acoAR
Privacy & Trust Architecture

Built for consented deployments.

acoAR uses acoustic echoes and radio signals to create spatial awareness — without cameras, visual identity capture, or intelligible audio recording.

This page documents our privacy principles, technical controls, the boundaries of what acoAR is designed to support, and our regulatory posture.

§ 01 — Signal processing

How acoAR processes signals.

01

Signal capture

The SDK accesses the device microphone and speaker to emit and receive near-inaudible acoustic chirps. Raw audio is processed locally — it is never transmitted to a server in default configuration.

02

Feature extraction

Acoustic echoes are converted on-device into geometric features: distances, angles, and reflection signatures. The output is numerical geometry data — not audio recordings. No speech, voice, or ambient sound is retained.

03

Spatial events

The acoAR engine produces a structured event stream: position coordinates, room identifiers, presence flags, confidence scores, and uncertainty radii. No audio. No images. No visual identity data.

§ 02 — Privacy controls

Default settings and configurability.

Raw audio retention
Default: Off
Configurable: No
Feature data retention
Default: Session only
Configurable: Yes
Spatial map storage
Default: Session only
Configurable: Yes
Sensing zones
Default: All
Configurable: Yes — admin-defined
Consent disclosure
Default: Required
Configurable: Not configurable
Through-wall sensing
Default: Off
Configurable: Yes — policy-gated
Data export
Default: API available
Configurable: Enterprise tier
§ 03 — Use boundaries

What acoAR will not support.

These are not just guidelines — they are design constraints. Some of these capabilities are technically possible but are explicitly excluded from the product, API, and permitted use policy.

  • 01Covert monitoring without user disclosure
  • 02Surveillance of public spaces without consent infrastructure
  • 03Collection of raw audio for analytics, training, or any secondary purpose
  • 04Identification or re-identification of individuals from acoustic signatures
  • 05Workplace monitoring of employees without disclosed, policy-bound configuration
  • 06Deployment in children's environments without guardian/operator consent
  • 07Law enforcement or government surveillance use without strict legal basis
  • 08Hidden through-wall sensing of adjacent occupants without their knowledge
§ 04 — Regulatory posture

GDPR, CCPA, and healthcare.

GDPR

acoAR processes derived spatial features, not personal audio. Spatial coordinates may constitute personal data in certain jurisdictions. We are preparing Data Processing Agreement templates for enterprise deployments. Contact us for GDPR readiness questions.

CCPA

No personal audio is collected. Spatial coordinate data is handled according to our data retention controls, which are configurable per deployment. We do not sell spatial data to third parties.

Healthcare

acoAR is not a medical device. Healthcare and eldercare deployments require operator-level consent infrastructure, appropriate clinical governance, and are discussed case-by-case. We do not make clinical claims.

§ 05 — Security

Enterprise security controls.

Signal processing
Local-first — feature extraction runs on-device
Raw audio
Never transmitted or stored in default configuration
Transport encryption
TLS 1.3 for all API communication
Authentication
API key management per application
Workspace isolation
Tenant-isolated spatial workspaces (planned)
Access control
Role-based access control (planned)
Edge deployment
On-premise / air-gapped option (planned)
Compliance
SOC 2 roadmap available on request
§ 06 — Contact

Security questionnaire & DPA.

An enterprise security questionnaire is available on request. Data Processing Agreement (GDPR) templates are in preparation.