Privacy Policy

Your data is yours. Period.

Status: Final draft v1.0 — pending legal review. This policy reflects Aura's privacy commitments and will be presented to users at launch. Not yet reviewed by a privacy lawyer.

1. Our Privacy Philosophy

Aura is built on the principle that your data is yours. We process telemetry on your device, not on our servers. You control what's shared, with whom, and for how long. We don't sell data. We don't build advertising profiles. We don't optimize for engagement.

2. What Data We Collect

2.1 Data That Stays On Your Device (Not Sent to Aura)

Data TypePurposeShared?
Camera feed / media recordingsCapturing moments for aura attributionOnly if you explicitly upload
Face detection dataIdentifying people in recordingsOnly if you explicitly upload
Geolocation (GPS)Correlating recordings with eventsOnly if you explicitly upload
IP address (local)Device identification within local networkOnly if you explicitly upload
Bluetooth proximitySame-room detectionOnly if you explicitly enable

Key point: The Farm processes all telemetry on-device. Nothing leaves your device until you choose to upload a recording for aura point attribution.

2.2 Data Sent to Aura Servers (When You Upload)

Data TypePurposeRetention
Recording metadata (timestamp, geolocation, IP)Validating attributions, correlating with other attendeesUntil you delete the recording or your account
Face recognition embeddings (not raw images)Matching faces across recordingsUntil you delete the recording or your account
Aura point attributionsBuilding your reputation score and feedIndefinitely (this is your public reputation)
Your identity (public key, display name, avatar)Identifying you on the networkUntil account deletion

2.3 Data We Never Collect

3. How We Use Your Data

PurposeData UsedLegal Basis
Attributing aura points to the right personFace embeddings, geolocation, timestampsLegitimate interest (core service functionality)
Validating attributions via community consensusRecording metadata, validator identitiesLegitimate interest (core service functionality)
Displaying your reputationPoint attributions, display name, avatarConsent (you choose what to upload and claim)
Improving the serviceAnonymized usage patternsLegitimate interest
Legal complianceAny data, as required by lawLegal obligation

We do not: sell your data, use it for advertising, build shadow profiles, or share it with data brokers.

4. Your Control & Rights

4.1 Before Upload

4.2 After Upload

4.3 GDPR Rights (EU/UK Users)

You have the right to access, rectify, erase, restrict, port, and object to processing of your data. Contact privacy@ifarm.club. We respond within 30 days.

5. Data Sharing & Third Parties

RecipientWhatWhy
Other Aura usersDisplay name, avatar, aura score, feed itemsThis is the product — your reputation is visible to the community
Event attendeesRecording metadata (for validation)Community consensus requires transparency
Payment processor (TBD)Payment detailsIf Aura ever processes payments
Law enforcementAs required by valid legal processLegal obligation

No other sharing. Period.

6. Data Security

7. Data Retention

DataRetention Period
Recordings (metadata + embeddings)Until you delete, or 2 years of inactivity
Point attributions (your reputation)Indefinitely (this is your permanent record)
Account data (profile, keypair)Until account deletion
Anonymized analyticsIndefinitely
Server logs90 days

8. Children's Privacy

Aura is not intended for users under 13 (or the applicable age of digital consent in your jurisdiction). We do not knowingly collect data from children.

9. International Data Transfers

Aura servers may be located in the United States or other jurisdictions. By using Aura, you consent to data transfer to these locations. We ensure appropriate safeguards for transfers from the EU/UK.

10. Changes to This Policy

We will notify users of material changes via in-app notification, email (if provided), and 30-day notice before changes take effect. Continued use after changes constitutes acceptance.

11. Contact

Email: privacy@ifarm.club

Appendix A: Biometric Data Notice

Aura processes face recognition embeddings, which may be considered biometric data under some laws (e.g., Illinois BIPA, GDPR). Key facts:

  1. On-device processing: Face detection and embedding generation happen entirely on your device. Raw face images are never uploaded.
  2. Consent: You must explicitly enable face recognition. It is off by default.
  3. Purpose-limited: Embeddings are used solely for matching faces across recordings to attribute aura points.
  4. Deletion: Deleting a recording deletes its associated embeddings.
  5. No sale: Biometric data is never sold, leased, or traded.