Last updated: September 23, 2026
3aiSeal is operated by SAPIOX MG, LLC. This policy explains what the 3aiSeal console collects and how it is used.
3aiSeal is a self-hosted security tool. It records network-egress metadata reported by its agents (host name, process name, destination host and IP, AI vendor, timestamp, and a computed posture), the account details of console users (email and a hashed password), and an audit log of console actions.
3aiSeal does not inspect message content or payloads. It records metadata about connections, not the data sent to AI services. We do not sell personal information.
Metadata is used solely to detect and report AI usage, map findings to security-control frameworks, and produce audit evidence for the operator of the deployment.
Data is stored in the operator's own database. Event data may be purged automatically on a retention schedule the operator configures. Audit records are retained to preserve an evidence trail.
Passwords are stored using salted scrypt hashing and sessions use HttpOnly cookies. Operators are responsible for securing their own deployment, including transport encryption and access controls.
If the operator enables optional integrations (such as ServiceNow or push notifications), finding metadata is sent to those services at the operator's direction.
Console users may request access to or deletion of their account by contacting the deployment's administrator.