๐Ÿ›ก๏ธ Enterprise Trust

Data Confidentiality

Your code, data, ideas, and credentials are yours โ€” always. Here is our ironclad commitment to protecting everything you share with us.

Effective date: June 1, 2025  ยท  NDA available on request

๐Ÿ”’ NDA Friendly ๐Ÿ›ก๏ธ Enterprise Confidentiality โš–๏ธ Client IP Protected ๐Ÿ” Access-Controlled Delivery

"Your Data Stays Yours โ€” Always."

At Purics AI, all client information is treated as strictly confidential. We do not sell, share, disclose, or expose client data, source code, business documents, credentials, AI prompts, architecture diagrams, or internal communications to any third party without explicit written consent.

1. What We Keep Confidential

Everything you share with us in the course of a project engagement is treated as confidential, including but not limited to:

  • Source code, repositories, and proprietary software
  • Business documents, product roadmaps, and strategy decks
  • API keys, credentials, secrets, and system access details
  • AI prompts, fine-tuned models, and training datasets
  • Architecture diagrams, infrastructure configurations, and system designs
  • Internal communications, meeting notes, and project briefs
  • Financial data, customer lists, and business metrics
  • Any other information marked confidential or that is obviously proprietary in nature

2. What We Will Never Do

  • Sell, license, or transfer your data or code to any third party
  • Use your data to train or fine-tune public or shared AI models without your explicit written approval
  • Disclose your project details, technical architecture, or business information publicly
  • Share access credentials or system access beyond the authorized personnel assigned to your project
  • Retain copies of client data beyond the engagement period, unless legally required or you request otherwise

3. Access Controls

We operate on a strict need-to-know basis:

  • Access to client systems, repositories, and data is granted only to engineers directly assigned to your project
  • All team members sign internal confidentiality agreements as a condition of employment
  • Access is revoked immediately upon project completion or team changes
  • We use role-based access controls and audit logs for all production system access
  • Temporary credentials are rotated and deleted upon project offboarding

4. Secure Development Practices

  • Code is worked on in isolated, access-controlled development environments
  • All data in transit is encrypted via TLS/HTTPS
  • Sensitive credentials are stored using secret management tools โ€” never in plain text or version control
  • We do not fork, clone, or retain client repositories beyond the agreed project scope
  • Security incidents (if any) are disclosed to the client promptly and transparently

5. AI & Model Usage Policy

Client data, source code, prompts, or any information submitted to Purics AI is never used to train, fine-tune, or benchmark any public AI model unless you have explicitly approved this in writing.

When AI tools are used during project delivery (e.g., code assistants, analysis tools), we ensure:

  • Enterprise-tier, privacy-preserving configurations are used where available
  • Client data is not submitted to AI services in identifiable form without approval
  • Any AI tool used is disclosed to the client on request

6. Intellectual Property

Unless otherwise agreed in writing, all custom software, code, designs, and deliverables created specifically for you under a paid engagement are assigned to you upon full payment. Purics AI does not retain ownership or licensing rights over client-specific work product.

We may retain rights to general-purpose tooling, frameworks, or libraries we develop independently that are not specific to your project โ€” these are always negotiated transparently before project start.

7. Non-Disclosure Agreements (NDAs)

๐Ÿ”’

We Are NDA-Ready

We welcome and actively encourage formal NDAs for enterprise and sensitive engagements. Our standard mutual NDA is available immediately upon request and can be countersigned before any project scoping or discovery conversation begins.

If you have a preferred NDA template, we are happy to review and sign yours instead.

8. Data Retention & Deletion

  • Client data is retained only for the duration of the active engagement plus a reasonable handover period (typically 30 days after project close)
  • Upon written request, we will securely delete or return all client data and confirm deletion in writing
  • Backups containing client data are purged on the same schedule

9. Reporting a Concern

If you believe your confidential information has been mishandled or you have a privacy concern, please contact us immediately:

We aim to acknowledge all security or confidentiality concerns within 24 hours.

Our Confidentiality Promise in Plain English

๐Ÿ” Your Code is Your Code

We write it for you. You own it entirely. We don't keep copies, sell it, or reuse it for other clients.

๐Ÿคซ What You Share Stays Internal

Business plans, credentials, architecture โ€” shared with us in confidence, stays in confidence.

๐Ÿค– No Secret AI Training

Your data is never fed into AI training pipelines without explicit written approval. Full stop.

๐Ÿ“‹ NDA On Day One

Need a formal NDA before the first call? Done. Just ask. We sign yours or share ours.

Also see our other legal documents: