Privacy Policy
Last updated: June 2026
1. Who This Policy Applies To
This policy applies to:
- Administrators and users who hold accounts on the Aether OS platform ("Users")
- Employees and team members whose activity signals are read by Aether OS through connected workplace tools ("Connected Individuals")
- Visitors to our marketing website at theaetherai.net ("Visitors")
If you are a Connected Individual — meaning your organisation has deployed Aether OS and connected it to tools you use — please refer to Section 4 for information specific to you.
2. Information We Collect
2.1 Account & Registration Data
When an organisation signs up for Aether OS, we collect: organisation name, administrator name, work email address, billing information (processed by our payment provider — we do not store card numbers), and plan selection.
2.2 Operational Signal Data (from connected tools)
When Aether OS connects to your organisation's workplace tools via OAuth 2.0, it reads operational signals including:
- Task and project status updates (from Jira, Notion)
- Communication metadata and activity patterns (from Slack, Microsoft Teams)
- Document activity signals — not document content (from Google Drive, SharePoint)
- Calendar and meeting metadata — not meeting content (from Google Calendar, Outlook)
- OKR and goal progress indicators
Important Notice:
Aether OS does not read, store, or process the full content of emails, direct messages, documents, or files. We extract metadata and activity signals only — sufficient to generate operational intelligence without accessing private communications.
3. How We Use Your Information
We use collected data to:
- Provide and operate the Aether OS platform
- Generate operational intelligence, dashboards, AI digests, and Ask Aether responses for your organisation
- Authenticate users and enforce role-based access controls
- Process billing and manage subscriptions
- Send service-related communications (onboarding, product updates, security alerts)
- Investigate and resolve support requests
- Improve platform performance, reliability, and features
- Comply with legal and regulatory obligations under Nigerian law
We do not use your data to train AI models. All data processing for intelligence purposes is conducted under a strict no-training-on-customer-data policy — your operational signals are never used to improve AI models.
4. Connected Individuals (employees whose signals are read)
If your employer has deployed Aether OS, Aether OS may read operational signals from workplace tools you use — such as task status in Jira, activity patterns in Slack, or document activity in Google Drive.
What this means for you:
- Aether OS reads activity signals and metadata, not the content of your messages or documents
- You do not have an Aether OS account and are not required to interact with the platform
- Your employer (the data controller) is responsible for informing you that Aether OS is deployed
- The signals read about your activity are used solely to provide operational intelligence to your organisation's leadership
- You may contact your employer's administrator or reach us at info@theaetherai.net to understand what signals relate to your activity
5. Data Sharing & Third Parties
We do not sell, rent, or trade your data. We share data only with the following categories of sub-processors, solely to operate the platform:
- Data Intelligence Processing — Signal data is processed to generate operational intelligence. This processing is conducted under a strict no-training-on-customer-data policy.
- Database Infrastructure — Operational signal data and account data is stored in managed PostgreSQL databases with row-level security isolation.
- Caching Infrastructure — Managed caching layer for platform performance.
- Cloud Hosting — Industry-standard cloud providers for hosting the Service.
- Email Delivery — Used to deliver AI digests and service notifications.
- Payment Processing — Billing data is handled by our payment provider. We do not store card numbers.
- Identity & Authentication — Secure user authentication and session management.
6. Data Storage & Security
All data is stored within our managed PostgreSQL infrastructure. Aether OS operates a strict multi-tenant architecture with row-level security — each organisation's data is logically isolated and cannot be accessed by another organisation.
In Transit
TLS encryption for all data.
At Rest
AES-256 encryption applied.
RLS
Database-level row isolation.
MFA
Multi-factor support enabled.
7. Data Retention
- Account data: for the duration of your active subscription.
- Post-termination: organisational data deleted within 30 days.
- Communication records: up to 2 years.
- Billing records: retained for 7 years as required by Nigerian law.
8. Your Rights Under the NDPR
Under Nigeria's Data Protection Regulation (NDPR), you have the right to access, rectification, erasure, restriction, portability, objection, and withdrawal of consent.
To exercise any of these rights, contact us at info@theaetherai.net. We will respond within 30 days. If you believe we have violated your data rights, you have the right to lodge a complaint with the Nigeria Data Protection Bureau (NDPB).
10. Children's Data
Aether OS is an enterprise B2B platform. We do not knowingly collect personal data from individuals under the age of 18.
11. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the 'Last updated' date at the top of this page.
12. Contact Information
Data Controller:
Aether AI
Lagos, Nigeria
info@theaetherai.net