Privacy Policy
Last updated: March 31, 2026
1. Introduction
Daedalus Development Group ("DDG," "we," "us," or "our"), a company operating under the laws of the State of Florida, United States, operates the Aegis Platform ("Platform"), a multi-service enterprise software-as-a-service ("SaaS") solution accessible at diligentcyber.com and related subdomains (collectively, the "Service").
This Privacy Policy describes how we collect, use, disclose, and protect the personal information of individuals who visit our website, use our Platform, or otherwise interact with our Service. This policy applies to all users, including platform administrators, tenant administrators, agents, clients, and website visitors.
By accessing or using the Service, you acknowledge that you have read, understood, and agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree, please do not use the Service.
2. Information We Collect
2.1 Information You Provide Directly
We collect information that you voluntarily provide when you:
- Create an account or register for the Service (name, email address, phone number, company name, role)
- Complete your user profile (professional credentials, biography, headshot photograph)
- Submit lead intake forms, claim documentation, mortgage pre-qualification applications, or business consultation requests
- Communicate with us or other users via the Platform's messaging system
- Submit support requests or provide feedback
- Subscribe to marketing communications
- Process payments or manage billing information
2.2 Information Collected Automatically
When you access or use the Service, we automatically collect:
- Device and browser information: IP address, browser type and version, operating system, device identifiers, screen resolution
- Usage data: Pages viewed, features used, click patterns, time spent on pages, search queries, referral sources
- Log data: Server logs including access times, error logs, and API call records
- Cookies and similar technologies: Session cookies, authentication tokens, and local storage data used to maintain your session and preferences
2.3 Information from Third Parties
We may receive information from:
- IDX/MLS providers: Real estate listing data, property information, and market data through authorized MLS data feeds
- Authentication providers: If you sign in using a third-party service (e.g., Google OAuth), we receive your name, email, and profile picture as authorized by you
- Payment processors: Transaction confirmations and billing status (we do not store full payment card numbers)
2.4 Sensitive Information
Certain service divisions may involve the collection of sensitive information:
- Claims division: Insurance policy details, damage documentation, claim history, settlement information
- Mortgage division: Financial information, credit-related data, income documentation, and loan application details
- Real estate division: Property ownership records, transaction history, and financial details related to property purchases
We handle all sensitive information with enhanced security measures and limit access to authorized personnel only.
3. How We Use Your Information
We use collected information for the following purposes:
- Service delivery: To provide, maintain, and improve the Platform and its features
- Account management: To create and manage user accounts, authenticate users, and enforce role-based access controls
- Communication: To send service-related notifications, respond to inquiries, and provide customer support
- Multi-tenant operations: To manage tenant isolation, data segregation, and per-tenant configurations
- Analytics: To analyze usage patterns, generate platform performance reports, and improve user experience
- Marketing: To send promotional materials and campaigns (with your consent, where required)
- Legal compliance: To comply with applicable laws, regulations, and legal processes
- Security: To detect, prevent, and address fraud, unauthorized access, and other security issues
- Billing: To process payments, manage subscriptions, and maintain billing records
4. How We Share Your Information
We do not sell your personal information. We may share your information in the following circumstances:
4.1 Within the Multi-Tenant Structure
The Platform operates on a multi-tenant architecture. Tenant administrators have access to data within their own tenant, including agent profiles, lead information, and listing data. Platform administrators may access cross-tenant data for support, billing, and operational purposes, subject to audit logging.
4.2 Service Providers
We share information with third-party service providers who assist us in operating the Platform, including:
- Cloud infrastructure and hosting providers (e.g., Supabase, Vercel/Netlify)
- Payment processors (e.g., Stripe)
- Email and communication service providers
- Analytics providers
- IDX/MLS data providers
These providers are contractually obligated to protect your information and use it only for the purposes we specify.
