Your data does not need to visit us to become useful.

Future ATI is designed around customer-controlled processing, explicit retention, and clear boundaries between public website systems and private project environments.

How FM Processes Your Information

YOUR FILES
YOUR CONTROLLED
ENVIRONMENT
LOCAL INDEX /
LOCAL MODEL
YOUR RESULTS

Blocked Paths

Private documents——×——>public AI training
Blocked by policy
Private prompts——×——>hidden cloud inference
Blocked by policy
Embeddings——×——>uncontrolled storage
Blocked by policy

Public Website vs Private Workspace

Future ATI makes a clear distinction:

PUBLIC WEBSITE

Marketing pages, account entry, documentation. May use internet infrastructure for hosting and CDN services.

PRIVATE PROJECT WORKSPACE

Customer files, indexes, models, prompts, deliverables. Never shared with public systems or external services.

Future ATI may use internet infrastructure for the website. That is not the same as sending private customer work to public AI services.

Privacy State System

Seven visible states show where your work is and what protections apply:

PUBLIC

No private project workspace active.

LOCAL

Processing occurs in local/customer-controlled environment.

ACTIVE SESSION

Temporary project workspace exists for active work.

EXTENDED SESSION

Customer explicitly purchased retention.

DELIVERY

Final package available through secure delivery.

DELETION PENDING

Retention is ending.

DELETED

Workspace deletion completed.

This is a product feature. You see the state of your workspace at all times.

Temporary Retention

Future ATI retains information honestly, for specific reasons:

When the project is active

When the customer needs secure delivery

When the customer explicitly extends a workspace

When billing/support records require non-private operational metadata

We retain only for a reason, with a state, and with an end.

Do not claim "we never save anything." That would not be honest or helpful.

What Gets Deleted

When deletion begins, these layers are removed:

Source files● Deleted
Indexes● Deleted
Embeddings● Deleted
Caches● Deleted
Temporary artifacts● Deleted
Logs (governed by policy)● Per retention policy

Each layer reflects actual backend completion. We do not animate deletion before the system confirms it is done.

Air-Gapped Deployments

Even when internet connectivity goes away, Future ATI keeps working:

LOCAL FM SERVER
×
INTERNET

Internet went away. Future ATI did not.

Your private documents keep processing where you said they process.

External AI Integration (Optional)

If you choose external AI services later, Future ATI makes the boundary explicit:

Private workspace
Boundary confirmation
Approved external service

Default should favor local/customer-controlled processing. If external AI is configured, the UI explains:

  • what data leaves
  • why it leaves
  • where it goes
  • whether it is stored
  • how to revoke it