Privacy Policy
Effective Date: March 30, 2026
Last Updated: March 30, 2026
Waterman Consulting Services, LLC ("WCS", "we", "us", or "our") maintains an absolute commitment to the protection, confidentiality, and sovereign control of all enterprise data entrusted to the WCS Enterprise Suite™ platform. This Privacy Policy governs all interactions with ForgedOps.ai, the AEGIS Titanium™ security infrastructure, SWARM Team automated intelligence agents, WellCommand™, and all associated services, modules, and integrations operated under the WCS Enterprise Suite™ umbrella.
By accessing any WCS service, you acknowledge and consent to the data practices described herein.
1. Information We Collect
WCS collects the minimum data necessary to deliver enterprise-grade operations management:
- Account & Identity Data: Company legal names, authorized personnel names, email addresses, phone numbers, and role designations required for platform access and multi-factor authentication.
- Operational & Project Data: Project schedules, budgets, resource allocations, blueprints, cost models, bid packages, daily field reports, and workflow configurations entered into or generated by the platform.
- Financial Data: Contract values, schedule of values, billing cycles, payment information processed through authorized third-party payment processors (e.g., Stripe). WCS does not store raw credit card numbers on our servers.
- Automated Usage & Telemetry Data: IP addresses, device identifiers, browser metadata, session durations, navigation paths, log events, and platform interaction telemetry used exclusively for security monitoring and performance optimization.
- AI Interaction Data: Queries, prompts, and outputs generated through SWARM Team agents, scenario modeling, and predictive intelligence modules.
2. How We Use Your Data
All data processing serves the singular purpose of delivering, securing, and improving your operational capabilities. WCS uses your data exclusively for:
- Service Delivery & Platform Operations: Powering your ForgedOps.ai Command Center, executing workflow automations, generating proposals, delivering integration deployments, and operating all modules within the WCS Enterprise Suite™.
- Security & Threat Mitigation: Continuous monitoring of access vectors, anomaly detection, and incident response through our proprietary AEGIS Titanium™ defense infrastructure. All access events are logged, timestamped, and retained for audit purposes.
- Internal AI Model Refinement: Aggregated, anonymized, and de-identified operational patterns may be used to improve predictive accuracy of SWARM Team modules. No client-identifiable data, Protected Health Information (PHI), or raw financial records are ever used in model training. Clients may opt out of anonymized data contribution by written request.
- Compliance & Legal Obligations: Data may be processed or disclosed as required by applicable federal, state, or local law, including response to valid subpoenas, court orders, or regulatory inquiries.
3. Data Protection & AEGIS Titanium™ Security Architecture
WCS deploys defense-grade, multi-layered security measures across the entire platform:
- Encryption: All data in transit is protected by TLS 1.3. All data at rest is encrypted using AES-256 via our AEGIS Titanium™ architecture.
- Dual Architecture Segregation: Strict architectural boundaries enforce physical and logical separation between General Operational Data, Protected Health Information (PHI), and sensitive financial records. No cross-domain data leakage is permitted.
- Multi-Factor Authentication (MFA): All platform access requires MFA enrollment. Session tokens are time-limited and non-transferable.
- Access Control: Role-based access control (RBAC) enforces principle of least privilege. Administrative actions are audit-logged with immutable timestamps.
- Infrastructure: Platform services operate on hardened cloud infrastructure with automated threat detection, intrusion prevention, and real-time alerting.
4. Data Sharing & Third Parties
WCS does not sell, rent, lease, or trade your data. Period.
We share the minimum required data with trusted infrastructure partners solely to execute platform functions:
- Firebase (Google Cloud): Authentication and database services.
- Stripe: Payment processing (PCI-DSS compliant).
- n8n (Self-Hosted): Workflow automation, hosted on WCS-controlled infrastructure.
- Cloudflare: CDN and DDoS protection.
- xAI / Google AI: AI inference processing. No persistent client data is retained by AI providers beyond the duration of a single request.
All third-party integrations are bound by data processing agreements. No third party receives operational blueprints, competitive intelligence, bid strategies, or proprietary project data.
5. Data Retention & Deletion
- Active Accounts: Data is retained for the duration of your active service agreement plus twelve (12) months for audit and compliance purposes.
- Terminated Accounts: Upon written termination request, WCS will purge all client-identifiable data within thirty (30) business days, with the exception of records required by law or active contractual obligations.
- Backup Retention: Encrypted backups are retained for a maximum of ninety (90) days following deletion, after which they are permanently destroyed.
6. Your Rights
Subject to applicable law and active contractual agreements, you have the right to:
- Access: Request a copy of all personal and operational data associated with your account.
- Rectification: Request correction of inaccurate or incomplete data.
- Deletion: Request permanent deletion of your data, subject to legal retention requirements.
- Portability: Request export of your data in a standard machine-readable format.
- Opt-Out: Decline participation in anonymized data aggregation for AI model improvement.
- Restrict Processing: Request limitation of specific data processing activities.
All rights requests must be submitted in writing to the contact below and will be acknowledged within five (5) business days.
7. Children's Privacy
ForgedOps.ai and the WCS Enterprise Suite™ are enterprise services not directed at individuals under the age of 18. We do not knowingly collect data from minors.
8. International Data
WCS operates primarily within the United States. If you access the platform from outside the U.S., you consent to the transfer and processing of your data within the United States in accordance with this policy.
9. Policy Updates
WCS reserves the right to update this Privacy Policy at any time. Material changes will be communicated via platform notification or email to the account holder. Continued use of the Services after notification constitutes acceptance.
10. Contact — Data Integrity Team
For privacy inquiries, data requests, or compliance questions:
Waterman Consulting Services, LLC
WCS Enterprise Suite™ | Data Integrity Team
Email: info@watermanconsultingservices.com
Phone: 832-377-1419