LEGAL
Privacy Policy
Last updated: June 2026
This is a plain-language template provided for transparency. It is not legal advice and is pending counsel review before general availability. Questions: legal@artificia.ai.
1. Scope
This policy explains how Artificia AI handles personal data in connection with the Aegis platform. For Customer-submitted code, IaC, and cloud configuration processed on your behalf, the Data Processing Addendum governs and we act as your processor.
2. Data we collect
- Account data: name, work email, organization, role.
- Authentication: handled by AWS Cognito; we store a tenant id and role, not your password.
- Billing: processed by Stripe; we store a customer id and subscription status, not full card numbers.
- Usage and audit: scan activity, access logs, and a customer-visible audit trail of reads of your data.
3. How we use data
To provide and secure the service, process billing, communicate about your account, and meet legal obligations. We do not sell personal data and we do not train models on your code.
4. Subprocessors
We use AWS (hosting, Cognito, KMS, DynamoDB, S3), Stripe (billing), and an LLM provider operated under a zero-retention agreement. A current list is available on request and maintained in the DPA.
5. Security
Data is encrypted in transit and at rest with per-tenant KMS keys; evidence is stored in WORM-locked storage. Tenant isolation is enforced at the application, data, and key layers. See our security page.
6. Retention
Account data is retained while your account is active and deleted or anonymized after termination per the DPA. Audit logs are retained for the period required for compliance and legal hold.
7. Your rights
Depending on your jurisdiction you may have rights to access, correct, export, or delete personal data. Submit requests to privacy@artificia.ai.
8. International transfers
Where data is transferred across regions, we rely on appropriate safeguards such as Standard Contractual Clauses, detailed in the DPA.
9. Contact
Privacy questions: privacy@artificia.ai. Security reports: security@artificia.ai.