VERYXAI Infrastructure OS

Privacy Policy

JNN Global Ltd (trading as “VERYX”, part of Groupe Nseya Digital) · Updated 12 June 2026

1. Controller and contact

JNN Global Ltd (trading as “VERYX”, part of Groupe Nseya Digital) is the controller for platform account data and a processor for the business data your organisation puts into its workspace. Contact for all privacy matters: support@veryx.io.

2. What we collect

Account and identity data: name, work email, phone, job title, role, organisation and manager mapping. Usage data: sign-ins, actions taken (recorded in the audit trail), ACU consumption, device language and region (used only to set your display language and currency). Payment metadata: invoice and transaction references — card details are handled by our payment providers (Stripe, BitriPay) and never stored by us. AI interaction data: the inputs and outputs of agent runs, scoped to your workspace.

3. Why we process it (lawful bases)

Performing our contract with your organisation (operating accounts, billing, support); legitimate interests (security, fraud prevention, service improvement); legal obligations (accounting, tax, responding to lawful requests); and consent where required.

4. AI processing

AI requests are processed through our provider abstraction (Anthropic Claude primary; other providers when configured). Your data is not used to train foundation models. AI memory is tenant-scoped and never crosses workspaces. See the AI Usage & Data Policy.

5. Retention

Workspace data is retained while your subscription is active and for an export window after termination. Audit and event records are tamper-evident and retained for the period required for legal, security and accounting purposes. Backups are point-in-time and roll off on a fixed schedule.

6. Sharing and transfers

We share data only with the sub-processors needed to run the service (hosting, database, payment gateways, AI providers, email delivery), each under contract. Where data leaves the UK, we rely on adequacy decisions or appropriate safeguards such as the UK IDTA / standard contractual clauses.

7. Your rights

Under UK GDPR you may request access, rectification, erasure, restriction, portability and object to certain processing. Write to support@veryx.io; we respond within one month. You may also complain to the Information Commissioner’s Office (ico.org.uk).

8. Security

Encryption in transit, encrypted managed storage, least-privilege role enforcement, MFA for administrators, immediate session revocation, hash-chained audit and event records, and strict tenant isolation. See the Security & Data Protection summary.

Questions about this policy: support@veryxjnn.com · All policies