Privacy Policy
Last updated: June 2026
1. Scope
This policy explains what Turiya collects and does not collect when you use the Service. Turiya verifies AI systems; it is not a data-hungry service. The core design choice is that verification runs on your infrastructure against your target, so we never need your models, prompts, or repository contents.
2. Data We Collect
Account data. If you create an account: your name or organization name, email address, and a hashed credential. We use this to authenticate you and to run billing.
Usage data. Basic operational data necessary to provide the Service: API key usage, verification counts, and error telemetry. This is not tied to the content you verify.
Analytics. If enabled, aggregated, non-identifying analytics (page views, deployment traffic) via our hosting provider.
3. Data We Do Not Collect
We do not collect, store, or transmit: your model weights; your prompts or completions; your repository source code; your test fixtures; or your ground-truth specifications. Verification runs in your environment. The only artifact we produce is a receipt containing a content hash: a one-way fingerprint of the result, not your data.
4. How We Use Data
We use the limited data we collect to: provide, operate, and improve the Service; authenticate you; process billing; respond to support requests; and meet legal obligations. We do not sell your data, and we do not use it to train models on your behalf.
5. Legal Bases (EEA/UK)
Where applicable, we process personal data on the basis of: performance of a contract (to provide the Service), legitimate interest (operational security and improvement), legal obligation, and consent (where you have provided it).
6. Sharing and Third Parties
We share data only with service providers who operate the infrastructure (for example, hosting and analytics), bound by appropriate terms. We may disclose data where required by law or to protect our rights.
7. Retention
We retain account data while your account is active and for a limited period thereafter as needed for legal and billing purposes. Usage data is retained for a limited operational window.
8. Security
We use industry-standard measures to protect the limited data we hold. Receipts are secured by public-key cryptography (Ed25519). Tampering is detectable, and the private signing key is isolated from user data.
9. International Transfers
The Service is operated globally and data may be processed outside your jurisdiction. We apply appropriate safeguards for cross-border transfers as required by applicable law.
10. Your Rights
Depending on your jurisdiction, you may have rights to access, correct, delete, restrict, or port your personal data, and to object to processing. To exercise these rights, contact us below. You may also have the right to lodge a complaint with your local supervisory authority.
11. Cookies and Analytics
The website uses minimal cookies (for example, to remember your theme preference) and aggregated analytics. We do not use tracking cookies for advertising.
12. Changes
We may update this policy from time to time. Material changes will be posted with an updated "Last updated" date.
13. Contact
Questions or requests: holynttechnologieshq@outlook.com