# The IoT World — Privacy Policy & Compliance Standards

> Information handling, data security, telemetry protection, HIPAA compliance, and privacy policies for The IoT World platform.

## Summary
The IoT World is committed to enterprise-grade data security and privacy. We design and operate AI and IoT telemetry systems with strict multi-tenant isolation, automated PHI redaction, and compliance with healthcare data regulations.

## Key Commitments

### 1. Multi-Tenant Isolation
- Cryptographic and architectural isolation ensures no tenant data is accessible by or shared with any other tenant.
- Vector embeddings and database records are strictly tagged with tenant identifiers and validated on every query.

### 2. PHI / PII Protection & HIPAA Alignment
- Real-time Named Entity Recognition (NER) models scrub Protected Health Information (PHI) before storage or LLM ingestion.
- All telemetry and document streams are transmitted over mTLS and encrypted at rest with AES-256.

### 3. Model Training & Data Ownership
- Customer telemetry, documents, and data are never used to train foundational models for third parties.
- Fine-tuned adapters (LoRA/QLoRA) remain the exclusive intellectual property of the tenant.

### 4. Telemetry Collection
- We collect system telemetry (CPU, GPU, memory, throughput, error rates) strictly for platform health, capacity planning, and performance optimization.

## Contact & Compliance Officer
- Platform Founder: Dr. Amit Puri (OpenAGI Stack)
- Website: https://www.theiotworld.io
- Documentation: https://www.theiotworld.io/llms.txt
