Legal

Privacy Policy

Your privacy and data security are fundamental to our mission. We do not track, monitor, or analyze your browsing behavior, and the data you store in Citadel stays yours.

Last updated: January 1, 2026

At Secured2 Corporation ("Secured2," "we," "us," or "our"), privacy is not just a policy — it is core to our mission. We practice the same privacy principles we build into our Quantum-Secure® technology.

This Privacy Policy explains how we handle your information when you visit our website at https://s2citadel.com (the "Site") and when you use Secured2 Citadel (the "Service").

By using our Site or Service, you consent to the limited data practices described in this Privacy Policy.

1. Information We Collect

We believe in minimal data collection. We collect only the information you voluntarily provide and the information strictly required to operate your Citadel account.

Contact and enquiry information

When you submit a contact form, request a demo, or reach out to us, we collect only what you choose to provide, which may include:

  • Name and email address
  • Company name and job title
  • Phone number (if you choose to provide it)
  • Your inquiry or message

Account and service information

When an account is created for you in Secured2 Citadel, we hold the details needed to provide the service:

  • Account holder name, company, email address and phone number
  • Authentication and Quantum-Secure® multi-factor enrolment data
  • Subscription, plan and billing status (card details are handled by our payment provider, never by us)
  • File metadata such as names, sizes, types, folders and vaults
  • Security audit records of account activity, including sign-ins, uploads, downloads, changes and the originating IP address and device type

What we don't collect

On our public website we do not collect or track:

  • Your browsing behavior on our website
  • Your IP address for tracking purposes
  • Analytics or website usage data
  • Cookies for tracking or advertising
  • Your location or device information
  • Any data about your visits to other websites

2. Your Files Stay Yours

Content you store in Citadel belongs to you. Files are protected using Secured2's keyless, physics-based approach: data is shredded, transformed and distributed so that no readable copy sits in any single location, and no encryption key exists that could be stolen or compelled.

We do not mine, sell, profile or train public AI models on your stored content. Where you choose to build a private AI model inside Citadel, indexing and retrieval happen inside your own account boundary and results are scoped to the files you selected.

Our staff do not access your file content except where you explicitly request support and grant access, or where we are legally compelled to act.

3. How We Use Your Information

We use the information you provide solely for legitimate business purposes:

  • To operate, secure and support your Citadel account
  • To respond to your inquiries and questions
  • To provide information about our Quantum-Secure® technology and services
  • To schedule demos, deployments or consultations when requested
  • To process subscriptions, renewals and capacity changes
  • To fulfill legal obligations if required by law

We do NOT use your information to track your behavior, build marketing profiles, sell to third parties, or follow you across the internet.

4. No Tracking or Cookies

Unlike most websites, we do not use tracking cookies, analytics cookies, or any other tracking technologies on our public site. Your browsing experience here is completely private.

Inside the Citadel application we use only essential technical storage required to keep you signed in and to remember basic preferences such as your view settings. These are never used for tracking, analytics, advertising or profile building.

5. Sharing of Information

We do not sell, rent, trade, or share your personal information with third parties for marketing purposes. We may only share information in very limited situations:

  • Service providers: a small number of vetted providers who make the service work, such as our payment processor and, where you choose it, your selected cloud storage region. They receive only what is necessary and may not use it for anything else.
  • Legal requirements: only if required by law or to comply with legal processes
  • Business transfers: in connection with a merger, acquisition, or asset sale, with the same privacy protections
  • Protection of rights: when necessary to protect Secured2's rights or user safety

We do not work with analytics providers, advertising networks, or data brokers that would have access to your information.

6. Data Retention

We retain personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy or as required by law. Retention periods may vary based on data type and legal obligations.

Files you delete are moved to Trash and can be restored by you. Once permanently deleted, the underlying stored fragments are removed and cannot be recovered by us. Security audit records are retained for a limited period to support investigation of suspicious activity.

7. Data Security

Secured2 employs administrative, technical, and physical safeguards to protect your information, including:

  • Keyless, physics-based protection of stored data
  • Encrypted communications (HTTPS/TLS)
  • Quantum-Secure® authentication and multi-factor access controls
  • Server-side authorization on every request, with per-account isolation
  • Intrusion detection, audit logging and monitoring
  • Secure storage, replication and backup systems

However, no system can be guaranteed 100% secure. Users are encouraged to take precautions when transmitting personal data online and to protect their account credentials.

8. Your Rights and Choices

Depending on your location, you may have the following rights:

  • Access to personal information
  • Correction of inaccuracies
  • Deletion of data (right to be forgotten)
  • Objection to or restriction of processing
  • Data portability
  • Withdrawal of consent

To exercise any of these rights, contact us at privacy@secured2.com. We may require identity verification before fulfilling your request.

9. International Data Transfers

If you are located outside the United States, your information may be transferred to and processed in the U.S. or other countries. Where your plan includes a specific storage region or sovereign deployment, your stored content remains in the location you selected. We implement appropriate safeguards, such as standard contractual clauses, to protect your data in compliance with applicable laws.

10. Third-Party Links

Our Site may contain links to external websites not operated by Secured2. We are not responsible for the privacy practices or content of those third parties. You should review their privacy policies independently.

11. Children's Privacy

Our Site and services are not intended for children under 13 (or under 16 in certain jurisdictions). We do not knowingly collect personal information from children. If we become aware of such data collection, we will delete it promptly.

12. Updates to This Policy

We may revise this Privacy Policy periodically. Updates will be posted on this page with a new "Last updated" date. Continued use of the Site or service after changes constitutes acceptance of the revised policy.

13. Contact Us

If you have questions about this Privacy Policy or our data handling practices, please contact us using the details below.

Contact

Secured2 Corporation — Citadel

3900 Northwoods Drive, Arden Hills, MN 55112
Email: info@secured2.com
Website: https://s2citadel.com