Privacy Policy for Hefaistos AI
Effective Date: January 16, 2026
At Hefaistos AI (the "Company," "we," "us," or "our"), we provide high-level data consultancy and strategic AI implementation. We recognize that the security of your business information is paramount. This Privacy Policy outlines our unique approach to data handling—specifically, our commitment to a non-custodial data model.
1. Our Core Data Philosophy: Non-Storage
Unlike traditional data firms, Hefaistos AI does not store customer data on its own servers or local infrastructure. Our role is that of a "Data Craftsman" and "Consiglieri." We design the architecture and the strategy, but the raw data of your organization remains outside our internal storage systems. This approach significantly reduces the "attack surface" for your sensitive information and ensures that you retain primary control over your data assets at all times.
2. Third-Party Infrastructure and AI Providers
To deliver our services (such as data analysis, strategic modeling, and AI-driven insights), we utilize enterprise-grade third-party providers. Your data is processed and stored within these secure, specialized environments.
Cloud Hosting: We utilize leading cloud service providers (e.g., Microsoft Azure, Amazon Web Services, or Google Cloud) to host project-specific environments.
AI Processing: We use third-party Artificial Intelligence platforms and Large Language Models (LLMs) to perform complex computations. These providers are selected based on their ability to offer "zero-retention" or "private instance" processing where available.
Provider Security: We only engage with third-party providers that maintain globally recognized security certifications, such as SOC 2 Type II, ISO 27001, and HIPAA compliance where applicable.
3. Information We Collect
Because we do not store your operational data, the information we do collect is limited to "Relationship Data" necessary for business operations:
Identity & Contact Data: Name, business email, phone number, and job title.
Project Metadata: Scope of work, strategic goals, and high-level architectural notes (excluding raw datasets).
Technical Log Data: IP addresses and basic browser information collected via our website for security and performance monitoring.
4. How We Use Information
We use the limited data we collect to:
Provide independent consultancy and strategic roadmaps.
Manage project timelines and deliverables.
Coordinate between your team and the third-party AI/Cloud providers we have architected for you.
Fulfill legal and regulatory obligations.
5. Data Disclosure and Sharing
We do not sell, lease, or trade your information. Disclosure is limited to:
Authorized Third-Party Providers: Only those necessary to execute the cloud and AI services mentioned in Section 2.
Legal Necessity: If required by law, we will disclose information only to the extent required by a valid legal process.
6. Security Measures
While data is stored with third-party providers, Hefaistos AI ensures security through governance:
Encryption: All data in transit is protected via TLS 1.3.
Access Management: We advocate for and implement "Identity and Access Management" (IAM) protocols, ensuring that access to third-party environments is restricted to authorized personnel only.
No Persistence: We configure our workflows to ensure that once a project or analysis phase is complete, data is purged from the processing environment in accordance with your retention policies.
7. Your Rights (GDPR & International Standards)
As a client of Hefaistos AI, you retain the following rights:
Right to Access: You may request details on which third-party providers are currently processing your data.
Right to Erasure: You may request that we trigger the deletion of your data within the third-party environments we manage for you.
Right to Portability: We will assist in the seamless migration of any strategic assets or code from our managed environments to your own internal systems.
8. Contact Information
For questions regarding this policy or our choice of AI and cloud partners, please contact:
Hefaistos AI
Email: info@hefaistos.ai