ZeroCramp™
APOLLOSWAVE LLC • POST-ROE REPRODUCTIVE DATA SOVEREIGNTY CHARTER

Privacy Policy & Data Sovereignty

Effective Date: September 19, 2026 • Operated by ApollosWave, LLC

1. Our Sovereign Privacy Philosophy

Mainstream period-tracking apps and wellness platforms have routinely monetized intimate reproductive records, cycle patterns, and biometric telemetry by licensing them to third-party data brokers, insurers, and advertising conglomerates. At ZeroCramp™ and ApollosWave, LLC, we reject this surveillance model unconditionally.

Your menstrual cycle, pelvic sensation ratings, and somatic history belong exclusively to you. ZeroCramp™ was architected from line one as a sovereign biological sanctuary. We believe reproductive data should enjoy the same level of cryptographic discretion as financial or legal communications.

2. Information We Collect & How It Is Handled

We practice strict data minimization. We only collect the minimal information necessary to deliver and authenticate your access to the bio-acoustic protocol:

  • Account Authentication: Your email address and cryptographically salted, hashed password (processed via BCrypt). We never have access to your plain-text password.
  • Payment & Billing Data: All payments are processed directly by Stripe via PCI-DSS Level 1 compliant tokenization. ApollosWave, LLC never sees, captures, transmits, or stores your raw credit card numbers or banking credentials. Your bank statement displays the discrete billing descriptor: APOLLOSWAVE*ZEROCRAMP.
  • Optional Somatic & Cycle Telemetry: Any cycle dates or pelvic comfort ratings you voluntarily record inside the member companion app (/app) are encrypted at rest using AES-256. Logging is entirely optional; you can utilize the full 12-carrier audio protocol without ever inputting cycle dates.

3. Zero Third-Party Advertising Trackers & No Data Brokers

We do not install Meta Pixels, TikTok Pixels, Google Ads remarketing tags, Twitter/X trackers, cross-site identity-graph scripts, or data-broker SDKs. We do not participate in programmatic ad exchanges or cross-context behavioral profiling.

Our public website uses minimal, privacy-centric analytics solely to monitor aggregate site performance and technical stability (such as Core Web Vitals and server uptime). We do not correlate your public browsing activity with your private member sanctuary account.

4. Staff Data Access Policy

Consistent with the ApollosWave corporate security standard:

  • Our staff, founders, and engineers cannot access your private account records or cycle telemetry without your prior, explicit written authorization (for instance, when you request technical support with your membership pass).
  • System-level access by authorized personnel is strictly logged and audited, and is permitted only for automated error troubleshooting, infrastructure resilience, and preventing fraudulent or illegal abuse of the Services.

5. Client-Side Audio Synthesis & Airplane Mode Operation

Unlike streaming platforms that transmit audio chunks over remote servers and track exact playback timestamps, ZeroCramp™ generates its multi-carrier harmonic audio waveforms directly inside your device's browser using the native HTML5 Web Audio API.

Once cached through our Progressive Web App (PWA) container, the acoustic protocol functions completely offline. You can place your phone in airplane mode, disconnect from Wi-Fi and cellular towers, and experience uninterrupted somatic muscle relaxation without a single network packet leaving your hardware.

6. Data Retention & Deletion Timeline (The ApollosWave Standard)

You retain sovereign ownership of your data at all times. If you choose to close your account or request data erasure:

  • Immediate Revocation: Your login credentials and member session tokens are invalidated immediately upon cancellation or deletion request.
  • 30-Day Active Database Purge: Within 30 days of account termination, all personal data, email records, and voluntary telemetry are permanently purged from active production databases and application logging clusters.
  • 60-Day Backup Overwrite: Within 60 days, all encrypted disaster-recovery archives and redundant snapshots are permanently cycled and overwritten. Because backups are cryptographically destroyed, this process is irreversible.

You may also trigger an immediate account and data deletion at any time via Settings ➔ Privacy & Data Deletion, or by emailing our privacy team.

7. CCPA & GDPR / UK GDPR Compliance

California Consumer Privacy Act (CCPA): ApollosWave, LLC acts as a “service provider” regarding personal information processed through the Services. We do not sell personal data, nor do we share personal data for cross-context behavioral advertising. We provide California residents with complete rights to notice, access, correction, deletion, and non-discrimination.

European Union & UK General Data Protection Regulation (GDPR): We process your data exclusively under valid legal bases: (a) performance of our contract to provide you with the ZeroCramp protocol, (b) compliance with statutory legal obligations (such as tax compliance), and (c) legitimate interests in securing our infrastructure. You possess absolute rights under GDPR to:

  • Access a complete copy of all personal information we hold about you (Data Portability).
  • Rectify inaccurate or incomplete information.
  • Request permanent erasure of your data (“Right to be Forgotten”).
  • Restrict or object to processing of your records.
  • Lodge a complaint with a competent supervisory data protection authority in your jurisdiction.

8. Security Architecture & Sub-Processors

All communications between your browser and our servers are encrypted using modern Transport Layer Security (TLS 1.3). Static assets and web applications are protected by Cloudflare’s zero-trust edge infrastructure.

We vet all infrastructure sub-processors strictly against enterprise-grade data protection standards. Our authorized sub-processors include:

  • Stripe, Inc. — Payment gateway & PCI-compliant tokenized billing.
  • Cloudflare, Inc. — Edge CDN, DDoS mitigation, and SSL/TLS termination.
  • Hetzner Online GmbH — Encrypted bare-metal application compute & database hosting.

None of our sub-processors are granted permission or capability to utilize your personal data for their own independent advertising or commercial purposes.

9. Non-Medical Wellness Scope (YMYL Disclosure)

HEALTH RECORD & MEDICAL CLARIFICATION

ZeroCramp™ is an acoustic somatic wellness protocol, not an electronic health record (EHR) system, medical clinic, or HIPAA-covered entity. The information you provide is maintained under our strict cryptographic privacy charter, but does not constitute a clinical medical chart. Always seek the advice of your physician or qualified healthcare provider regarding any pelvic symptoms or organic medical conditions.

10. Corporate Governance & Contact

If you have questions regarding this Privacy Policy, wish to exercise your CCPA/GDPR data rights, or want to verify data deletion, contact our privacy concierge:

ApollosWave, LLC

Operating Entity for ZeroCramp™

Privacy & Data Protection Officer: [email protected]

Corporate Inquiries: [email protected]

Member Concierge: [email protected]