SafeZoneNetSafeZoneNet
الأسعارتحميل
حول
تسجيل الدخولابدأ مجانًا
قانوني

الخصوصية السياسة

آخر تحديث: 1 يناير 2026

هذه الترجمة مقدَّمة للتيسير فقط. النص الملزم هو النسخة الإنجليزية المعروضة أدناه، وهي التي تسود عند أي اختلاف.

1. Introduction

SafeZoneNet LLC ("SafeZoneNet," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard information when you use our zero-trust networking platform and services.

SafeZoneNet operates a network control plane. Operating a mesh necessarily means processing identity, device, routing, and policy metadata. This policy sets out exactly what that includes rather than describing it in general terms.

This policy is published in English. Translations are provided for convenience only; the English version governs.

2. Controller and Processor Roles

For account, billing, and website data, SafeZoneNet acts as controller. For the operational data your organization generates inside its mesh — users, devices, routes, policies, and audit records — SafeZoneNet acts as processor and your organization is the controller.

Where you enrol devices belonging to your employees, contractors, or customers, you are responsible for providing them with notice and for establishing a lawful basis for that processing.

3. Information We Collect

3.1 Information You Provide

  • Account registration information (name, work email, company, beta invite code)
  • Billing contact details and payment method tokens held by our payment processor (we do not store full card numbers)
  • Support communications and any attachments you send us
  • Mesh configuration you author: access-control policies, subnet routes, exit-node settings, DNS records, roles, and sub-organization structure

3.2 Identity and Directory Data

  • Identity-provider attributes received via OIDC or SAML, typically subject identifier, email, display name, and group or role claims
  • Multi-factor authentication enrolment state (we store TOTP secrets encrypted; we do not store your authenticator app's codes)
  • Session, refresh-token, and API-key metadata including issue time, expiry, and revocation state

3.3 Device and Posture Data

  • Device identifiers, hostname, platform, OS version, and client version
  • WireGuard public keys and assigned mesh addresses (we never receive your private keys — they are generated on and remain on your device)
  • Device posture signals such as disk-encryption state, screen-lock state, OS patch level, and client-version currency

3.4 Connection and Network Metadata

SafeZoneNet relays forward encrypted WireGuard packets and cannot decrypt payload content. We do, however, process the metadata required to route and secure connections:

  • Source and destination mesh peer identifiers for connection events
  • Public IP address and coarse geolocation derived from it, used for relay selection and abuse prevention
  • Relay selection, connection establishment, duration, and byte counters
  • MagicDNS query metadata for names within your own mesh namespace
  • Access decisions: which policy allowed or denied a connection, and why

3.5 Audit, Security, and AI Data

  • Administrative and policy events recorded in the HMAC-chained audit log (actor, action, target, timestamp)
  • Anomaly scores and the rule outcomes that produced them
  • Prompts, selected context, and generated output for AI-assisted policy drafting, audit querying, and remediation proposals
  • Website analytics and Core Web Vitals measurements

4. How We Use Information

We use collected information for:

  • Operating the mesh: peer discovery, relay selection, address assignment, and DNS resolution
  • Enforcing access control, device posture requirements, and route approvals
  • Producing audit evidence and compliance exports for your organization
  • Generating AI-assisted policy drafts, audit answers, and remediation proposals for operator review
  • Security monitoring, abuse prevention, rate limiting, and incident response
  • Processing transactions and billing
  • Customer support and service communications
  • Compliance with legal obligations

5. What We Do Not Do

  • We do not sell personal information.
  • We do not decrypt WireGuard payload content traversing our relays.
  • We do not use your mesh operational data or AI prompts to train foundation models.
  • We do not use your data for advertising or share it with advertising networks.

6. Subprocessors

We engage the following categories of subprocessor to deliver the Service. A current, named register with entity details and processing locations is available at [email protected], and is provided as an annex to our Data Processing Agreement. We give notice of material changes and you may object on reasonable data-protection grounds.

  • Cloud infrastructure and hosting — control plane, database, and managed relay compute
  • Payment processing — subscription billing and payment method storage
  • Transactional email delivery — verification, invitation, and notification messages
  • Error monitoring and application performance telemetry
  • Large language model inference — AI-assisted policy drafting, audit querying, and remediation proposals
  • Customer support tooling

7. International Transfers and Residency

SafeZoneNet is operated from the United States. Where personal data originating in the EEA or UK is transferred, we rely on Standard Contractual Clauses together with supplementary technical and organizational measures.

Enterprise customers may pin control-plane data to a selected region. Region selection constrains where control-plane records are stored; it does not by itself constitute a regulatory authorization or attestation. See the Compliance page for current certification status.

SafeZoneNet has not appointed an EU Article 27 representative. If you require one as a condition of processing, contact [email protected] before enrolling EEA data subjects.

8. Data Retention

Retention periods by record type. Where a plan-dependent window applies, the shorter Free-plan window takes effect immediately on downgrade — export anything you need to keep beforehand.

  • Audit records — 7 days on Free, up to 365 days on Pro and Enterprise
  • Connection and relay telemetry — 90 days
  • Anomaly signals and threat-review context — 90 days
  • AI prompts and generated output — 30 days, then deleted
  • Website and product analytics — 14 months in aggregated form
  • Account and billing records — for the life of the account, then as required by tax and accounting law
  • Encrypted backups — up to 35 days, after which deleted records age out of backup media
  • Security incident records — as long as necessary for investigation and legal obligations

9. Data Security

Security measures include:

  • WireGuard encryption between peers, with private keys generated on and confined to your devices
  • Relays that cannot decrypt WireGuard payload content
  • AES-256-GCM field-level encryption for sensitive stored values
  • Row-level security enforcing tenant isolation on multi-tenant tables
  • HMAC-chained audit records providing tamper evidence within the documented key and storage trust model
  • Continuous threat-signal monitoring and device posture evaluation
  • SOC 2 readiness-oriented infrastructure with compliance monitoring and audit evidence exports

10. Account Deletion

You may request deletion at any time via the console or by emailing [email protected]. On deletion we revoke active sessions and device enrolments, remove mesh configuration and operational records from production systems within 30 days, and allow the data to age out of encrypted backups within the backup retention window above.

We retain the minimum billing and tax records required by law, and any records subject to a legal hold.

11. Your Rights

Depending on your location, you may have rights to:

  • Access your personal information
  • Correct inaccurate data
  • Delete your information
  • Port your data to another service
  • Object to or restrict certain processing
  • Withdraw consent where processing relies on consent

12. Exercising Your Rights

If your data is held by an organization using SafeZoneNet, direct your request to that organization as controller; we will assist them in responding.

For data where SafeZoneNet is controller, email [email protected] with "Privacy Request" in the subject line. We respond within 30 days as required by applicable regulation.

13. Changes to This Policy

We may update this policy. Material changes will be announced on this page with a revised effective date, and where the change materially affects paid customers we will notify the account's billing contact.

14. Contact Us

For privacy-related inquiries, contact our Data Protection Officer:

Email: [email protected]

Security reports: [email protected]

Address: SafeZoneNet LLC, 15915 Katy Fwy Ste 520, Houston, TX 77094

SafeZoneNetSafeZoneNet

شبكات mesh بانعدام الثقة مع اكتشاف التهديدات بالذكاء الاصطناعي وسياسات اللغة الطبيعية.

المنتج

الميزاتالأسعارتنزيلالوثائقسجل التغييراتخارطة الطريق

الشركة

من نحنالوظائفالمدونةحقيبة إعلاميةاتصل بنا

القانوني

سياسة الخصوصيةشروط الخدمةالأمانالامتثالGDPR

الدعم

حالة النظاممركز المساعدةالدعم عبر البريد الإلكترونيالمجتمع

© 2026 SafeZoneNet. جميع الحقوق محفوظة. · SafeZoneNet

جاهزية SOC 2ISO 27001 متوافقGDPR مُصمَّم لهHIPAA مُصمَّم له