Privacy Policy

Last updated: August 2026

This Privacy Policy describes how SigmaEra ("we", "us", or "our") collects, uses, and shares information about you when you use our services.

Information We Collect

We collect information you provide directly to us, such as when you request a demo, contact us, or use our platform. This may include your name, email address, company name, and job title.

How We Use Your Information

We use the information we collect to provide, maintain, and improve our services, communicate with you, and comply with legal obligations.

Data Security

We implement technical and organizational measures to protect your personal information, including database-enforced tenant isolation, encryption in transit and at rest, key management in a dedicated secrets store, and append-only audit logging of access to sensitive content. Our platform security white paper documents these controls, their enforcement mechanisms, and their current maturity — including the ones built but not yet switched on. We do not claim certification against SOC 2, ISO 27001, or HIPAA.

Sub-processors

In the default hosted configuration, content submitted for sensitivity classification is processed by a third-party large language model provider acting as a sub-processor. Deployments that require content to remain inside your own boundary can be configured to route classification to a local model, and on-premises installations can operate with no external model provider reachable at all. Our platform security white paper documents this routing and its configuration in detail.

Contact Us

If you have questions about this Privacy Policy, please contact us at privacy@sigmaera.ai.