PRIVACY POLICY

Last Updated: February 2026

Aeon Intelligence LLC ("Company," "we," "us," or "our") operates the website aeon-intelligence.com (the "Site") and provides AI automation services to businesses. This Privacy Policy describes how we collect, use, disclose, and protect your information when you visit our Site or use our services.

By using our Site or services, you agree to the collection and use of information in accordance with this Privacy Policy.

  1. INFORMATION WE COLLECT

1.1 Information You Provide Directly

When you interact with us, you may provide:

  • Contact information (name, email address, phone number, business name)

  • Business information (industry, company size, service needs)

  • Communications (inquiries, support requests, feedback)

  • Payment information (processed through secure third-party payment processors)

1.2 Information Collected Automatically

When you visit our Site, we may automatically collect:

  • Device information (browser type, operating system, device identifiers)

  • Log data (IP address, access times, pages viewed, referring URL)

  • Cookies and similar technologies (see Section 7)

1.3 Information Collected Through Our Services

For business clients using our automation services, we collect:

  • Event patterns (appointments, bookings, cancellations, conversions)

  • Performance metrics (response times, success rates, volumes)

  • Usage patterns (peak times, trends, workflow executions)

1.4 Information We Do NOT Collect

We are committed to data minimization. We do NOT collect:

  • Personally identifiable information (PII) of your customers without consent

  • Payment card or financial account information (handled by secure processors)

  • Protected health information (PHI) except under HIPAA-compliant arrangements

  • Attorney-client privileged communications except under Privilege tier arrangements

  • Social Security numbers or government identification numbers

  1. HOW WE USE YOUR INFORMATION

We use collected information for the following purposes:

2.1 Service Delivery

  • Providing, maintaining, and improving our AI automation services

  • Processing transactions and sending related information

  • Responding to your inquiries and support requests

  • Sending service-related notifications and updates

2.2 Business Operations

  • Analyzing usage patterns to improve our services

  • Generating anonymized, aggregate benchmarks and industry insights

  • Developing new features and services

  • Ensuring security and preventing fraud

2.3 Communications

  • Sending marketing communications (with your consent)

  • Providing newsletters and updates about our services

  • Responding to your requests and inquiries

2.4 Legal Compliance

  • Complying with applicable laws and regulations

  • Responding to legal requests and preventing harm

  • Enforcing our terms and policies

  1. DATA ANONYMIZATION AND AGGREGATION

3.1 Anonymization Standards

All client data used for benchmarking and analytics is anonymized according to these standards:

  • PII stripped at collection point before storage

  • Identifiers replaced with one-way hashed tokens

  • Aggregation only with minimum pool sizes (10+ clients)

  • Time-delayed reporting (24-hour minimum lag)

  • Geographic data aggregated to city or state level only

3.2 Aggregate Data Usage

Anonymized, aggregate data may be used to:

  • Provide industry benchmarks to all clients

  • Improve AI model performance

  • Generate market insights and reports

  • Develop new service offerings

Individual client data is never identifiable in aggregate reports.

  1. HOW WE SHARE YOUR INFORMATION

We do not sell your personal information. We do not share, rent, or trade your personal information with third parties for their marketing purposes.

4.1 Service Providers
We share information only with trusted third-party service providers who assist us in operating our business and delivering services to you, including:

  • Cloud infrastructure (Supabase - SOC 2 Type II compliant)

  • AI services (OpenAI, Anthropic - for automation features)

  • Communication services (Twilio, SendGrid - for SMS and email delivery only)

  • Payment processors (for billing purposes only)

All service providers are contractually obligated to protect your information and are prohibited from using it for any purpose other than providing services to us.

4.2 SMS/Text Messaging Data
Your mobile phone number and SMS opt-in data will NOT be shared with third parties or affiliates for marketing or promotional purposes. SMS consent and phone numbers are used solely for the purpose of delivering service-related communications you have requested.

4.3 Legal Requirements
We may disclose information if required by law, regulation, legal process, or governmental request.

4.4 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you before your personal information is transferred and becomes subject to a different privacy policy.

4.5 With Your Consent
We may share information for other purposes only with your explicit prior consent.

  1. DATA SECURITY

We implement industry-standard security measures to protect your information:

5.1 Technical Safeguards

  • Encryption at rest using AES-256

  • Encryption in transit using TLS 1.3

  • Secure, geographically distributed backups

  • Regular security assessments and vulnerability scanning

5.2 Access Controls

  • Role-based access control (RBAC)

  • Multi-factor authentication (MFA) for administrative access

  • Principle of least privilege

  • Complete audit logging of all data access

5.3 Infrastructure Security

  • SOC 2 Type II compliant infrastructure (Supabase)

  • Regular security audits

  • Automated monitoring for unusual access patterns

  1. DATA RETENTION

We retain your information according to these guidelines:

  • Active Clients: Data retained for the duration of the service relationship plus 90 days

  • Churned Clients: Raw data deleted within 30 days after service termination

  • Anonymized Aggregate Data: Retained indefinitely for benchmarking purposes

  • Website Visitor Data: Retained for 2 years, then anonymized or deleted

  • Communication Records: Retained for 3 years for legal compliance

Upon request, you may receive a copy of your data or request deletion (see Section 8).

