Privacy Policy & Synthetic Data Governance
Comprehensive disclosure of Dansocial Inc.'s data minimization standards, sandboxed ambient summon architecture, and statutory consumer rights across the United States and Canada.
Do Not Sell or Share My Info
Exercisable under CCPA/CPRA. One-click opt-out of cross-context behavioral targeting and diagnostic training aggregation.
Telemetry & Audit Logs
Obtain an encrypted machine-readable active (JSON/CSV) of ambient query tokens, resolved merchant checkouts, and device fingerprints.
Cryptographic Deletion
Execute irreversible zeroization of your Dansocial identity graph, token vaults, paired social handle IDs, and merchant proxy keys.
Overview & Our Privacy Commitment
Dansocial Inc. ("Dansocial", "we", "us", or "our") designs and deploys Aruta, an autonomous synthetic commerce agent operating across proprietary mobile/web applications, embedded browser extensions, and conversational platforms (including Instagram Direct, TikTok Direct Messages, WhatsApp, Telegram, and Apple Messages via SMS proxy).
Traditional internet search and commerce platforms monetize surveillance capitalism: tracking your digital footprint, categorizing your psychological profile, and selling targeted auctions to advertisers. Dansocial rejects this paradigm. Our foundational doctrine is Synthetic Sovereignty: we do not trade, broker, or sell personal identifiers or contextual query histories. We engineer autonomous agents that complete real-world purchasing actions on your behalf with mathematical telemetry boundaries.
Information We Collect
We collect information strictly when necessary to resolve autonomous shopping prompts, verify shipment parameters, and prevent fraud across global merchant gateways:
@Aruta within third-party messaging apps, our intake webhook receives a payload containing your unique platform user ID, the timestamp, and strictly the isolated message containing the summon trigger. We capture no prior conversational context, no profile media files, and no metadata from unmentioned conversation participants. How We Process & Use Your Information
Dansocial processes ingested telemetry under legitimate interest, statutory contractual necessity, and explicit opt-in consent for the following bounded objectives:
- Autonomous Checkout Dispatch: Resolving product URLs, querying real-time inventory indices, calculating carrier shipping rates, and passing one-time merchant execution tokens.
- Risk Modeling & Anti-Abuse: Detecting bot manipulation, counterfeit listings, stolen credentials, and anomalous multi-destination checkouts.
- Statutory Compliance: Remitting accurate state sales taxes (e.g., California CDTFA, Streamlined Sales Tax protocols) and cross-border Canadian GST/HST calculations.
Zero-Leak Social Summon Architecture
Patent ProtectedThe central privacy concern with third-party social agent integrations (e.g., inviting an AI assistant into a WhatsApp group, Instagram direct chat, or TikTok comment chain) is the risk of ambient eavesdropping surveillance. Dansocial resolves this through our proprietary Ephemeral Ingress Enclave:
We never maintain persistent listening sockets. After an inquiry is answered or a transaction is confirmed, the enclave memory instance dissolves immediately.
Sharing & Third-Party Transfers
Dansocial does not monetize consumer profiles. We transmit data strictly to authorized sub-processors required to complete user-commanded commerce executions:
| Entity / Category | Data Elements Transferred | Purpose | Retention |
|---|---|---|---|
| Authorized Merchants (e.g., Shopify, Amazon, Direct Brands) | Shipping address, recipient name, encrypted checkout nonce | Order fulfillment & tracking delivery | Merchant Privacy Policy Governed |
| Payment Facilitators (Stripe, Apple Pay) | Billing postal code, tokenized credit card authorization | PCI-DSS authorization & fraud verification | Statutory 7-Year Tax Ledger |
| Cloud Enclave Infrastructure (AWS Nitro / Google Cloud) | Encrypted memory states, temporary query tokens | Real-time LLM inference & web parsing | Volatile RAM only (0 seconds persistent) |
Cookies, Tracking & Ambient Session Tokens
Aruta web applications do not deploy cross-site tracking pixels (such as Meta Pixel or third-party ad networks). We employ strictly functional and security tokens:
California Consumer Privacy Act (CCPA / CPRA) Disclosures
This section applies exclusively to residents of California, Colorado, Virginia, Connecticut, and Utah under their respective comprehensive consumer privacy statutes.
Canadian Consumer Protections (PIPEDA)
In accordance with Canada's Personal Information Protection and Electronic Documents Act (PIPEDA) and provincial statutes (Alberta PIPA, BC PIPA, Quebec Law 25), Dansocial adheres to the 10 Fair Information Principles.
Canadian users have the right to contest the accuracy and completeness of their personal information and have it amended appropriately. Any cross-border transmission of Canadian resident data is bound by contractual terms ensuring protection equivalent to Canadian standards.
Cross-Border Data Transmission
Dansocial's primary data centers and confidential computing nodes reside in the United States. If you interact with Aruta from Canada, Europe, or other international regions, your information will be transmitted, processed, and safeguarded within the United States using Standard Contractual Clauses (SCCs) and cryptographic transit layers (TLS 1.3).
Data Retention & Cryptographic Deletion
We apply an automated lifecycle to all ingested telemetry:
- Unclaimed Conversational Sessions: Permanently purged after 14 days of inactivity.
- Resolved Transaction Records: Retained for 7 calendar years solely to fulfill IRS, state tax, and merchant dispute resolution mandates.
- Zeroization Command: When an erasure request is confirmed, Dansocial deletes all key-pair associations within our KMS vault, rendering remaining database backups mathematically non-recoverable.
Children's Privacy (COPPA & Age Restrictions)
Aruta is an autonomous purchasing agent and is strictly restricted to individuals aged 18 and older (or the age of majority in your jurisdiction). We do not knowingly solicit, collect, or store personal information from children under 13 under the Children's Online Privacy Protection Act (COPPA), nor minors aged 13–16 without explicit affirmative consent.
If Dansocial discovers that an account has been initialized by an unauthorized minor, all associated records are purged immediately from our directories.
Security Measures & SOC 2 Type II Safeguards
Dansocial implements defense-in-depth protocols audited annually by independent AICPA-accredited assessors:
Changes to this Privacy Policy
We reserve the right to amend this document to reflect changes in regulatory directives, machine learning paradigms, or new conversational platform integrations. When material adjustments occur, we will dispatch an advisory notification through registered Aruta mobile interfaces 30 days prior to the effective date. Continued usage constitutes acceptance.
Contact Dansocial's Data Protection Officer
To exercise statutory rights, file formal inquiries, or escalate data privacy disputes, reach out directly to our dedicated legal & privacy team: