Privacy, Terms & Security

Comprehensive information about how we protect your data, our terms of service, and our security practices.

Privacy Policy

1. Introduction and Commitment to Privacy

At StroomAI, we are committed to protecting your privacy and maintaining the highest standards of data security. This Privacy Policy explains how we collect, use, protect, and share information in connection with our AI-powered services, including our medical nutrition therapy systems, personalization platforms, enterprise knowledge management solutions, conservation monitoring tools, and mental health support platforms.

Our Privacy Principles
  • Transparency: We clearly explain what data we collect and how we use it
  • Security First: We implement enterprise-grade security measures to protect your data
  • Data Minimization: We only collect data necessary for our services
  • User Control: You have rights and choices regarding your personal information
  • Purpose Limitation: We use data only for the purposes disclosed to you

2. Information We Collect

Information You Provide
  • Account Information
  • Health Information
  • Personal Preferences
  • Professional Information
  • Communication Data
  • Payment Information
Automatically Collected
  • Usage Data
  • Device Information
  • Performance Data
  • Analytics Data
Third Party Sources
  • Integration Data
  • Public Data Sources
  • Third-Party Services

3. How We Use Your Information

Service Delivery
  • Provide personalized AI recommendations and insights
  • Deliver medical nutrition therapy and health optimization services
  • Enable cross-site personalization and styling recommendations
  • Power enterprise knowledge management and chatbot responses
  • Monitor and report on conservation and wildlife protection activities
  • Provide mental health support and crisis intervention services
Service Improvement and AI Development
  • Train and improve our AI models and algorithms
  • Analyze usage patterns to enhance service performance
  • Develop new features and capabilities
  • Conduct research and development for breakthrough innovations
Communication and Support
  • Send service updates, security notifications, and important announcements
  • Provide customer support and technical assistance
  • Respond to inquiries and feedback
  • Send marketing communications (with your consent, where required)

4. Data Security and Infrastructure

Enterprise-Grade Security Measures

Encryption & Access

  • AES-256 encryption at rest
  • TLS 1.2+ encryption in transit
  • Multi-factor authentication
  • Role-based access controls

Compliance & Monitoring

  • SOC 2 Type 2 compliance
  • 24/7 security monitoring
  • Automated threat detection
  • Point-in-time recovery
HIPAA Compliance (Healthcare Services)

For medical nutrition therapy and health-related services, we maintain HIPAA compliance through Business Associate Agreements (BAAs) and handle Protected Health Information (PHI) according to HIPAA privacy and security rules.

5. Your Rights and Choices

Access and Control
  • Access your personal information
  • Update or correct inaccurate data
  • Delete your account and associated data
  • Download your data in a portable format
  • Restrict certain processing activities
AI and Marketing
  • Opt out of AI training using your data
  • Request human review of automated decisions
  • Unsubscribe from marketing communications
  • Control push notifications and alerts

6. Contact Information

Privacy Officer

StroomAI
Email: info@stroomai.com
Phone: +1 (929) 707-9902
Address: New York, NY

For EU Residents: You may also file a complaint with your local data protection authority.

7. Regional Specific Rights

California Residents (CCPA/CPRA)

You have additional rights under the California Consumer Privacy Act, including the right to know what personal information we collect and how we use it, delete your personal information, and opt out of the sale of personal information.

EU/UK Residents (GDPR)

You have rights under the General Data Protection Regulation, including data portability, the right to be forgotten, and the right to object to processing. You may also file a complaint with your local data protection authority.

Terms of Service

1. Agreement and Acceptance

These Terms of Service ("Terms") govern your use of StroomAI's AI-powered services, platforms, and technologies (collectively, the "Services"). By accessing or using our Services, you agree to be bound by these Terms and our Privacy Policy.

Service Categories Covered:
  • Medical nutrition therapy and health optimization systems
  • Cross-site personalization and styling platforms
  • Enterprise knowledge management and chatbot solutions
  • Wildlife conservation and monitoring tools
  • Mental health support platforms and crisis intervention systems

2. Service Descriptions and Limitations

Medical Nutrition Therapy Services

Our AI-powered nutrition therapy platform provides personalized meal planning and dietary recommendations.

Important Disclaimers:
  • Our services are for informational purposes and do not constitute medical advice
  • Always consult healthcare professionals before making significant dietary changes
  • We monitor drug-food interactions but cannot replace professional medical supervision
  • Emergency medical situations require immediate professional medical attention
Personalization and Styling Services

Our cross-site personalization technology provides styling recommendations and virtual try-on capabilities.

