1. Introduction
This Privacy Policy explains how Nera Systems Inc. (“Nera,” “we,” “us,” or “our”) collects, uses, and shares information when you use Nera SecureAnalytics (the “Service”), our web-based application that lets you analyze your data using large language models without exposing the underlying contents of that data to those models.
This policy applies only to Nera SecureAnalytics. Information collected through our marketing website at nera.systems is not covered by this policy.
By creating an account or otherwise using Nera SecureAnalytics, you agree to the practices described here. If you do not agree, please do not use the Service.
Nera Systems Inc. is based in California, United States. The Service currently operates in early-access (“demo”) mode, which materially affects how your data is handled — please read Section 4 carefully.
2. Information We Collect
Information you provide
- Account information. When you sign up, we collect your email address and a password. Your password is stored only as a salted hash and is never visible to us in plaintext.
- Uploaded files. When you upload files (including spreadsheets, CSV, and xlsx) for analysis, we receive and store the contents of those files. See Section 4 for details on how files are stored in the current demo vs. after general availability.
- Chat and query history. We store the natural-language questions you ask, the answers and results returned to you, and the conversation history associated with your account.
- Communications. If you contact us for support or feedback, we keep a record of that correspondence.
Information we collect automatically
- Service logs. Our servers record technical data when you use the Service, including IP address, browser type, device information, the pages and features you access within the Service, timestamps, and error reports.
- Cookies and session storage. We use cookies and similar technologies to keep you signed in and to remember session state. We do not currently use third-party advertising or analytics cookies.
3. How We Use Your Information
We use the information we collect to:
- Provide, operate, and maintain Nera SecureAnalytics.
- Authenticate your account and keep it secure.
- Process your queries and return analytical results to you.
- Respond to your inquiries and provide customer support.
- Detect, investigate, and prevent abuse, fraud, and security incidents.
- Debug, improve, and develop the Service.
- Comply with applicable legal obligations.
4. Important: Current Demo Architecture
Nera SecureAnalytics is currently in early-access demo mode. The way your data is handled today differs from the planned generally-available release in two significant ways: where files, data and keys are stored and which API keys are used to call large language model providers. We are providing this information upfront so that you can make informed decisions about what data to upload during the demo period.
Demo (current)
- Your uploaded files are stored on Nera-operated servers in the United States.
- Authorized Nera personnel may have technical access to stored files, chat history, and query results — subject to internal access controls — in order to operate, debug, and improve the Service.
- Calls to large language model providers (currently OpenAI, Anthropic, and Google) are routed through Nera using API keys owned by Nera. We send the LLM provider only natural-language questions and derived results (such as aggregates, statistics, or summaries). We do not send the raw contents of your uploaded files to LLM providers. See Section 5.
Planned general-availability release
- The Nera protection service will be hosted in your environment. Nera Systems Inc. will store only encrypted copies of your files and will not have the ability to decrypt them.
- You will be able to use your own API keys to call OpenAI, Anthropic, Google, or other supported LLM providers, so that those calls are governed by your own contractual relationship with the provider rather than ours.
Please do not upload to the demo any data you would not be comfortable having Nera personnel access.
If your use case requires the full protection model described in our marketing materials, please contact us about general-availability access.
5. How Information Is Shared
We do not sell your personal information. We share information only as described below:
- Large language model providers. When you submit a query, SecureAnalytics sends a natural-language question and any derived query results to the LLM provider being used (currently OpenAI, Anthropic, or Google). We do not send the raw contents of your uploaded files to LLM providers. The LLM provider’s handling of the data we send them is governed by that provider’s policies. In the demo, these calls are made using Nera’s API keys; at general availability, you will be able to use your own.
- Cloud infrastructure. Nera SecureAnalytics currently runs entirely on Google Cloud Platform in the United States. Specific components of the Service may be relocated to other infrastructure to meet a customer’s requirements or other business needs; we will update this policy if such changes materially affect how your information is handled.
- Other service providers. We may use a small number of additional vendors to operate the Service (for example, transactional email delivery for account verification and notifications). These vendors process data only on our instructions.
- Legal and safety. We may disclose information when we believe in good faith that disclosure is required to comply with applicable law or valid legal process, or to protect the rights, safety, or property of Nera, our users, or others.
- Business transfers. If Nera is involved in a merger, acquisition, financing, or sale of assets, your information may be transferred as part of that transaction, subject to standard confidentiality obligations.
6. Data Storage and Security
Your information is stored on servers located in the United States.
We use industry-standard administrative, technical, and physical safeguards to protect your information, including encryption in transit (TLS), access controls limiting who at Nera can reach production systems, and regular review of our security practices.
No system is perfectly secure. You are responsible for keeping your account password confidential and for the activity that occurs under your account. If you believe your account has been compromised, contact us immediately at info@nera.systems.
7. Data Retention
We retain your account information for as long as your account is active. Uploaded files, conversation history, and query results are retained while your account is active and for as long as needed to provide the Service to you.
You may request deletion of your account or specific data at any time by emailing info@nera.systems. After deletion, we may retain limited information for legal, accounting, fraud-prevention, or backup purposes for a reasonable period before it is permanently removed from our systems.
Service logs are typically retained for up to 12 months.
8. International Users
Nera SecureAnalytics is operated from the United States, and all data is currently stored and processed in the United States. If you access the Service from outside the United States, you understand that your information will be transferred to, stored, and processed in the United States, where data-protection laws may differ from those of your jurisdiction. By using the Service, you consent to that transfer.
9. Your Rights and Choices
Regardless of where you live, you may contact us at info@nera.systems to:
- Access the personal information we hold about you.
- Request correction of information that is inaccurate or out of date.
- Request deletion of your account and the data associated with it.
- Receive a copy of your account data in a portable format.
- Object to or restrict certain processing.
We will respond to verified requests within a reasonable time. We may need to verify your identity before acting on a request.
If you are located in the European Economic Area, the United Kingdom, or California, you may have additional rights under local law. We honor those rights to the extent they apply, even though Nera does not currently make formal compliance commitments under the GDPR or CCPA. You may also have the right to lodge a complaint with your local data-protection authority.
10. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will update the “Effective” date above and, where appropriate, notify you through the Service or by email. Your continued use of the Service after the updated policy takes effect constitutes acceptance of the changes.
11. Contact Us
If you have questions about this Privacy Policy or our data practices, contact us at: