Trust & Security

Your data. Your rules.

NAMEDexists to return the value of personal data to the people who create it. That only works if you trust us with it. Here's exactly how we handle your data.

What we collect

Only what you give us.

Identity fields (name, email, demographics), verification documents when you opt into a higher tier, and your contribution history — what you shared and when.

How we store it

Encrypted at rest.

AES-256 across the database. Keys rotate on a fixed schedule and live in a separate key store from the data itself.

Encrypted in transit.

TLS 1.2 minimum. Older protocols are not allowed.

Tier integrity.

Verification documents and the tier they unlock live in a separate, audited table. Downgrading a tier does not delete the verification history — we keep the receipt of when you were verified.

How long we keep it

Two tiers, two lifetimes — individual records purge on a short window; anonymized aggregates persist for the multi-year horizon of the marketplace.

Individual records — 90-day purge.

Verification documents, identity fields, contribution history, and any other row attached to you as an individual are purged 90 days after the record settles or your account closes.

Anonymized aggregate demographic outputs — retained for years.

Once individual records are purged, the demographic aggregates derived from them — age range, location band, gender, income band — continue to live in our aggregate store for years. Exact horizon: to be confirmed by buyer demand research before final publication.

How we share it

We never sell raw data. We never sell you.

Anonymized tranches only.

Buyers see aggregated records grouped by data type and verification tier. Individual identities are stripped before any buyer receives anything.

Selective licensing.

Each license is scoped to a specific use case (polling, insurance, AI training, etc.). Buyers must declare the use case before access is granted, and we audit it.

Re-share block.

Buyers cannot re-sell or redistribute tranche data without an explicit written license amendment. Violations terminate the contract.

How you control it

Pause or delete at any time.

One-click pause, full account deletion from your dashboard. Deletion removes your records from active databases; verification documents are purged within 30 days.

Regulatory posture

GDPR & CCPA compliant.

Access, deletion, portability, and opt-out honored in every region we operate in.

State privacy laws (US).

Compliant with Virginia, Colorado, Connecticut, Utah, and the rest as they come online.

No KYC reuse.

Verification documents collected for licensing tiers are siloed and never reused for any other purpose.

What we don't do

We don't buy data from brokers.

We don't run our own ads.

We don't sell raw data, ever.

We don't put you on a list.

Questions about our security posture? Email us at named@polsia.app