Trust
Exam Security Without Surveillance: Aiseptor's Privacy Architecture
Data collected during a session
Network access request records, a rotated session identifier, and device security signals (denylisted process names, GPU utilization delta, AI model file presence). No webcam, microphone, keystrokes, screen recording, or file contents, ever.
Privacy Policy §4 →Retention schedule
Raw session telemetry: 90 days. Aegis integrity reports: 7 years or per customer contract. Server logs: 30 days. Full schedule by data category is published, not asserted.
Privacy Policy §7 →GDPR & CCPA/CPRA
Legal basis for processing, data subject rights (access, deletion, correction, portability), and the CCPA "right to know" and opt-out disclosures are documented in full, not summarized as a badge.
Privacy Policy §8 →Data processing agreements
Institutional customers requiring a signed DPA can request one directly; subprocessor terms (AWS, Vercel) are disclosed in Privacy Policy §5.
Terms of Service →Not yet available
SOC 2 Type II audit, a public bug bounty program, and a standalone architecture diagram are in progress but not live. We'd rather leave this section short than link to something that doesn't exist yet.