Legal
Privacy policy.
Effective August 18, 2026. This policy covers theaionlab.com — the website. It does not cover client engagements, which are governed by their own agreements.
Who we are
Aion Labs LLC (“The Aion Lab,” “we,” “us”) is a Georgia limited liability company. Our notices address is 8735 Dunwoody Place, Ste R, Atlanta, GA 30350. For any privacy request, write to admin@theaionlab.com.
What we collect
Usage events (first-party)
We run our own measurement on our own infrastructure. When you use this site we record a small, fixed set of events: pages viewed, which of our four offerings you opened, which case studies you read, when the booking page is opened, when a call is scheduled, and when the referral form is submitted. Alongside each event we store:
- An anonymous visitor identifier — a random value stored in a first-party cookie named
alv, which expires after one year. It is not derived from anything about you and is not linked to any identity unless you later submit your details to us. - Referrer and campaign parameters — the site that linked you here, and any
utm_*parameters in the URL, so we can tell which channels reach the people we can help. - A truncated IP address — the final octet of an IPv4 address (and everything beyond the first four groups of an IPv6 address) is discarded before storage. We keep the remaining prefix only to rate-limit abuse.
We do not put names, email addresses, or any other personal details into usage events.
Information you give us
- Booking a call — the scheduling tool embedded on our booking page collects your name, email address, whatever you type into its questions, and your selected time.
- The referral form— your name, your email address, and the description you write of the person or company you are connecting us with. If that description contains someone else’s personal information, please only share what you are comfortable sharing on their behalf; we use it solely to make the introduction.
What we never do
- No cross-site or cross-device tracking.
- No advertising networks, ad pixels, or retargeting.
- No profiling or automated decision-making about you.
- No sale or sharing of personal information as those terms are used in U.S. state privacy laws.
Global Privacy Control
We honor the Global Privacy Control signal. When your browser sends GPC, we do not write the visitor cookie and we do not attach any identifier to your activity. Page activity is still counted, with no way to connect one event to another.
Why we use it
- To operate, secure, and improve the site.
- To respond to booking requests and referrals you send us.
- To understand which offerings and which work resonate, so we write about the things people actually come here for.
- To attribute enquiries to their source, so we know which channels are worth continuing.
Where the GDPR or UK GDPR applies, our lawful basis is legitimate interests for first-party measurement and site security, and performance of a contract or pre-contractual steps at your request when you book a call or submit a referral.
Who processes it
We keep the list of processors short on purpose. Each one only receives what it needs to do its job.
- Vercel — hosting and serverless functions. Vercel processes requests to this site and retains standard server logs.
- Vercel Postgres (Neon) — the database where usage events and lead records are stored.
- Calendly — scheduling. The calendar on our booking page is an embedded frame served by Calendly, which sets its own cookies and processes the details you enter there under its own privacy policy. Nothing loads from Calendly until you open the booking page.
- Assembly — the CRM where enquiries and referrals land, together with the source information described above.
- Our email provider — referral notifications are delivered to our own inbox over our own mail credentials.
How long we keep it
- Usage events — up to 24 months, then deleted.
- The visitor cookie — one year, or until you clear your cookies.
- Enquiries and referrals — for as long as we have an active or prospective relationship, and afterwards only as long as we need them for tax, accounting, and legal records.
Your choices and rights
You can ask us what we hold about you, ask us to correct it, ask us to delete it, ask for a copy in a portable format, or object to our first-party measurement. Depending on where you live you may also have the right to appeal a refusal or to complain to your data protection authority. Write to admin@theaionlab.com and we will respond within the time your law allows — and within 45 days in any case.
You can also clear the alv cookie in your browser at any time, or turn on Global Privacy Control to stop it being set at all. Nothing on this site is gated behind either choice.
Children
This site is for business audiences and is not directed to children. We do not knowingly collect personal information from anyone under 16. If you believe a child has given us information, write to admin@theaionlab.com and we will delete it.
International transfers
We operate from the United States and our processors may store or process data there. Where we transfer personal information out of the UK, EEA, or Switzerland, we rely on the European Commission’s Standard Contractual Clauses or another approved mechanism.
Security
The site is served over HTTPS. Access to the database and CRM is limited to the principals of Aion Labs LLC. No system is perfect, and we will not claim otherwise; if a breach affects you we will notify you as the law requires.
Changes
If this policy changes materially we will update the effective date at the top and, where the change affects information we already hold, contact you directly. This version is effective August 18, 2026.