Privacy Policy
Last updated: September 14, 2026
This policy explains how GuardianMesh Inc. handles personal information across the corporate website and the products and portals that link to this policy. Product-specific notices may provide additional detail at the point of collection.
Information We Collect
- Website and support: information you submit when contacting us, plus limited technical and aggregate visit data used to operate and understand our public sites.
- Product accounts: identifiers, contact details, authentication records, preferences, content, tasks, service activity, and communications required by the product you choose to use.
- Payments and transactions: purchase, subscription, invoice, payout, and receipt records. Payment processors handle payment credentials under their own terms; GuardianMesh retains the business record needed to reconcile the transaction.
- Corporate and workforce portals: employment, payroll, benefits, scheduling, leave, governance, shareholder, accounting, and access-control records available only to authorized users.
- Investor services: identity, classification, KYC, signed document, subscription, payment, holding, voting, and compliance records required to administer an investment.
How We Use Information
- Provide, secure, support, and improve the requested product or portal.
- Authenticate users, preserve account and transaction integrity, and prevent abuse.
- Process purchases, subscriptions, payroll, corporate records, and legally required compliance workflows.
- Communicate service, security, transaction, employment, governance, and support information.
- Measure public-site performance using the configured first-party Webcounter service.
We limit collection, use, and disclosure to identified purposes that are appropriate in the circumstances. We do not sell personal information.
Disclosure and Service Providers
Information may be disclosed to service providers that host systems, deliver email, process payments, verify identity, or provide other functions necessary for the selected service. Providers receive only the information needed for that function and are expected to protect it. We may also disclose information when required by law, to protect users or systems, or as part of a corporate transaction subject to appropriate safeguards.
Some providers may process information outside Canada, where it can be subject to the laws of that jurisdiction.
Guardian Network Privacy
Guardian Network is one communications product in the GuardianMesh Inc. portfolio. Message content is end-to-end encrypted before relay. Guardians transport encrypted bundles and process bounded routing metadata such as destination identity hashes, bundle identifiers, time-to-live, hop count, priority, payload size, source guardian identity, and relay timestamps.
- Direct messages use the product's current end-to-end encryption protocol; group messages use MLS.
- Pending encrypted bundles expire under delivery and time-to-live rules.
- Public network views use region-level information unless an operator chooses to publish more.
- Nearby Bluetooth discovery may expose a service identifier, while message content remains encrypted.
AI-Assisted Features
Some authorized business tools can provide optional AI-assisted analysis or drafting. These features are governed by access controls and data minimization, and consequential financial actions remain subject to human approval. When an external provider is configured, the relevant service notice or workflow identifies the processing context.
Retention and Safeguards
We retain information only for as long as needed for the identified service, security, accounting, employment, corporate, contractual, or legal purpose. Retention periods vary by record type. We use administrative, technical, and physical safeguards appropriate to the sensitivity of the information, including authentication, authorization, encryption where appropriate, audit controls, and restricted operational access.
Your Choices and Rights
You may request access to or correction of personal information under our control and may withdraw consent where applicable, subject to legal or contractual limits. You may also ask about retention, service providers, or how to challenge our compliance. We will verify identity before completing a request. Account deletion requests may be limited where records must be preserved for securities, employment, accounting, fraud-prevention, or other legal obligations.
GuardianMesh Inc. applies applicable Canadian private-sector privacy requirements, including PIPEDA where it applies, and the principles of accountability, identified purposes, consent, limited collection, limited use and retention, accuracy, safeguards, openness, access, and challenge.
Contact
Questions, access or correction requests, and privacy complaints may be sent to the Privacy Officer at hello@guardianmesh.ca.