Legal
Privacy Policy
Effective date: TBD
1. Who we are
Velocity is operated by Aethernaut ("Aethernaut", "we", "us"). Our principal place of business is on file with the appropriate authorities. You can reach us at privacy@aethernaut.ai.
2. What this policy covers
This policy describes how Aethernaut handles personal information collected through our public website (aethernaut.ai), our customer portal, and the Velocity desktop application when used on our managed cloud tier. It does not cover personal information processed inside customer-controlled self-hosted or BYOC deployments; those are governed by the customer's own privacy program.
3. Information we collect
- Account information you provide (name, work email, org name, billing address).
- Authentication data (hashed passwords, SSO identifiers, MFA factors). Passwords are hashed with argon2; we never see plaintext.
- Anonymous product telemetry (feature usage, error rates, performance timings) on the managed cloud tier — never file contents, prompt text, real user paths, or IP addresses.
- Billing records (Stripe customer ID, invoice metadata). Card data is held by Stripe; we do not store full card numbers.
4. How we use information
- Provide, operate, and improve the Velocity service.
- Authenticate users and authorize access to their org.
- Bill customers and handle payment failures.
- Comply with legal obligations.
- Send transactional email (invites, password resets, security alerts).
5. What we do not do
- We do not run drip marketing campaigns.
- We do not sell or rent personal information to third parties.
- We do not read your source code, your CLI prompts, or your messages outside of Velocity-internal support requests you initiate via the admin panel ticket flow.
- We do not use cookies for tracking; analytics runs in PostHog cookieless mode.
6. Data residency
Managed cloud customers pick a region at signup (US or EU at launch). All org data stays in the chosen region. Moving data between regions requires a customer-initiated support ticket. BYOC customers' data never leaves their cloud account.
7. Your rights
You can request data export or deletion at any time from Org Settings → Privacy, or by emailing privacy@aethernaut.ai. Deletion is final once you confirm; we retain an audit log of the deletion event itself as forensic evidence.
8. Changes to this policy
We'll post material changes here and notify Managers in-app at least thirty days before they take effect.