AI Transparency Policy
Last updated: February 26, 2026
1. Overview
Namauu Technological & Industrial, LLC (“NTI,” “we,” “us,” or “our”) is committed to using artificial intelligence (AI) responsibly, transparently, and in alignment with federal cybersecurity and data protection standards. This policy explains how AI is integrated into our platform, what data it processes, and the safeguards we maintain to protect your interests.
We believe that users have a right to understand when and how AI systems are used in the products and services they rely on. This policy reflects that commitment.
2. How We Use AI
AI capabilities within the NTI platform are used to augment, not replace, human decision-making. Specific use cases include:
- Document Processing & Analysis: AI-powered extraction, summarization, and structuring of document content to accelerate review workflows.
- Content Generation: Drafting technical narratives, past performance summaries, and compliance statements with AI-assisted generation, always subject to human review.
- Semantic Search & Matching: Vector-based similarity matching to connect requirements with relevant experience, services, and personnel.
- Data Structuring: Converting unstructured data into structured formats for reporting, compliance tracking, and workflow orchestration.
AI is not used for automated decision-making that produces legal effects or similarly significant consequences without human review.
3. AI Models & Providers
We use commercially available large language models (LLMs) and AI services from established providers. Our current integrations include:
- OpenAI: For language understanding, generation, and embedding tasks.
- LlamaIndex Cloud: For document parsing, extraction, and retrieval-augmented generation (RAG) pipelines.
- Pinecone: For vector storage and semantic similarity search.
We evaluate providers against security, privacy, and compliance criteria before integration. Provider relationships are reviewed regularly to ensure continued alignment with our standards.
4. Data Handling in AI Processing
We take the following measures to protect your data when it is processed by AI systems:
- Data Minimization: Only the data necessary for the specific AI task is transmitted to model providers. We do not send entire datasets when a subset will suffice.
- No Model Training: Your data is not used to train, fine-tune, or improve third-party AI models. We use API-based inference with providers that contractually commit to not training on customer data.
- Encryption in Transit: All data sent to AI providers is encrypted using TLS 1.3 and transmitted over secure API connections.
- Ephemeral Processing: AI provider interactions are stateless where possible. Prompt data is not persisted by providers beyond the duration needed to generate a response.
- Output Storage: AI-generated outputs are stored within our own infrastructure (Google Cloud Storage, Firestore) under the same encryption-at-rest protections as all other platform data.
5. Human Oversight & Accountability
AI outputs generated by our platform are advisory in nature. We maintain human oversight through the following practices:
- Human-in-the-Loop: All AI-generated content is presented for human review before being finalized or submitted to external parties.
- Review Workflows: Our processing pipelines include explicit approval steps where authorized users validate AI outputs before they advance.
- Auditability: AI interactions are logged with workflow execution identifiers to maintain traceable records of what was generated and when.
- Escalation Paths: Users can flag AI-generated content for manual review or correction at any point in a workflow.
6. Bias & Fairness
We recognize that AI systems can reflect or amplify biases present in training data. To mitigate this:
- We design prompts and system instructions to produce neutral, fact-based outputs.
- AI is not used for scoring, ranking, or evaluating individuals in contexts where bias could cause discriminatory outcomes.
- We periodically review AI outputs to identify patterns of bias and adjust our implementations accordingly.
- Users are encouraged to report any outputs they believe are biased or inaccurate so we can investigate and remediate.
7. Security & Compliance
Our AI integrations are subject to the same security controls and compliance frameworks that govern our entire platform:
- NIST 800-171 Alignment: AI data flows are architected to align with NIST 800-171 controls for protecting Controlled Unclassified Information (CUI).
- CMMC Level 2: Our systems align with Cybersecurity Maturity Model Certification (CMMC) Level 2 practices.
- Access Controls: AI processing endpoints are secured with authentication tokens and are not publicly accessible. Inter-service communication uses encrypted bearer token authentication.
- Provider Agreements: We maintain data processing agreements (DPAs) with AI providers that include confidentiality, data protection, and breach notification obligations.
8. Your Rights
As a user of the NTI platform, you have the following rights with respect to AI processing:
- Right to Know: You may request information about whether AI was used to process your data and what type of processing was performed.
- Right to Review: You may request human review of any AI-generated output that affects your account or submitted materials.
- Right to Correct: You may request correction of AI-generated content that is factually inaccurate.
- Right to Object: You may raise concerns about AI processing with our team, and we will respond in a timely manner.
To exercise these rights, contact us using the information in Section 11 below.
9. Limitations of AI
AI systems, including those used by NTI, have inherent limitations:
- AI-generated content may contain inaccuracies, omissions, or hallucinated information. All outputs should be verified by qualified personnel.
- AI does not possess judgment, intent, or domain expertise. It is a tool that supplements, not replaces, professional analysis.
- Performance may vary based on input quality, document complexity, and the specificity of the task.
NTI does not guarantee the accuracy, completeness, or fitness for any particular purpose of AI-generated outputs. Users are responsible for reviewing and validating all AI-assisted content before reliance or submission.
10. Changes to This Policy
We may update this AI Transparency Policy as our use of AI evolves, as new regulations emerge, or as we adopt new technologies. When we make material changes, we will update the “Last updated” date at the top of this page. Continued use of the platform after such changes constitutes acceptance of the revised policy.
11. Contact Information
If you have questions about this AI Transparency Policy or wish to exercise any of the rights described above, please contact us at:
- Email: contact@namauu.com
- Phone: (210) 588-0058
- Address: Namauu Technological & Industrial, LLC, San Antonio, TX
For more information about how we handle your data and account access, please also review our Privacy Policy and Terms of Service.