1. Our Commitment to You
At Indye Gyal'Z Corporation, we believe that privacy is a fundamental human right — especially for communities historically marginalized by technology. As a 100% autonomous, Afro-centered AI ecosystem founded by Indye Gyal, we design our 212 AI agents and web applications with ethical data practices at their core.
This Privacy Policy explains how we collect, use, protect, and empower you regarding your personal data when you interact with our platforms, products, and services. It complies with the General Data Protection Regulation (GDPR) (EU) 2016/679, the UK GDPR, and other applicable data protection laws worldwide.
Our Core Principles:
✦ Sovereignty: You own your data. We are stewards, not owners.
✦ Transparency: No hidden algorithms. No secret data sales.
✦ Cultural Respect: Your identity, heritage, and context are honored, not exploited.
✦ Minimal Collection: We collect only what is necessary to serve you.
✦ Community First: Your trust fuels our mission to empower the Afro-descendant diaspora.
2. What Data We Collect
We collect data only when necessary to provide, improve, or secure our services. Categories include:
- Account Data: Name, email, password (encrypted), preferred language, timezone — when you create an account.
- Usage Data: Pages visited, features used, session duration, device type — to improve UX and detect issues.
- Payment Data: Processed securely via Stripe. We never store full credit card numbers. Only transaction IDs and billing country are retained.
- AI Interaction Data: Prompts, preferences, feedback — used to personalize your experience and improve our Afro-centered models. You may opt out of model training at any time.
- Cultural Preference Data: Optional selections about heritage, language, spiritual practices — used solely to tailor culturally relevant content. Never shared or sold.
- Support Data: Messages sent to our team — retained to resolve your inquiries.
- Cookies & Tracking: Essential cookies for functionality; optional analytics cookies (you may disable via browser settings). See our Cookie Policy below.
We do NOT collect: racial/ethnic origin, religious beliefs, health data, or biometric identifiers unless explicitly provided by you for a specific, consented purpose (e.g., wellness agent personalization).
3. Legal Basis for Processing (GDPR Article 6)
Under GDPR, we process your personal data based on one or more of the following lawful grounds:
- Consent: When you explicitly agree (e.g., newsletter signup, AI training opt-in). You may withdraw consent anytime.
- Contractual Necessity: To fulfill our service agreement (e.g., delivering your purchased calendar, providing account access).
- Legitimate Interests: To improve our ecosystem, ensure security, prevent fraud, and conduct anonymized analytics — always balanced against your rights.
- Legal Obligation: To comply with tax, accounting, or regulatory requirements.
For special category data (e.g., health info in wellness agents), we rely on explicit consent or vital interests, with enhanced safeguards.
4. How We Use Your Data
- To provide, personalize, and improve your experience with our 212 AI agents and web apps.
- To process payments and deliver purchased products securely via Stripe.
- To communicate with you about your account, updates, or support requests.
- To ensure platform security, prevent abuse, and comply with legal obligations.
- To conduct anonymized, aggregated research on usage patterns — never identifying individuals — to advance Afro-centered AI ethics.
- To honor your cultural preferences and deliver contextually relevant, empowering content.
We do NOT: sell your data • share it with advertisers • use it for unrelated AI training without consent • profile you for discriminatory purposes.
5. AI Ethics & Your Data
Our Afro-Centered AI Promise
As pioneers of ethical, decolonized AI, we embed privacy and cultural respect into our models:
- Bias Mitigation: Our RE-Educ-IA-Core API actively detects and corrects racial, cultural, and gender biases — including in data processing.
- Transparency: You may request an explanation of how an AI agent uses your data to generate a response.
- Opt-Out of Training: Your interactions are not used to train public models unless you explicitly consent. Toggle this anytime in your account settings.
- Cultural Context Preservation: When you share heritage-related preferences, we use them only to enhance relevance — never to stereotype or generalize.
- Human Oversight: Critical decisions (e.g., wellness recommendations) always include human-review pathways and clear disclaimers.
Algorithmic Accountability: We publish annual transparency reports detailing bias audits, data usage statistics, and community feedback integration — available at ia-afrocentree.blogspot.com.
6. Who We Share Data With
We share data only when necessary, with strict contractual safeguards:
- Stripe: For payment processing. Stripe is PCI-DSS compliant and GDPR-certified. We receive only transaction confirmation, not card details.
- Netlify / Vercel: For hosting. Data is encrypted in transit and at rest; servers located in EU/US with GDPR-compliant Data Processing Agreements.
- GitHub: For open-source API repositories (RE-Educ-IA-Core, Refresh-AI). Only public, anonymized code is shared — never user data.
- Support Partners: Trusted vendors for email delivery or analytics, all bound by GDPR-compliant DPAs and limited to essential functions.
- Legal Authorities: Only if required by law, and only after rigorous review to protect your rights.
