). To exercise rights, email support@scalattice.com. We may need to verify your identity before acting on a request.

9. Cookies

We use cookies and similar technologies as described in the Cookie Usage Policy below. Essential cookies (including session cookies for Scalattice Cloud) are required for the Services to function. Non-essential tracking cookies (Google Analytics, Microsoft Clarity, and the X advertising pixel) are used only if you accept them in the cookie notice. You can reject non-essential cookies without losing access to the Services.

10. Children

The Services are not directed at children under 16. We do not knowingly collect personal data from children. If you believe a child has provided personal data, contact us and we will take appropriate steps.

11. Third-party links and software

Our sites may link to third parties (for example documentation hosts, GitHub, or payment pages). Their privacy practices are their own. The open-source Scalattice agent runs on provider hardware; providers are responsible for the security of that environment.

12. Changes

We may update this Privacy Policy from time to time. Material changes will be posted on this page with a revised date. Continued use of the Services after changes take effect constitutes acceptance of the updated policy.

13. Contact

Questions or privacy requests: support@scalattice.com or the Support centre.
Scalattice is operated by Robottik Ltd, registered in England and Wales (company no. 17193565).

Cookie Usage Policy

Last updated: 12/08/2026

This Cookie Policy explains how Scalattice ("we", "our", or "us") uses cookies and similar technologies on scalattice.com and Scalattice Cloud (scalattice.cloud). The same list is summarised in our Terms and conditions.

What are cookies?

Cookies are small text files stored on your device when you visit websites. They help sites work properly and can improve your experience, for example by remembering preferences or keeping you signed in. We also use similar technologies such as local storage and session storage.

How we use cookies

We use cookies to:

  • Make our sites and Scalattice Cloud work as expected
  • Keep you signed in securely (session cookies such as slt_session)
  • Remember settings and cookie consent choices
  • Measure traffic, campaigns, and conversions with Google Analytics, Microsoft Clarity, and the X advertising pixel (only after you accept)

Types of cookies

Essential cookies are required for core functions such as authentication, security, and storing your cookie choice. These do not require consent.

Non-essential cookies are analytics and advertising cookies. We do not set these until you click Accept. If you click Reject, we do not load those tools.

Your consent

When you visit scalattice.com (or the same site at scalattice.ai, scalattice.app, or scalattice.network) or scalattice.cloud, a cookie notice asks you to Accept or Reject non-essential cookies. The two choices are equally available. We will not set Google Analytics, Microsoft Clarity, or X pixel cookies until you accept. Each site stores its own choice in accepted_cookies for one year. You can withdraw consent by clearing cookies in your browser and choosing Reject the next time the notice appears.

Cookie inventory

Essential (first-party)

  • slt_session: Scalattice Cloud sign-in session. Set on scalattice.cloud as an HttpOnly cookie. Lasts for the session lifetime we configure for security.
  • accepted_cookies: your Accept or Reject choice (true or false). Set on scalattice.com and scalattice.cloud separately. Expires after one year.
  • slt_has_logged_in: records that this browser has signed in to Scalattice Cloud before. First-party, long-lived. Not used for advertising.

Google Analytics 4 (only after Accept)

  • Provider: Google Ireland / Google LLC. Script: www.googletagmanager.com/gtag/js.
  • Measurement ID on scalattice.com: G-7J91QVF7Z4. On scalattice.cloud: G-4WJMYBF4BK.
  • Cookies typically include _ga (about 2 years), _ga_7J91QVF7Z4 or _ga_4WJMYBF4BK (about 2 years), and sometimes _gid (24 hours).
  • Purpose: page views, events, and traffic sources. Google may also process this data under its own terms.

Microsoft Clarity (only after Accept)

  • Provider: Microsoft. Script: www.clarity.ms/tag/.
  • Project ID on scalattice.com: xbqqhr7qf4. On scalattice.cloud: xcahyfun2u.
  • First-party cookies typically include _clck (about 1 year) and _clsk (about 1 day).
  • Microsoft may also set cookies such as CLID, MUID, MR, ANONCHK, and SM on Microsoft domains.
  • Purpose: session replay, heatmaps, and usage analytics. Clarity Consent Mode is granted only after you accept.

X (Twitter) advertising pixel (only after Accept)

  • Provider: X Corp. Script: static.ads-twitter.com/uwt.js. Pixel ID: rdiwz.
  • Cookies are typically set on X domains and may include personalization_id, guest_id, and muc_ads.
  • Purpose: measure advertising conversions such as landing views, sign-up, waitlist, API key creation, checkout, and provider events.

Similar technologies (local storage and session storage)

  • slt_attribution: UTM campaign parameters (source, medium, campaign, content, term), kept for about 30 days.
  • slt_visitor_id: anonymous visitor identifier shared between scalattice.com and scalattice.cloud for attribution.
  • slt_clarity_uid: anonymous Clarity identity on Scalattice Cloud, created only after analytics consent.
  • slt_acq_touch:* session storage keys: stop duplicate campaign landing pings in the same browser session.
  • slt_audience_hint: remembers whether you arrived from the developers or providers page so Scalattice Cloud can skip the workspace picker. Session only.

Payments. When you buy credits or connect provider payouts, Stripe may set cookies on Stripe domains. Those cookies are governed by Stripe's policies.

Managing cookies

Use Accept or Reject on the cookie notice. You can also delete existing cookies or block new ones in your browser. Blocking essential cookies may stop you staying signed in to Scalattice Cloud. Rejecting non-essential cookies does not block the Services.

Third-party cookies

Google, Microsoft, X, and Stripe may set their own cookies under their own policies. We do not control those cookies. Their privacy notices apply to that processing.

Updates

If we change how we use cookies, we will update this page with a new date.

Contact

Questions about this Cookie Policy: support@scalattice.com.
Scalattice is operated by Robottik Ltd, registered in England and Wales (company no. 17193565).