Privacy Policy
Effective Date: September 1, 2026
Provider: Authentically Serving Freedom LLC ("ASF," "we," "us," or "our")
Applicability: This Privacy Policy applies to all websites, applications, digital platforms, and services operated by ASF, including the Freedom Legacy Vault Service and associated digital sovereignty infrastructure.
1. Information We Collect
We collect information directly from you, automatically when you interact with our Services, and from authorized third-party integrations:
- Account Identity & Contact Information: Name, business email address, phone number, billing address, and account login credentials.
- Billing & Transaction Data: Payment details, billing history, and transaction metadata. (Note: Credit card payments are processed securely by our payment sub-processor; ASF does not store raw payment card data).
- Vault & Application Data: Documents, files, metadata, and communications uploaded or submitted by you or your authorized users to our platforms.
- Technical & Usage Metadata: IP addresses, device identifiers, browser types, log activity, and session interaction metrics collected via system logs and operational tools.
2. How We Use Your Information
We process personal data strictly to deliver, secure, and manage our Services, specifically to:
- Provision and manage subscriber accounts and persistent vault infrastructure.
- Execute transactions, process billing, and manage merchant operations.
- Authenticate user access and enforce role-based permissioning.
- Deliver transactional communications, system notifications, and operational updates.
- Comply with legal, regulatory, and statutory compliance obligations (including notarization and audit log standards).
- Maintain network security, prevent fraudulent activity, and ensure zero cross-tenant data commingling.
3. Data Architecture & Security Standards
ASF implements rigorous administrative, physical, and technical safeguards designed to protect your data against unauthorized access, destruction, loss, alteration, or disclosure:
- Encryption Controls: Data in transit is encrypted using Transport Layer Security (TLS 1.2 or higher). Data at rest within our persistent storage architecture is secured using Enterprise-Grade Advanced Encryption Standard with 256-bit keys (AES-256).
- Post-Quantum Security Envelope: High-integrity notarization and audit workflows processed through our Executive Digital Notary (EDN) security pipeline apply a secondary Post-Quantum Signature Wrapper utilizing Stateless Hash-Based Signatures (Sphincs+ / SLH-DSA) executed within FIPS 140-2 Level 3 Hardware Security Modules. This provides Mathematical Integrity Verification designed to withstand future quantum decryption threats.
- Tenant Isolation: All subscriber accounts are provisioned within dedicated, logically segregated tenant partitions or silos, ensuring complete data isolation.
4. Statutory vs. Commercial Retention
ASF explicitly differentiates between statutory retention mandates and commercial user data lifecycles:
- Statutory Notarial Records (WA RCW 42.45): Where Services involve Remote Online Notarization (RON) or notarial acts, mandatory transactional journals, audiovisual recordings, and verification metadata are retained for a statutory period of ten (10) years in compliance with Washington State law. Statutory records cannot be modified or purged prior to statutory expiration.
- Commercial Vault Data: Non-statutory persistent vault records hosted via the Freedom Legacy Vault Service adhere to the commercial lifecycle set forth in Section 12.
5. Authorized Sub-Processors & Third-Party Disclosure
ASF does not sell, rent, or trade personal data to third parties or data brokers. To deliver our infrastructure, we share data with vetted B2B sub-processors bound by contractual data protection agreements no less restrictive than this policy:
| Sub-Processor | Primary Function | Data Handled |
|---|---|---|
| My Life and Wishes, Inc. (MLW) | Persistent Secure Vault Infrastructure | Encrypted Vault Payloads / Account Metadata |
| Proof (Notarize, Inc.) | Remote Online Notarization Gateway | Transient Transactional PII / Session Logs |
| Paubox | Encrypted Email Transmission | Transactional Notifications & Communication |
| Stripe, Inc. | Payment Processing & Billing | Billing Contact & Payment Metadata |
| Neon Inc. | Relational Application Database | Account Identity & System Metadata |
| Vercel Inc. | Web Infrastructure & Hosting | Transient Application Traffic |
| Notary Calendar | Operational Scheduling | Booking Metadata |
| Google Workspace | Cloud Operations & Communication | Support & Administrative Communications |
| Feedbucket | Interface Feedback Interface | Session Logs (No Vault Data) |
6. Your Data Rights & Choices
Depending on your jurisdiction, you have specific rights regarding your personal data:
- Access & Portability: Request access to or copies of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete personal information.
