This policy is a draft, not yet approved by independent legal counsel.
Each tenant retains sovereign control over its data. The Service does not access, read, or use tenant data for any purpose other than providing the Service to that tenant.
Data from one tenant is never used to train, fine-tune, or improve models for another tenant. Tenant data is logically isolated at the database, storage, and compute levels.
Tenants may use their own encryption keys where supported. The Service provides envelope encryption for sensitive data stored in relational database and object storage.
The Service requires due legal process for any government access request. Tenants are notified where legally permitted. The Service challenges overly broad requests.
Tenants own their data. The Service claims no ownership interest in tenant data, AI outputs, or derived insights. Tenants retain all intellectual property rights.
Tenants may exit the Service at any time. Data export and account deletion are available without restriction. No lock-in beyond active billing periods is imposed.