Privacy Policy

Effective Date: May 16, 2026
Last Updated: May 16, 2026

Bauxite Networks (“we,” “us,” or “our”) is committed to absolute data sovereignty, privacy, and technical autonomy. We develop sovereign Artificial Intelligence (AI) solutions designed to run entirely within our clients’ own controlled environments.

Because our software is locally deployed, you retain 100% ownership and control over your data. This Privacy Policy explains how our software interacts with your data and the limited scope of information we collect through our corporate operations.

1. The Core Principle: Zero-Data Visibility

Unlike traditional cloud-based SaaS AI platforms, we do not collect, store, view, or process the data you feed into our AI models.

  • Your Inputs & Outputs: All prompts, training datasets, documents, fine-tuning configurations, and generated AI responses remain strictly within your local deployment infrastructure.
  • No Centralized AI Training: We never harvest your data to train our base models or improve our commercial products.

2. Information We DO NOT Collect

Through the use of our locally deployed software, we have zero visibility into:

  • Your operational, proprietary, or customer data.
  • Model inference logs, weights, or vector database embeddings.
  • User access logs or internal authentication mechanics.

3. Information We May Collect (Operational Limits)

Consistent with our commitment to absolute technical autonomy, our Software is designed to be purely local. We have intentionally limited operational communication to the following scope:

A. Offline License Verification

Our Software utilizes deterministic, offline cryptographic verification. There are no "phone-home" cycles, network heartbeats, or background call-backs required for the Software to maintain its operational license status.

B. Zero Outbound Telemetry

We do not collect performance metrics, crash logs, or behavioral analytics from your local deployment. If our binaries cannot run securely inside an air-gapped server room or a disconnected field rig, we do not ship them.

C. Website and Commercial Interactions

If you visit our marketing website, request a demo, or contact support, we collect standard operational business data (e.g., name, corporate email, billing details) governed by applicable data laws (e.g., GDPR, Australian Privacy Act 1988). This data is separate from your local Software deployment.

4. Technical and Data Sovereignty Compliance

Our local deployment architecture natively supports compliance with major global regulatory standards because data never leaves your jurisdiction:

  • GDPR / EU AI Act: Data processing happens entirely within your regional boundaries.
  • HIPAA / BAA: Patient data and Protected Health Information (PHI) never leave your infrastructure, eliminating cross-border data transfer risks.
  • Local Laws: By utilizing your own bare metal, private cloud, or Trusted Execution Environments (TEEs), you retain full jurisdiction over your data estate.

5. Data Security in Local Deployments

While we design our software using best-in-class security blueprints (including support for end-to-end encryption at rest and in transit), the ultimate security of the local infrastructure remains the responsibility of the client. You control the network perimeter, access rules, and physical server security.

6. Updates to This Policy

We may update this Privacy Policy to reflect changes in our software’s features. However, our foundational commitment—that we do not access or store your AI data—will never change. If we make material modifications, we will notify you through our release notes or enterprise client representatives.

7. Contact Our Data Protection Team

If you have questions regarding our commitment to Sovereign AI architecture or wish to request an air-gapped deployment manifest, please contact us:

Email: [email protected]