✦ We do NOT sell, rent, or trade your personal data to third parties.
✦ We do NOT share cultural or identity data for advertising or profiling.
7. International Data Transfers
As a global ecosystem serving the Afro-descendant diaspora, your data may be processed in countries outside your residence, including the EU, UK, US, or Caribbean nations.
When transferring data internationally, we ensure protection through:
- EU Standard Contractual Clauses (SCCs) for transfers to non-adequate countries.
- Encryption of data in transit and at rest.
- Strict access controls and audit logs for all cross-border processing.
- Community Consent: For culturally sensitive data, we seek explicit, informed consent before any international transfer.
You may request details of specific transfers or safeguards by contacting us.
8. Your Rights Under GDPR
As a data subject, you have the following rights. To exercise any, contact us at elevationpuissance.afro@gmail.com:
Right of Access
Request a copy of your personal data we hold.
Right to Rectification
Correct inaccurate or incomplete data.
Right to Erasure
Request deletion of your data ("right to be forgotten").
Right to Portability
Receive your data in a structured, machine-readable format.
Right to Object
Opt out of processing based on legitimate interests.
Right to Restrict
Limit how we use your data while a dispute is resolved.
Withdraw Consent: Where processing is based on consent (e.g., AI training), you may withdraw it anytime via your account settings or by emailing us. Withdrawal does not affect prior lawful processing.
Complaints: You have the right to lodge a complaint with your local data protection authority (e.g., CNIL in France, ICO in the UK).
9. Children's Privacy (Ti Moun Section)
Our Commitment to Young Users
Our Ti Moun section offers culturally empowering tools for children and teens. We comply with GDPR-K (children's privacy) and COPPA (US) standards:
- Parental Consent: For users under 16 (EU) or 13 (US), we require verifiable parental consent before collecting personal data.
- Minimal Data: We collect only essential info (e.g., first name, age range) to personalize learning — never location, contacts, or sensitive identifiers.
- No Behavioral Ads: Children's sections are ad-free and never used for profiling or targeted advertising.
- Safe AI Interactions: All AI responses for minors are pre-reviewed for age-appropriateness, cultural safety, and educational value.
- Parent Dashboard: Parents/guardians may access, correct, or delete their child's data anytime via elevationpuissance.afro@gmail.com.
If you believe a child has provided data without consent, please contact us immediately for prompt deletion.
10. How Long We Keep Your Data
- Account Data: Retained while your account is active + 2 years after last login (for reactivation), then anonymized or deleted.
- Payment Records: Kept for 7 years to comply with tax/accounting laws (Stripe retains per their policy).
- AI Interaction Logs: Stored for 12 months for service improvement, then aggregated/anonymized. Opt out anytime.
- Support Tickets: Retained for 3 years after resolution for quality assurance.
- Cultural Preferences: Kept indefinitely only if you consent; otherwise deleted upon account closure.
You may request early deletion of any data category by contacting us.
11. How We Protect Your Data
We implement technical and organizational measures aligned with GDPR Article 32:
- Encryption: AES-256 for data at rest; TLS 1.3 for data in transit.
- Access Controls: Role-based permissions; multi-factor authentication for staff.
- Regular Audits: Security assessments, penetration testing, and bias audits of AI systems.
- Incident Response: Documented protocol to detect, report, and resolve breaches within 72 hours (GDPR requirement).
- Staff Training: All team members trained in GDPR, cultural sensitivity, and ethical AI practices.
We have never experienced a data breach. Our 100% autonomous model eliminates third-party data brokerage risks.
12. Cookies & Tracking
We use cookies to enhance functionality and understand usage — always with your consent where required.
- Essential Cookies: Required for login, security, and core features. Cannot be disabled.
- Preference Cookies: Remember your language, theme, or cultural settings.
- Analytics Cookies: Anonymous usage statistics (via Plausible or Matomo — privacy-first tools). Opt out via browser settings or our cookie banner.
- NO Advertising/Tracking Cookies: We do not use third-party ad networks, pixels, or cross-site trackers.
Manage cookies via your browser settings or our cookie consent banner (where applicable).
Contact Us & Data Protection Officer
For privacy requests, questions, or to exercise your GDPR rights:
elevationpuissance.afro@gmail.com
Data Protection Officer (DPO): Indye Gyal (Founder)
Response Time: Within 30 days (GDPR requirement)
Language: Requests accepted in English, French, or Creole
Main Site: my-empowerment-indyegyal.netlify.app
14. Updates to This Policy
We may update this Privacy Policy to reflect changes in our ecosystem, technology, or legal requirements. When we do:
- We will post the updated policy on this page with a new "Last Updated" date.
- For material changes affecting your rights, we will notify you via email or in-app notice.
- Continued use of our services after updates constitutes acceptance of the revised policy.
We encourage you to review this policy periodically. Archived versions are available upon request.