What FleetAI keeps, and what it does not
FleetAI is built to hold as little as possible. This page says what goes where — for the web app, the MCP server and this website.
Last updated
Who we are
FleetAI is published by Asset Track. It is free, and there is no FleetAI account: nothing to sign up for, so no profile, password or card of yours to keep. Questions about this page reach us on WhatsApp or LinkedIn.
The web app
- Your Wialon access token, your Gemini API key and your chat history stay in your browser. We have no database to put them in.
- The app reaches Wialon through a stateless relay at
https://ai.theassettrack.com/api/wialon, because Wialon does not let a web page call it directly. The relay passes each request on and keeps nothing. - The assistant’s tools run on the same Cloudflare Worker, with your Wialon session held in memory for a few idle minutes and then dropped. It is never written anywhere.
- Neither the relay nor the tools keep logs of the traffic.
The model
The web app uses Google Gemini, called by your browser directly with your own API key. Your question and the fleet data needed to answer it go to Google under the Gemini API terms, not ours. On the free tier those terms let Google use them to improve its products; read them for the tier your key is on.
The MCP server
- You sign in on Wialon’s own login page; FleetAI never sees your password. Wialon issues a view-only token — online tracking and view access, nothing that modifies — valid for 30 days. It is listed in your Wialon user settings under Access tokens as “FleetAI MCP”, and deleting it there ends access.
- The sign-in keeps no records. Client ids, codes and tokens are sealed — encrypted with a server secret — so nothing has to be stored to check them. What your MCP client holds is the Wialon token, encrypted, and it sends it with each request to
https://ai.theassettrack.com/mcp. - The server keeps the Wialon session in memory for a few idle minutes. There is no database, and no log line carries the token or the session. A token you send yourself as a bearer header is handled the same way.
- The answers go to the AI your MCP client uses — Claude, ChatGPT or another — and are processed under that provider’s terms.
This website
This site counts its visits with Umami, which Asset Track runs on its own server. It sets no cookies and is not used to identify anyone. It records page views and a handful of events: which sections of a page were reached, how far it was scrolled, how long it was visible, which questions in the FAQ were opened, and clicks on copy buttons and on links to other sites — by the link’s host and path, never its query string. We read it only as totals. Automated browsers are left out, and a content blocker stops it entirely without breaking the site.
What we never do
- Change your Wialon account. FleetAI is read-only: it never creates, edits or deletes anything in it.
- Sell or share your data. We do not keep it, so there is nothing to hand over.
Your choices
- Delete the token in Wialon, under your user settings → Access tokens, and FleetAI loses access the same second.
- Clear the app’s site data in your browser to remove the token, the Gemini key and the chat history from it.
Changes
When what FleetAI does with data changes, this page changes with it, and the date at the top moves.