Open Onexa™ — Nexa Labs Inc. — Effective Date: February 12, 2026 — Last Updated: February 12, 2026
We process data in accordance with: lawfulness, fairness, transparency, purpose limitation, data minimization, storage limitation, integrity and confidentiality.
We classify data into:
Each category follows defined access controls.
Where applicable (e.g., GDPR jurisdictions), processing is based on contractual necessity, legitimate interest, legal compliance, and consent.
We collect only what is necessary to provide functionality, maintain security, and improve performance.
We implement:
We retain data for duration of active account, as required by law, and according to institutional agreements. Users may request deletion, subject to legal retention requirements.
Where applicable, users may: access personal data, rectify inaccuracies, request erasure, restrict processing, object to processing, and request portability.
Requests: legal@openonexa.com
Data may be processed in jurisdictions outside the user's country. We implement safeguards consistent with applicable law.
In the event of a confirmed breach, we will investigate promptly, notify affected users where required, and comply with regulatory reporting obligations.
We may use infrastructure providers. We conduct due diligence before engaging subprocessors.
Open Onexa is not intended for minors.
Open Onexa implements model evaluation protocols, bias monitoring, and output transparency controls. AI outputs are probabilistic and require scientific validation.
Institutional partners may request formal Data Processing Agreements, Confidentiality Addendums, and Research Governance Agreements.
legal@openonexa.com
Nexa Labs Inc.
London, United Kingdom