- Deletion / Erasure: Request the deletion of your personal data, subject to the statutory retention obligations described in Section 4.
- Opt-Out: Manage communication preferences and opt out of marketing communications at any time.
7. Data Subject Requests & Inquiries
To exercise any of your data rights, or if you have questions regarding our data handling practices, please submit a written request to our compliance team:
Email: privacy@authenticallyservingfreedom.net
Mailing Address: Authentically Serving Freedom LLC, Attn: Privacy & Data Protection, United States.
8. International Data Transfers
ASF stores and processes data primarily within secure data centers located in the United States. If you access our Services from outside the United States, you acknowledge and consent to the transfer, processing, and storage of your information within U.S. jurisdictions governed by federal and state privacy statutes.
9. Children's Privacy
Our Services are designed strictly for enterprise, corporate, and adult individual use. ASF does not knowingly collect or solicit personal data from children under sixteen (16) years of age. If we learn that we have inadvertently collected data from a child under 16, we will delete it promptly.
10. Third-Party Web Links & Services
Our platform may contain links to third-party sites or integrations not owned or controlled by ASF. We are not responsible for the privacy practices, security postures, or content of third-party platforms. We encourage you to review the privacy policies of any third-party service you visit.
11. Changes & Updates to This Policy
ASF reserves the right to update or modify this Privacy Policy at any time to reflect operational, legal, or regulatory changes. Material updates will be posted to our site with an updated "Effective Date." Continued use of the Services following an update constitutes acceptance of the revised policy.
12. Freedom Legacy Vault Service & Sub-Processor Data Handling
12.1 Overview & Architecture
The Freedom Legacy Vault Service is a persistent digital vault solution provided by Authentically Serving Freedom LLC ("ASF"). Persistent vault hosting infrastructure is powered by our authorized cloud infrastructure sub-processor, My Life and Wishes, Inc. ("MLW").
All vault contents, files, and customer data uploaded to the Freedom Legacy Vault Service are protected at rest using Enterprise-Grade Advanced Encryption Standard with 256-bit keys (AES-256) and in transit using Transport Layer Security (TLS 1.2 or higher). Each customer account is provisioned within a logically segregated, isolated tenant partition to prevent unauthorized cross-account data exposure.
12.2 Account Security & Password Recovery
ASF and its sub-processors utilize managed cryptographic controls supported by secure, multi-factor account recovery protocols. To ensure account access is never permanently lost due to forgotten credentials, subscribers can initiate authenticated password reset procedures.
By utilizing the Freedom Legacy Vault Service, you acknowledge and agree that account recovery features are managed through secure identity verification workflows in accordance with enterprise security standards.
12.3 Data Retention & Cancellation Lifecycle
Upon the cancellation, non-renewal, or termination of your Freedom Legacy Vault Service subscription, your account and stored vault data adhere to the following lifecycle protocols:
- Standard 180-Day Grace Period (Default): Canceled accounts enter a suspended, read-only grace period for one hundred eighty (180) calendar days following the effective cancellation date. During this window, you retain read-only view access to your stored files and may reactivate your subscription at any time.
- Permanent Purge Execution: Upon the expiration of the 180-day grace period, all stored vault contents, database records, metadata, and backups are automatically, permanently, and unrecoverably purged across primary and secondary storage arrays.
- Administrative Purge Options: ASF reserves the right to issue a formal administrative request to execute an expedited hard purge of a specific tenant partition prior to the expiration of the 180-day grace period where required by law, regulatory compliance, or formal legal agreement.
12.4 Sub-Processor Transparency & Relationship
ASF serves as the primary Data Controller and Merchant of Record for all customer relationships, billing, and subscription management. MLW acts strictly as an authorized sub-processor under a signed Data Processing Agreement (DPA) and is bound by contractual obligations no less stringent than those set forth in this Privacy Policy.