  1. SMS/TEXT MESSAGING PRIVACY

7.1 SMS Data Collection
When you opt in to receive SMS messages from Aeon Intelligence, we collect:

  • Your mobile phone number

  • Your SMS opt-in consent and timestamp

  • SMS delivery status and response data

  • Message content you send to us via SMS

7.2 How SMS Data Is Used
Your SMS data is used solely for:

  • Delivering service-related messages you have requested (appointment reminders, confirmations, updates)

  • Responding to your SMS inquiries

  • Confirming opt-in and opt-out requests

  • Improving message delivery and service quality

7.3 SMS Data Sharing Policy
Your mobile phone number and SMS opt-in data will NOT be shared with third parties or affiliates for marketing or promotional purposes. We do not sell, rent, or trade your phone number or SMS consent data.

SMS data is shared only with:

  • Twilio (our SMS delivery provider) solely for the purpose of delivering messages

  • No other third parties

7.4 SMS Data Retention

  • Active opt-in records: Retained while you remain opted in

  • Opt-out records: Retained for compliance verification (proof of opt-out)

  • Message logs: Retained for 90 days, then deleted

7.5 Opting Out of SMS
You may opt out of SMS messages at any time by texting STOP to the number from which you received messages. For assistance, text HELP or contact us at contact.aeonintelligence@gmail.com or 970-260-6432.

  1. COOKIES AND TRACKING TECHNOLOGIES

8.1 Types of Cookies We Use

  • Essential Cookies: Required for site functionality

  • Analytics Cookies: Help us understand how visitors use our site

  • Preference Cookies: Remember your settings and preferences

8.2 Managing Cookies
You can control cookies through your browser settings. Note that disabling certain cookies may affect site functionality.

8.3 Do Not Track
We respect Do Not Track (DNT) signals where technically feasible.

  1. YOUR PRIVACY RIGHTS

Depending on your location, you may have the following rights:

9.1 General Rights (All Users)

  • Access: Request a copy of your personal data

  • Correction: Request correction of inaccurate data

  • Deletion: Request deletion of your data

  • Data Portability: Receive your data in a standard format (CSV/JSON)

  • Opt-Out: Unsubscribe from marketing communications

9.2 GDPR Rights (European Union Residents)
If you are located in the EU, you have additional rights under GDPR:

  • Right to access your personal data

  • Right to rectification of inaccurate data

  • Right to erasure ("right to be forgotten")

  • Right to restrict processing

  • Right to data portability

  • Right to object to processing

  • Right to withdraw consent at any time

To exercise GDPR rights, contact us at contact.aeonintelligence@gmail.com.

9.3 CCPA Rights (California Residents)
If you are a California resident, you have rights under CCPA:

  • Right to know what personal information is collected

  • Right to know if personal information is sold or disclosed

  • Right to say no to the sale of personal information

  • Right to delete personal information

  • Right to non-discrimination for exercising your rights

We do NOT sell personal information as defined by CCPA.

To exercise CCPA rights, contact us at contact.aeonintelligence@gmail.com or call 970-260-6432.

9.4 Exercising Your Rights
To exercise any privacy rights:

We will respond to requests within 30 days (or 45 days for complex requests).

  1. PRIVACY TIERS FOR BUSINESS CLIENTS

We offer three privacy tiers for business clients:

10.1 Standard Privacy (Default)

  • SOC 2 Type II compliant infrastructure

  • AES-256 encryption at rest and in transit

  • Anonymized data contributes to aggregate benchmarks

  • Standard data protection practices

10.2 HIPAA Privacy Tier (Healthcare Clients)

  • All Standard tier protections PLUS:

  • One-way hashed identifiers (PII never stored in plaintext)

  • Business Associate Agreement (BAA) provided

  • Full BAA stack from all vendors

  • Option to opt-out of aggregate benchmarking

  • PHI data minimization practices

10.3 Privilege Privacy Tier (Legal Clients)

  • All Standard tier protections PLUS:

  • Zero-knowledge architecture

  • Client-held secret salt for encryption

  • No data contribution to aggregate insights

  • Full opt-out by default

  • Attorney-client privilege protections

Contact us to discuss which privacy tier is appropriate for your business.

  1. CHILDREN'S PRIVACY

Our Site and services are not directed to individuals under 18 years of age. We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, please contact us immediately.

  1. INTERNATIONAL DATA TRANSFERS

Your information may be transferred to and processed in countries other than your country of residence, including the United States. These countries may have different data protection laws. We ensure appropriate safeguards are in place for international transfers, including standard contractual clauses where applicable.

  1. DATA BREACH NOTIFICATION

In the event of a data breach affecting your personal information:

  • We will notify affected individuals within 72 hours of discovery

  • Notification will include: what data was affected, how the breach occurred, and remediation steps

  • We will work with relevant authorities as required by law

  1. THIRD-PARTY LINKS

Our Site may contain links to third-party websites. We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies before providing any personal information.

  1. CHANGES TO THIS PRIVACY POLICY

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last Updated" date. For material changes, we will provide notice via email or prominent notice on our Site. Your continued use of our services after changes constitutes acceptance of the updated policy.

  1. CONTACT US

If you have questions about this Privacy Policy or our privacy practices:

Aeon Intelligence LLC
203 Oakwood Ave
Hot Springs, AR 71913

Email: contact.aeonintelligence@gmail.com
Phone: 970-260-6432
Website: https://aeon-intelligence.com

For GDPR inquiries, you may also contact your local data protection authority.

This Privacy Policy is effective as of February 2026.

© 2026 Aeon Intelligence LLC. All rights reserved.