  • Recommendations are based on AI analysis and personal preferences
  • Results may vary based on individual factors and preferences
  • We partner with retailers but are not responsible for third-party merchant policies
  • Virtual try-on results are approximations and may not reflect actual fit
Enterprise Knowledge Management

Our intelligent chatbot and knowledge management systems provide information synthesis and query responses.

  • Provide information synthesis and query responses based on available data
  • Accuracy depends on the quality and completeness of input data
  • Should supplement, not replace, human judgment and expertise
  • May require integration and customization for optimal performance
Conservation Monitoring Services

Our wildlife protection and monitoring systems detect and report potential illegal activities.

  • Detect and report potential illegal activities based on available data
  • Reports are generated automatically and may require human verification
  • We cooperate with law enforcement but are not law enforcement agents
  • Detection accuracy may vary based on data quality and system capabilities
Mental Health Support Platform

Our AI-powered mental health platform provides support and resources with crisis intervention capabilities.

  • 24/7 AI crisis detection with immediate escalation protocols
  • Services supplement but do not replace professional mental health care
  • If you are in immediate danger, contact emergency services (911) immediately
  • Our platform facilitates access to professional support but does not provide therapy

3. User Responsibilities and Conduct

Account Security
  • Maintain confidentiality of credentials
  • All activities under your account
  • Promptly notify us of security breaches
  • Use strong passwords and MFA
Acceptable Use
  • Do not use for illegal purposes
  • Do not attempt to bypass security
  • Do not interfere with operations
  • Do not upload malicious code

4. Data Use and AI Training

Data Processing for Service Delivery

We process your data to:

  • Provide personalized AI recommendations and insights
  • Maintain and improve service functionality
  • Ensure security and prevent misuse
  • Comply with legal obligations
AI Model Training and Improvement
  • We may use aggregated, de-identified data to improve our AI models
  • You can opt out of data use for AI training in your account settings
  • We implement privacy-preserving techniques in our training processes
  • Our AI systems are designed to minimize bias and ensure fairness
Transparency and Control
  • We provide clear information about how our AI systems make decisions
  • You can request human review of automated decisions that significantly affect you
  • We maintain audit trails for AI decision-making processes
  • You have rights to access, correct, and delete your personal data

5. Intellectual Property Rights

StroomAI Intellectual Property

Our Services contain proprietary technologies, including patent-pending AI innovations, copyrighted software, trademarks, and trade secrets. You may not copy, modify, distribute, or create derivative works without explicit permission.

User Content and Data

You retain ownership of data and content you provide. You grant us a license to use your data as described in our Privacy Policy.

6. Privacy and Security Guarantees

Enterprise-Grade Security Commitment

Security Measures

  • AES-256 encryption at rest, TLS 1.2+ in transit
  • SOC 2 Type 2 and HIPAA compliance
  • Multi-factor authentication and role-based permissions
  • 24/7 security monitoring with automated threat response

Data Protection

  • We never sell your personal data to third parties
  • Data sharing limited to specific circumstances
  • Regular security assessments and penetration testing
  • Point-in-time recovery and encrypted backup systems

7. Service Level Agreements and Availability

Standard Services
High

Uptime Commitment

Enterprise Services
Premium

Uptime with SLAs

Crisis Services
Critical

Mental Health Crisis Detection

8. Limitation of Liability and Disclaimers

Service Disclaimers
  • Services are provided "as is" without warranties of any kind
  • We do not guarantee specific outcomes or results
  • AI recommendations are not substitutes for professional judgment
  • Third-party integrations may have separate terms and limitations
Limitation of Liability

To the maximum extent permitted by law:

  • Our liability is limited to the amount paid for Services in the preceding 12 months
  • We are not liable for indirect, incidental, or consequential damages
  • We are not responsible for decisions made based on our recommendations
  • Business interruption or data loss limitations apply

9. Pricing and Payment Terms

Service Pricing
  • Transparent pricing with no hidden fees
  • Enterprise pricing available with custom service level agreements
  • Free trials and freemium options for qualifying users
  • Volume discounts for large-scale deployments
Payment and Billing
  • Secure payment processing through certified payment providers
  • We do not store credit card information
  • Automatic billing for subscription services with advance notice
  • Refund policies detailed in specific service agreements

10. Contact Information

Contact Us

StroomAI
Email: info@stroomai.com
Phone: +1 (929) 707-9902
Address: New York, NY

For legal inquiries, customer support, or urgent security concerns.

