Privacy Policy
Effective date: August 27, 2026
Last updated: August 27, 2026
1. Who this covers
This policy explains how Inexorable, Inc., a Delaware corporation doing business as Confidential AI ("we", "us"), collects and uses personal data when you visit confidential.ai, create an account, use Confidential Cloud, license Confidential Software, or contact us.
It does not cover data you or your end users send through applications you build on our Services, or data you process using Software on your own infrastructure. For that data you are the controller and we act on your instructions under our Data Processing Addendum, where one applies.
2. The short version
Our platform is built so that, during normal operation, we cannot read the content you process on it. Prompts, completions, workload memory, and data inside Confidential VMs and Agents are handled only inside hardware-backed Trusted Execution Environments. You can verify this through attestation.
Confidential computing reduces risk. It does not eliminate it. Hardware vulnerabilities, firmware issues, side-channel attacks, customer misconfiguration, compromised credentials, and infrastructure outside our control may affect confidentiality. The hardware and firmware of Intel, AMD, and NVIDIA form the root of trust for the Services.
What we do see is metadata: who you are, what you are billed for, which models and endpoints you called, and the operational signals needed to run the service. This policy is about that metadata.
We do not sell personal data. We do not use your content or metadata to train models. We do not serve advertising.
3. What we collect
- Account data. Name, email, company, billing address, account settings, API key identifiers, and team members you add.
- Usage metadata. For API requests: request ID, timestamp, model, token counts, latency, status, API key identifier, and source IP. For VMs and Agents: instance IDs, region, hardware type, running time, and network-level metadata. We do not collect the plaintext of prompts, completions, files, or workload memory.
- Operational telemetry. Logs from systems outside the TEE boundary, and telemetry from inside the TEE boundary, such as resource metrics.
- Attestation records. Evidence issued by our gateway and workers, including nonces you supply, measurements, and TCB versions.
- Licensable Software. Attestation and metering records showing licensed hardware units in use, aggregated de-identified operational data, and support content you send us. We do not receive your workload data.
- Website and communications. Cookieless website analytics from Plausible, waitlist signups, and the emails, support requests, and job applications you send us.
4. Why we use it
| Purpose | Legal basis (where GDPR applies) |
|---|---|
| Provide, operate, and bill the Services | Contract |
| Verify licensed quantities and operate, secure, and improve the Software | Contract, legitimate interests |
| Security, abuse prevention, and incident response | Legitimate interests |
| Support and communications | Contract, legitimate interests |
| Product improvement and aggregate analytics | Legitimate interests |
| Legal compliance, tax, and disputes | Legal obligation, legitimate interests |
| Recruitment | Legitimate interests, consent |
We do not use personal data to make automated decisions that produce legal or similarly significant effects on you.
5. Who we share it with
- Infrastructure providers hosting our confidential hardware. They cannot read what runs inside the TEEs.
- Our payment processor.
- Providers of email, support, analytics, accounting, and similar business tools.
- Professional advisers.
- Law enforcement or authorities where we believe in good faith that disclosure is required by law or valid legal process. Because we cannot access content, any such disclosure is limited to metadata.
- A successor in a merger, acquisition, financing, or sale of assets.
We do not share personal data with third-party model providers. Models run on our infrastructure.
6. International transfers
We are a US company. If you are in the EEA, UK, or Switzerland, account and usage metadata may be transferred to the US and other countries where we or our providers operate. For those transfers we rely on Standard Contractual Clauses and the UK Addendum. Our Data Processing Addendum, available on request, sets out the mechanisms that apply when we act as your processor.
7. Retention
We keep personal data for as long as needed for the purposes above, then delete or anonymize it. In practice: account data for the life of the account and a short period after; billing records for as long as tax and accounting law requires; usage metadata, attestation records, and logs for as long as needed for billing, security, and dispute resolution; support and recruitment communications for as long as reasonably needed.
Content inside TEEs is transient and is not retained by us. Data you store in Confidential VMs or Agents persists until you delete it or the instance is terminated. By default, we do not back up in-enclave state and cannot recover it.
8. Your rights
Depending on where you live, you may have the right to access, correct, delete, port, or restrict processing of your personal data, and to object to processing based on legitimate interests. EEA and UK residents may complain to their supervisory authority. California residents have rights under the CCPA/CPRA; we do not sell or share personal data as defined there.
To exercise rights, email privacy@confidential.ai. We respond within the time required by law and may need to verify your identity.
If you are an end user of an application built on our Services, contact that application's operator. They are the controller. Because we cannot access content, we generally cannot locate or act on your data directly.
9. Security
Our platform is built on hardware-enforced isolation, attestation, and encrypted memory. For metadata we apply access controls, encryption in transit and at rest, and logging. Report security issues to security@confidential.ai. If a security incident affects your personal data, we will notify you as required by law.
10. Cookies
We use Plausible for cookieless website analytics. We do not use advertising or tracking cookies, and set only cookies that are strictly necessary for the Services to function.
11. Children
The Services are for businesses and developers. You must be 18 or over to use them. We do not knowingly collect personal data from anyone under 18.
12. Changes
We will post changes here and update the date above.
13. Contact
Inexorable, Inc. (doing business as Confidential AI)
1844 Market St Unit 401, San Francisco, CA 94102