← auroreci.com

Privacy Policy

Last updated: 29 May 2026 · Data Controller: Aurore Corporation International (ACI) · Registered in: The Netherlands · Contact: admin@auroreci.com


1. Scope

This Privacy Policy explains how Aurore Corporation International (“ACI,” “we,” “us”) collects, uses, stores, and protects your personal data when you use JMIT (the “Software”). This policy applies to all users of the Software across all subscription tiers.

2. What We Collect

2.1 Information You Provide

Data PointPurposeLegal Basis
GitHub usernameLicense identifier and verificationContract performance
Email addressAccount communication, support, noticesContract performance
Payment infoProcessed via PayRequest/PayPalContract performance

2.2 Information Collected Automatically

Data PointPurposeLegal Basis
License check timestampsAudit and abuse preventionLegitimate interest
IP address (edge)Rate limiting and security logsLegitimate interest
Transaction referencesPayment reconciliationContract performance

2.3 Information We DO NOT Collect

JMIT performs AST (Abstract Syntax Tree) analysis of local repositories. No source code, test files, repository contents, file paths, or project structure data is transmitted to ACI or any third party. All analysis occurs locally on your machine.

We do not collect: source code or repository contents, file system structure, credentials or private keys, browsing history, location data, or biometric data.

3. Anthropic / Claude Code

JMIT does not send your code or data to Anthropic. The /jmitfix repair phase runs inside your own active Claude Code session - JMIT hands the blueprint to your session; your session consumes your own Anthropic subscription. ACI has no visibility into your Claude Code session, its inputs, or its outputs.

Data you provide to your own Claude Code session is governed by Anthropic’s Privacy Policy, not this policy. JMIT is not affiliated with Anthropic.

4. Data Sharing & Third Parties

We share your data only to the extent necessary to provide the Software:

Third PartyPurposeData SharedJurisdiction
SupabaseLicense DB, edge functionsGitHub username, license statusUS (SCCs)
PayRequestPayment processingTransaction reference, amountEU
PayPalPayment settlementTransaction reference, amountGlobal
VercelWebsite hostingStandard web request dataUS (SCCs)

ACI does not sell your personal data to third parties. We do not use your data for advertising or profiling.

5. Data Retention

Data TypeRetention Period
License recordsDuration of subscription + 90 days
Payment transaction refs7 years (tax/accounting obligation)
Security logs90 days
Failed payment records30 days

6. Cookies & Analytics

auroreci.com uses the following technologies on your browser:

TechnologyPurposeProviderCan be rejected?
Vercel AnalyticsAnonymous page-view and performance dataVercel Inc. (US)Yes - via cookie consent banner
localStorage (aci_cookie_consent)Stores your cookie consent preferenceFirst-partyCleared by clearing browser storage

We do not use advertising cookies, tracking pixels, or third-party profiling technologies. If you reject cookies via the consent banner, Vercel Analytics will not load. Your preference is stored in localStorage under the key aci_cookie_consent.

7. Data Subject Rights (GDPR)

If you are in the European Economic Area (EEA), you have the following rights regarding your personal data:

To exercise any of these rights, email admin@auroreci.com with the subject “Data Subject Request.” We will respond within 30 calendar days. We may ask for identity verification before fulfilling a request.

Data Processing Agreements (DPA): Enterprise customers requiring a DPA under GDPR Article 28 may request one by emailing admin@auroreci.com.

8. Data Security

We implement: TLS 1.3 for all data in transit, Supabase Vault for secrets, rate limiting (30 req/60 s per IP), and HMAC-SHA256 for webhook signature verification. Data is processed in the EU and US (see Section 4 for sub-processors and their jurisdictions).

9. Contact & Complaints

For privacy inquiries: admin@auroreci.com

If you are in the EEA and believe your data protection rights have been violated, you may lodge a complaint with your local data protection authority. For the Netherlands: Autoriteit Persoonsgegevens.


© 2026 Aurore Corporation International. All rights reserved.