Security & Data Protection

Executive Summary

StroomAI employs enterprise-grade security measures and industry-leading data protection technologies to ensure the highest levels of security, privacy, and compliance. Our multi-layered security approach protects sensitive data across healthcare, enterprise, and personal information domains while maintaining the performance and innovation our clients expect.

Infrastructure Security

Database Security Architecture
Isolated Infrastructure

Each project operates in completely isolated database instances, eliminating cross-contamination risks

Enterprise-Grade Database Engine

Built on battle-tested, enterprise-standard database technology with proven reliability

Network-Level Protection

Advanced network security controls restrict database access to authorized systems only

Geographic Data Residency

Flexible data storage options to meet regional compliance requirements

Encryption Standards
At-Rest Encryption

All stored data is protected using AES-256 encryption, the gold standard for data protection

In-Transit Encryption

All data transmission secured via TLS 1.2+ protocols

Application-Level Encryption

Sensitive information like access tokens and API keys receive additional encryption layers

Key Management

Secure key rotation and management practices following industry best practices

Access Control & Authentication

Multi-Factor Authentication (MFA)
  • Account-level MFA
  • Enterprise SSO integration
  • SAML & OpenID Connect support
  • Role-based access control
Row-Level Security (RLS)
  • Granular access control
  • Multi-tenant isolation
  • Dynamic permissions
  • AI-assisted policy creation

Compliance & Certifications

Healthcare Compliance (HIPAA)
  • Business Associate Agreements (BAA)
  • Protected Health Information (PHI) handling
  • Comprehensive audit trails
  • Shared responsibility model
Enterprise Security Standards
  • SOC 2 Type 2 Compliance
  • Regular security audits
  • Industry certifications
  • 24/7 security monitoring
International Privacy Laws
  • GDPR Compliance
  • CCPA/CPRA Compliance
  • Regional data laws
  • Data localization options

Monitoring & Incident Response

24/7 Security Monitoring
  • Real-time threat detection
  • AI-powered anomaly detection
  • Immediate containment procedures
  • Enterprise-grade SIEM logging
Incident Response Procedures
  • Dedicated 24/7 security response team
  • Clear escalation protocols
  • Prompt client notification
  • Advanced forensic capabilities

AI Security & Privacy

Secure AI Development
Privacy-Preserving Training

AI models trained using techniques that protect individual privacy

Bias Detection and Mitigation

Regular auditing of AI systems to ensure fairness and prevent discrimination

Model Security

Protection of proprietary AI algorithms and training data

Federated Learning Options

Advanced techniques for training AI without centralizing sensitive data

Data Use Transparency
Clear Data Usage Policies

Explicit explanation of how data is used for AI training and improvement

Opt-Out Mechanisms

User controls to prevent data use for AI training purposes

Algorithmic Transparency

Information about how AI systems make decisions affecting users

Human Review Options

Ability to request human review of automated decisions

Advanced Security Features

Database Security
  • SQL injection prevention
  • Secure connection pooling
  • Real-time query monitoring
  • Performance-optimized security
API Security
  • Auto-generated secure APIs
  • Rate limiting protection
  • Secure API key management
  • Comprehensive request validation
Real-Time Security
  • Secure WebSocket connections
  • Message authentication
  • Connection monitoring
  • Automatic disconnection

Security Best Practices for Clients

Implementation Recommendations
  • Use separate environments for development, testing, and production
  • Secure storage and rotation of API keys and credentials
  • Periodic assessment of security configurations
  • Security awareness training for all team members
Monitoring and Maintenance
  • Utilize built-in security recommendations
  • Periodic review of access permissions
  • Clear procedures for reporting security issues
  • Prompt application of security updates

Transparency & Accountability

Regular Reporting
  • Security metrics and incident statistics
  • Ongoing compliance and certification updates
  • Public transparency reports where permitted
  • Independent third-party assessments
Client Communication
  • Prompt security issue notifications
  • Clear policy update communications
  • Dedicated security team contact
  • Ongoing security guidance and resources

Questions or Concerns?

Contact our legal and security teams for any questions about privacy, terms, or security.

Contact Us

StroomAI
Email: info@stroomai.com
Phone: +1 (929) 707-9902
Address: New York, NY

For legal inquiries, customer support, or urgent security concerns (available 24/7).