Legal Policy

Privacy Policy

Last updated: July 2026

At Truvaxia, we are committed to protect your personal identity and device telemetry with zero-knowledge cryptographic safeguards. This Privacy Policy details how we process transaction verification signals and biometric metadata.

Biometric Consent Notice

Liveness verification requires ephemeral facial data processing. We do not store raw images. Facial maps are instantly compiled into encrypted mathematical markers and destroyed immediately after scoring.

1. Data Collection

We gather essential telemetry inputs directly from your browser environment during sensitive workflow checkpoints. These telemetries are strictly required to evaluate spoofing risks and identify synthetic bot sessions:

  • Device characteristics (OS version, hardware indicators, resolution parameters).
  • Network environment indicators (IP addresses, route signatures).
  • Behavioral patterns (keystroke metrics, navigation trajectories).

2. Biometric Processing

Our biometric liveness challenges process front-facing image streams. These image captures are processed locally within sandbox memory buffers. Our serverless validation stack converts the spatial facial geometry into an anonymized mathematical vector before scoring.

3. Retention Policies

General telemetry logs are stored in an aggregated, non-identifiable state for a maximum period of 30 days to optimize detection accuracy. Ephemeral biometric vectors generated during a verification check are permanently destroyed within 10 seconds of scoring.

4. Information Sharing

We do not sell, rent, or lease your telemetry history or biometric records to third-party brokers. Verification insights are transmitted strictly back to the enterprise partner hosting the pipeline using secure callbacks.

5. Your Privacy Rights

You retain the right to query, export, or request immediate eradication of telemetry records. For deletion queries, contact us at privacy@truvaxia.com.