Privacy & Security

VoltAgent handles your energy data with the same care your utility does. Here's exactly what we collect, how we protect it, and how you stay in control.

Data Encryption

All data in transit is encrypted with TLS 1.3. Passwords are never stored — we keep only a bcrypt hash (cost factor 12). Utility OAuth tokens are encrypted at rest using AES-256 before being written to the database.

What We Collect

We collect the energy usage data you authorize through your utility's Green Button Connect API or PDF bill uploads. We collect your email and optional phone number for notifications. We do not collect payment information, SSNs, or any financial account numbers.

Where Your Data Lives

Your data is stored in a PostgreSQL database hosted in the US-West (Seattle region). It is never sold to third parties or shared with advertisers. Aggregate, de-identified statistics may be used for platform analytics shown to investors.

Utility OAuth Transparency

When you connect via Green Button Connect, we request read-only access (scope: FB=4,5,15). We cannot modify your account, change rates, or make payments. You can revoke access at any time from your utility's website or from Settings.

AI Agent Access

The VoltAgent AI only reads your usage data to generate forecasts and recommendations. It has no ability to control appliances, change settings, or take actions outside of generating text alerts. All recommendations are advisory.

Notifications

Email and SMS notifications are opt-in per alert type. You can disable all notifications or fine-tune which alerts you receive from Settings. We use Resend for email and Twilio for SMS — both SOC 2 certified.

Data Deletion

You can request complete deletion of your account and all associated data by emailing privacy@voltagent.app. Deletion is processed within 30 days. Backups are purged within 90 days of the request.

Questions about your data? privacy@voltagent.app

Last updated: May 2026 · VoltAgent, Inc. · Seattle, WA