Institutional Directive

Privacy Policy // Data Governance

This policy defines how AEI handles data ingestion, account information, operational telemetry, cryptographic evidence, public anchors and authorized access inside the AEI Google Cloud Soberanía ecosystem.

Private by Default · No Seal · No Release
Page IDAEI-PrivacyPolicy
Familytrust_compliance
Risklegal_public
Updated2026-05-12
Canon Statement

AEI does not publish data. AEI publishes proof.

Public proof is not public customer data. AEI may expose hash, URN, timestamp, chain ID, transaction hash or verification status when explicitly released. AEI does not expose raw private payloads unless the release policy authorizes it.

Data We Process

Private // Internal

Customer Account DataIdentity vectors, contact records, authentication context and customer-level metadata. Private by default.
Operational LogsSystem telemetry, runtime events, support traces and internal audit signals used for security, service quality and incident review.
Billing & MarketplaceTransaction records, entitlement references, procurement state, usage reporting and marketplace billing evidence.

Public // Evidence

Evidence MetadataCryptographic hashes, URNs, timestamps, verification states and public proof summaries authorized for external validation.
Atlas Ledger RecordsGoverned evidence references, seal metadata and operational proof objects exposed only through approved client-safe surfaces.
Web3 Public AnchorsPublic transaction references, chain identifiers, contract addresses and explorer links only when Web3 anchoring is explicitly confirmed.

Retention & Control

Immutability Warning

Data committed to public Web3 anchors or immutable institutional ledgers cannot be conventionally deleted. Erasure requests apply to off-chain customer account data, support records and isolated operational logs within the limits of policy, contract and law.

Data ClassRetention PeriodAccess Controls
Account DataActive account duration + 30 daysUser authorization / administrative escrow
Operational Logs90-day rolling window unless otherwise requiredSystem administrator / authorized support
Public AnchorsIndefinite where immutableUniversal read after explicit public release
Evidence MetadataPolicy-bound by seal typeClient-safe projection only

What AEI Never Exposes

AEI treats secrets, raw private payloads and cross-customer records as non-public material. These objects are never placed in public pages, client-side components, static scripts or unauthenticated responses.

×Secret credential material
×Service account payloads
×Runtime access headers
×Signing credentials
×Wallet signing credentials
×Non-public customer evidence
×Cross-customer records
×Unverified billing records
×Internal operational secrets

Customer Rights & Requests

Customers may request access, correction, export or deletion of eligible off-chain records. Requests involving billing, entitlement, evidence, account state or operational logs may require validation before processing.

Access

Review eligible account data, support context and customer-facing records.

Correction

Request updates to incorrect profile, contact or account metadata.

Export

Receive eligible records in a structured format when validation is complete.

Deletion

Delete eligible off-chain records where contract, policy and law allow it.

AEI Canon // Privacy Verified
Private by Default · No Seal · No Release