NEUROCOM™ PRIVACY POLICY

Effective Date: January 2026

Last Updated: February 2026

Introduction

NeuroCom™ (“NeuroCom”, “we”, “our”, “us”) is an infrastructure-grade AI edge computing company providing distributed compute, inference, and AI enablement services across Africa and partner regions. We are committed to protecting privacy, ensuring data sovereignty, and operating in line with global best practices, including applicable African data protection laws, GDPR-aligned principles, and sector-specific regulations. This Privacy Policy explains how we collect, use, store, and protect information when you engage with NeuroCom’s platforms, infrastructure, or services.

Information We Collect

NeuroCom collects only information necessary to operate secure, reliable, enterprise-grade infrastructure.

a. Business & Account Information Organization name Authorized representatives Contact details Contractual and billing information

b. Technical & Operational Data Infrastructure performance metrics Resource utilization data Network telemetry Security, audit, and access logs

c. Customer Workload Data Data processed solely on behalf of customers NeuroCom does not claim ownership of customer data or models

How We Use Information

Information is used strictly to: Deliver and maintain AI edge infrastructure Ensure uptime, security, and performance Meet contractual, regulatory, and compliance obligations Improve reliability and operational efficiency Detect and prevent misuse or security threats NeuroCom does not sell, mine, or monetize customer data.

Data Sovereignty & Residency

NeuroCom is designed as a data-sovereign infrastructure platform. Customer data remains within agreed jurisdictions Edge processing minimizes unnecessary cross-border data flows Deployment models respect national and regional data regulations

Data Security

NeuroCom implements industry-standard security controls, including: Encryption at rest and in transit Role-based and least-privilege access Zero-trust security principles Continuous monitoring and audit logging

Third-Party Access

Where third parties are engaged (e.g., MNOs, system integrators, data center operators): Access is contractually restricted Use is purpose-limited Activities are logged and auditable

Data Retention

Data is retained only: As required for service delivery In line with contractual, legal, and regulatory requirements

Rights & Requests

Subject to applicable law, customers may request access, correction, or deletion of information by contacting: privacy@neurocom.africa

Updates to This Policy

This Privacy Policy may be updated to reflect operational, legal, or regulatory changes. Updates will be posted on NeuroCom’s website.