Privacy Policy
Last updated: December 2025
Introduction
CIFER Security ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website and services.
Our core product is built on the principle that your encrypted data should be accessible only to you. This privacy policy covers the information we collect about you as a user of our services, not your encrypted data which remains cryptographically protected at all times.
Information We Collect
Information You Provide
- Account Information: Email address, name, and authentication credentials when you create an account
- Contact Information: Information you provide when contacting us for support or inquiries
- Payment Information: Billing details processed through our payment providers (we do not store full payment card numbers)
Information Collected Automatically
- Usage Data: API calls, feature usage, and service interactions (excluding encrypted content)
- Device Information: Browser type, operating system, and device identifiers
- Log Data: IP addresses, access times, and pages viewed
- Analytics: We use Google Analytics to understand how visitors interact with our website
How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve our services
- Process transactions and send related information
- Send technical notices, updates, and security alerts
- Respond to your comments, questions, and support requests
- Monitor and analyze trends, usage, and activities
- Detect, investigate, and prevent fraudulent or unauthorized activity
- Comply with legal obligations
Your Encrypted Data
Important: Data you encrypt using CIFER is processed exclusively within Trusted Execution Environments (TEEs). We cannot access, read, or decrypt your encrypted content. This is enforced by hardware—not policy.
- Encryption keys are generated and stored within TEE enclaves
- We have no technical ability to access your plaintext data
- Even in response to legal requests, we can only provide encrypted ciphertext
Information Sharing
We do not sell your personal information. We may share information with:
- Service Providers: Third parties that help us operate our services (hosting, analytics, payment processing)
- Legal Requirements: When required by law or to protect our rights and safety
- Business Transfers: In connection with a merger, acquisition, or sale of assets
Data Retention
We retain your personal information for as long as your account is active or as needed to provide services. We may retain certain information as required by law or for legitimate business purposes.
Your Rights
Depending on your location, you may have the right to:
- Access, correct, or delete your personal information
- Object to or restrict certain processing
- Data portability
- Withdraw consent where processing is based on consent
To exercise these rights, contact us at privacy@cifer-security.com.
Cookies and Tracking
We use cookies and similar technologies for analytics and to remember your preferences. You can control cookies through your browser settings.
Security
We implement appropriate technical and organizational measures to protect your information. However, no method of transmission over the Internet is 100% secure. For details on our security practices, see our Security page.
International Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers.
Children's Privacy
Our services are not intended for individuals under 16. We do not knowingly collect personal information from children.
Changes to This Policy
We may update this policy from time to time. We will notify you of material changes by posting the new policy on this page and updating the "Last updated" date.
Contact Us
If you have questions about this Privacy Policy, please contact us at: privacy@cifer-security.com