Effective Date: July 22, 2026 | Version 2.4 | Enterprise Security Governance
EnterpriseACP collects only the minimal operational telemetry required to evaluate runtime leases, execute sidecar tool interception, maintain agent passports, and generate immutable audit logs for your security organization.
Information collected is strictly utilized to enforce least-privilege authority policies, detect unauthorized tool execution attempts, trigger automated agent isolation rules, and render compliance reporting dashboard metrics.
Customer data resides strictly within designated geographic tenancies (US, EU, APAC, or dedicated GovCloud environments). All data at rest is encrypted with AES-256-GCM. Data in transit utilizes TLS 1.3 with mutually authenticated TLS (mTLS) enforced across sidecar components.
Under GDPR, CCPA, and global privacy frameworks, administrators can request full export of Agent Decision Records or trigger automated purging routines for historical agent logs.
For privacy inquiries or Data Protection Officer (DPO) communications, contact us directly at privacy@enterpriseacp.com.