4.3 Legal Requirements
We may disclose your information if required to do so by law, or in good faith belief that such action is necessary to:
- Comply with a legal obligation, subpoena, court order, or governmental request
- Protect and defend the rights or property of DDG
- Prevent or investigate possible wrongdoing in connection with the Service
- Protect the personal safety of users or the public
4.4 Business Transfers
In the event of a merger, acquisition, reorganization, bankruptcy, or sale of all or a portion of our assets, your information may be transferred as part of that transaction. We will notify you of any such change in ownership or control of your personal information.
5. Data Retention
We retain your personal information for as long as your account is active or as needed to provide the Service. We may also retain and use your information as necessary to comply with legal obligations, resolve disputes, and enforce our agreements. Specific retention periods include:
- Account data: Retained for the duration of the account plus 30 days after deletion request
- Transaction records: Retained for 7 years in accordance with applicable tax and financial regulations
- Audit logs: Retained for a minimum of 2 years
- Marketing preferences: Retained until you opt out or request deletion
- Analytics data: Aggregated and anonymized data may be retained indefinitely
6. Data Security
We implement appropriate technical and organizational measures to protect your personal information, including:
- Encryption of data in transit (TLS 1.2+) and at rest (AES-256)
- Row-level security and tenant data isolation at the database level
- Role-based access controls with principle of least privilege
- Regular security assessments and vulnerability monitoring
- Audit logging of all administrative actions including data access and impersonation
- Secure authentication with support for multi-factor authentication and SSO
While we strive to protect your personal information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.
7. Your Rights and Choices
7.1 Access and Correction
You may access, update, or correct your personal information at any time through your account settings or by contacting us at 0xcircuitbreaker@protonmail.com.
7.2 Deletion
You may request deletion of your personal information by contacting us. We will process your request within 30 days, subject to any legal obligations that require us to retain certain data. Note that deletion of your account may result in loss of access to the Service and associated data.
7.3 Data Portability
You may request a copy of your personal data in a structured, commonly used, and machine-readable format. Contact us to initiate a data export request.
7.4 Marketing Communications
You may opt out of marketing communications at any time by clicking the "unsubscribe" link in any marketing email or by contacting us directly. Opting out of marketing communications will not affect service-related communications.
7.5 Cookies
Most web browsers are set to accept cookies by default. You can modify your browser settings to decline cookies, but this may affect your ability to use certain features of the Service.
8. Florida-Specific Provisions
As a company operating in the State of Florida, we comply with applicable Florida state privacy laws, including:
- Florida Information Protection Act (FIPA), Fla. Stat. § 501.171: In the event of a data breach involving personal information, we will notify affected individuals and the Florida Department of Legal Affairs within 30 days of discovery, or as otherwise required by law.
- Florida Deceptive and Unfair Trade Practices Act (FDUTPA): We are committed to transparent and fair data practices and do not engage in deceptive collection or use of personal information.
- Florida Digital Bill of Rights (effective July 1, 2024): If applicable based on qualifying thresholds, Florida consumers may have additional rights including the right to confirm processing, delete personal data, obtain a copy, opt out of targeted advertising, and opt out of profiling. To exercise these rights, contact us at the email below.
9. Children's Privacy
The Service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete such information promptly. If you believe a child has provided us with personal information, please contact us at 0xcircuitbreaker@protonmail.com.
10. Third-Party Links
The Service may contain links to third-party websites, services, or applications that are not operated by us. This Privacy Policy does not apply to third-party services, and we are not responsible for their privacy practices. We encourage you to review the privacy policies of any third-party services you access.
11. International Data Transfers
The Service is hosted and operated in the United States. If you access the Service from outside the United States, your information may be transferred to, stored, and processed in the United States. By using the Service, you consent to the transfer of your information to the United States, which may have different data protection laws than your country of residence.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated policy on this page with a revised "Last Updated" date. For significant changes, we may also provide additional notice (such as email notification). Your continued use of the Service after any changes constitutes your acceptance of the updated Privacy Policy.
13. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:
Daedalus Development Group
State of Florida, United States
Email: 0xcircuitbreaker@protonmail.com
Product: Aegis Platform