Privacy Policy
Status: Draft — pilot document page. This is the first content record rendered from MDX (
content/privacy.mdx). The marketing privacy landing page (/privacy) summarizes these commitments; this document is the full legal text surfaced at/privacy-policy.
Last updated: August 22, 2026
AVENGE ("we", "us", "our") operates a community-powered video intelligence platform that helps solve crimes without mass surveillance. This Privacy Policy explains what data we collect, how we process it, how long we keep it, and the rights you have over it.
1. Our foundation: privacy by design
AVENGE was built from the ground up to prove that community safety and privacy are not mutually exclusive. Every design decision starts with the question: "How do we protect user privacy?" The commitments on our privacy overview are summarized here in full.
2. What we collect
- Metadata, not raw video. Our edge devices run AI models locally and extract only metadata — object detections, license plate readings, and timestamps. Raw video stays on your network unless you explicitly share it.
- Account information. When you join the waitlist or register, we collect your email address, an optional name, zip code, and an optional camera count so we can plan coverage areas.
- Investigation records. When you consent to share footage for an investigation, we store the shared evidence package, your consent record, and an immutable audit trail of who accessed it and when.
We do not collect raw video by default. We do not sell your data. We do not have secret data-sharing agreements with federal agencies.
3. How we process data
Processing happens edge-first. AI object detection, license plate recognition, and tracking run on your local device (a Raspberry Pi 5 with a Hailo-8 accelerator, or a Jetson Orin Nano). Only the resulting metadata travels to our servers. Cross-camera correlation and investigation tooling run in the cloud against that metadata — never against your raw footage without your explicit, per-investigation consent.
4. Retention
| Data type | Retention | | --- | --- | | Raw video (if you choose to share) | 30 days maximum | | Metadata (detections, plates, timestamps) | 1 year | | Face data | 90 days | | Audit logs | 7 years (immutable) |
You can request deletion of your data at any time. We remove it from active systems immediately and from backups within 30 days.
5. Your rights
You have the right to access, correct, export, and delete your data. Under CCPA (California), GDPR (EU), and BIPA (Illinois) you may exercise these rights with a one-click deletion request from your dashboard or by emailing privacy@avenge.io. We will verify your identity before acting on a request.
6. Community control
Your community decides access policies. There are no secret federal agreements and no bulk data sales. Quarterly transparency reports detail platform-wide usage: requests made, approvals granted, and outcomes.
7. Security
- Encryption: AES-256 at rest, TLS 1.3 in transit.
- Authentication: OAuth 2.0 with multi-factor authentication.
- Audit logging: Immutable, 7-year retention.
- Evidence chain: Every shared clip is Ed25519-signed at the edge against a factory-burned device key — tamper-evident and court-ready.
8. Compliance
We comply with the strictest privacy regulations and maintain transparency through open-source code (AGPLv3). SOC 2 Type II is in progress.
9. Contact
Questions about this policy or your data? Email privacy@avenge.io and we will respond within 30 days.