Privacy Policy & Data Directive
Effective Date: September 2026 • Operon Core Systems Inc. • Governed by Operon Core™ Engine
1. Executive Summary & Zero-Training Guarantee
Operon Core Systems Inc. (“Operon Core”, “we”, “us”) is committed to the highest standards of data security, confidentiality, and governance. We adhere strictly to the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and HIPAA security standards where applicable.
2. Information We Process
Depending on the agents deployed, we process:
- Contact & Account Information: Name, professional email, company domain, phone number, and CRM identifiers.
- Operational Data: Messages, customer inquiries, appointment requests, support tickets, and call transcripts processed through integrated channels (e.g. WhatsApp, Twilio, Gmail, Slack).
- Technical Telemetry: Log payloads, API request latencies, token consumption rates, and error traces utilized strictly for runtime health verification and SLA enforcement.
3. Model Isolation & VPC Security Architecture
All data in transit is encrypted using TLS 1.3, and data at rest is encrypted with AES-256. Individual agent workflows execute within isolated virtual containers with strictly scoped, short-lived API bearer tokens and Row-Level Security (RLS) constraints.
4. Data Retention & Right to Erasure
We retain client interaction logs for 30 calendar days to enable QA review and prompt calibration, after which data is purged automatically. Clients possess the unconditional right to request complete data deletion at any moment by contacting our security desk.
5. Contacting the Security & Data Protection Officer
For data access requests, GDPR compliance queries, or security disclosures, reach out directly to our Data Protection Office at: