Who we are and when this notice applies
Aim Atlantic is operated by Neura Technology, LLC, a Delaware limited liability company. Contact us at [email protected] or write to 131 Continental Dr, Suite 305, Newark, DE 19713, United States. This is our company correspondence address; our founder also operates the business remotely from Nigeria.
This notice covers our website, business enquiries, onboarding, dashboard, API and related support. Aim Atlantic is currently in development and sandbox testing. References to live payment information describe processing that would take place when an approved service is activated.
We act as controller when deciding how to use information for our own account administration, security, compliance and business operations. Where we process customer information solely on a business client's instructions, our role and obligations are governed by the applicable data processing agreement. The merchant also has its own privacy responsibilities and notice.
Information we handle
We receive information from you, your business or its authorised users, communications with us, and service providers supporting authentication, payments and security. Where verification is needed, information may also come from official registers and lawful verification sources.
- Business and account details: names, business contact information, company registration details, website, role, account identifiers and onboarding responses.
- Payment and service records: amounts, currencies, references, payment-method tokens, limited payment-method details, transaction status, refunds, disputes, settlement records and integration events. Sandbox records should use synthetic transaction data; account sign-in information may still identify real people.
- Verification and financial information: where required for an approved relationship, information about authorised representatives, ownership, identity, business activity, settlement accounts and source of funds. We request sensitive documents through an agreed secure channel.
- Technical and security information: IP address, browser or device information, request timestamps, authentication events, error reports and activity logs.
- Communications: enquiries, support requests, meeting details and information you choose to send us. Please do not send passwords, API secrets, full card numbers or card security codes by email or support message.
Why we use information
We use information to answer enquiries, set up and administer business accounts, provide requested services, support integrations, maintain transaction records, investigate errors and disputes, protect accounts and prevent misuse. We also use relevant information to satisfy applicable legal obligations and establish or defend legal claims.
Where a law requires a legal basis, we rely on contractual necessity when you are a party to the contract, legitimate interests in operating and securing our business when handling business contacts and service activity, applicable legal obligations, or consent where required. We consider the impact on individuals when relying on legitimate interests. Business onboarding information needed to assess an account is required to proceed; optional enquiry information is voluntary.
We do not sell personal information or use it for cross-context behavioural advertising. We do not use customer documents to train a public AI model. We do not currently make decisions producing legal or similarly significant effects solely through our own automated profiling. Payment and authentication providers may apply their own automated security checks; you can contact us to raise an issue with a service decision.
Card details and account security
Our intended card integration uses provider-hosted collection and tokenised payment references. Do not send raw card numbers or card security codes to our API, support channels or logs. Tokenisation does not remove every security or compliance responsibility from us or a merchant.
We use access restrictions, authentication and monitoring to help protect service information. No service can promise absolute security. If you suspect an account or data incident, contact [email protected] promptly without including secrets in the message.
Where information is processed
Our business is registered in the United States and managed remotely from Nigeria. We use service providers with infrastructure in the United States and other locations, so information may be processed across borders.
For transfers subject to specific data protection restrictions, we assess the applicable requirements and use the required transfer mechanism and safeguards before making the transfer. These may include contractual safeguards, adequacy arrangements or another legally permitted basis. Contact us for information about safeguards applicable to your data.
How long we keep information
We keep information for as long as needed for the purpose it was collected for, including the business relationship, security investigations, applicable accounting and compliance obligations, and legal claims. The period depends on the record, our role and the laws applying to it. We do not keep all information for a single fixed period.
When information is no longer needed, it should be deleted or anonymised, subject to documented legal holds and the expiry of protected backup copies. Account closure does not automatically require deletion of records that must be retained by law. You can ask us about the retention criteria applying to your information.
Your choices and rights
Depending on the law that applies, you may request access, correction, deletion, restriction, portability or an objection to certain uses of your information. Where processing depends on consent, you may withdraw it without affecting prior lawful processing. Rights can have exceptions, including legal recordkeeping obligations.
Email [email protected] to make a request. We may need proportionate identity verification and will respond within the applicable legal timeframe. Where we act only on a merchant's instructions, we may refer your request to that merchant and assist it as required.
You may also complain to the relevant data protection authority, including the Nigeria Data Protection Commission, the UK Information Commissioner's Office or your local EEA supervisory authority where those laws apply. You do not have to contact us first.
Children and changes to this notice
Our business services are not directed at children. Do not create a business account unless you can lawfully act for the business. If you believe a child has provided personal information to us inappropriately, please contact us.
We may update this notice as our services or legal obligations change. The date and version above identify the current notice. We will provide additional notice of material changes where required.
