Effective August 19, 2026
Nera Systems, Inc. (“Nera,” “we,” “us”) provides AI infrastructure that lets organizations run frontier AI models on their own data without exposing the underlying data to Nera or to the model provider (the “Service”). This Privacy Policy explains what personal information we collect, how we use it, and the choices you have, for anyone who uses the Service or visits nera.systems (the “Site”).
By using the Service or Site, you agree to the collection and use of information as described here.
Account and contact information: name, email address, company name, and similar details you provide to create and manage an account.
Billing information: payment and transaction data, processed by our payment processor, Stripe. See Stripe’s Privacy Policy.
Usage and query metadata: which questions were asked, which dataset schema was referenced, which model was used, and when. This does not include the underlying values in your dataset, which Nera does not have access to.
Site usage information: IP address, browser type, and similar data collected via standard web analytics when you visit nera.systems.
What we do not collect: Nera’s architecture is built so that we do not receive your underlying data values in a readable form. We don’t require or request PHI, PII, or cardholder data in readable form to deliver the Service.
We use cookies and similar technologies on our Site for core functionality and, where enabled, analytics.
We do not currently use analytics, advertising, or remarketing cookies on the Site, and we do not sell or share personal information for cross-context behavioral advertising. If we introduce analytics or other non-essential cookies in the future, we will update this section to name the specific tools in use and provide a means to opt out.
You can manage cookies through your browser settings. Most browsers let you block or delete cookies; note that blocking necessary cookies may affect Site functionality.
We do not use your customer data, the encrypted values in your datasets, to train or improve any AI model, ours or a third party’s. This is both a commitment and an architectural fact: we cannot train on data we cannot read.
We retain personal information for as long as necessary to provide the Service, comply with legal obligations, resolve disputes, and enforce our agreements. Customer content (your encrypted datasets) is retained per your account settings and deleted on request or at contract termination. Query metadata is retained to support your own use of the Service; retention periods are configurable for enterprise customers.
Nera hosts production data in United States regions on Google Cloud Platform and Microsoft Azure. We do not replicate data outside the US by default.
Nera serves customers and users located in the United States, the European Union, the United Kingdom, and the United Arab Emirates. Where personal information of individuals in the EEA, UK, or Switzerland is transferred to the United States, we rely on the European Commission’s Standard Contractual Clauses (and the UK Addendum / Swiss adaptations, as applicable), as incorporated in our DPA. For personal information subject to the UAE Personal Data Protection Law (PDPL), we process and transfer data in accordance with that law’s requirements.
Under applicable US state privacy laws, you have the right to:
To exercise these rights, contact us at info@nera.systems.
If you’re located in Europe, you may ask us to:
You may submit these requests to info@nera.systems. There is no charge for exercising your rights. You also have the right to lodge a complaint with your local supervisory authority.
If you are located in the United Arab Emirates, you have rights under the UAE Personal Data Protection Law, including rights of access, correction, deletion, restriction, objection, and portability, which you may exercise by contacting us at info@nera.systems.
We take the security of your information seriously. Details on our security architecture and practices are available at nera.systems/trust and nera.systems/security. No method of transmission or storage is 100% secure, and we cannot guarantee absolute security.
The Service and Site are not intended for anyone under 18. If we learn we’ve collected personal information from someone under 18 without appropriate consent, we will delete it.
We may update this Privacy Policy from time to time. Changes are effective when posted on this page, with the effective date updated accordingly.