Soliton

Privacy Policy

Last updated: June 1, 2026  ·  Version 1.0

This is a working draft prepared for internal review. It is not legal advice and should be reviewed by a qualified attorney before launch.

1. Who We Are

Soliton is a video-conferencing service operated by Metaplexus LLC, a company based in the United States ("we," "us," or "our"), which is the data controller for the personal information described here. You can reach us about privacy at soliton@metadock.io.

If you are in the European Union or United Kingdom and have questions about your rights under the GDPR, you can contact us at the same address. We will appoint a representative under Article 27 GDPR if and when we are required to do so.

2. Information We Collect

Information you give us

Account details such as your name, email address, password (stored only in hashed form), and any profile information you choose to add. If you buy a paid plan, our payment processor collects billing details; we do not store full card numbers.

Meeting content

When you use Soliton to host or join a call, we process the audio, video, screen-sharing streams, in-call chat, and shared files needed to deliver the meeting in real time. If a meeting is recorded, we store the recording, transcript (if generated), and related metadata on behalf of the account that created it. See Section 14 on recordings and consent.

Information we collect automatically

Meeting metadata (participant identifiers, join/leave times, duration, and quality statistics such as bandwidth and connection diagnostics), device and connection information (IP address, browser/app type, operating system), and usage data about how you interact with the Service.

Information from third parties

If you sign in or join through a partner service (for example, a community hosted on MetaDock), we may receive basic identifying information from that service to connect your session.

3. How and Why We Use Your Information

4. Legal Bases (EU / UK Users)

Where the GDPR applies, we rely on: performance of our contract with you (to provide the Service), your consent (for marketing and non-essential cookies), our legitimate interests (to secure and improve the Service), and compliance with legal obligations.

5. Automated Processing

We do not make decisions that produce legal or similarly significant effects about you based solely on automated processing. Features such as automated transcription or noise suppression process meeting content only to deliver the feature you have enabled.

6. How We Share Information

Service providers who host infrastructure, process payments, or provide analytics under contract, acting only on our instructions.

Other meeting participants see the name and content you choose to share in a call. A meeting host may record or store a session as described in Section 14.

Legal and safety — where required by law or to protect the rights, safety, and security of users, the public, or Metaplexus LLC.

Business transfer — if Metaplexus LLC is involved in a merger, acquisition, or sale of assets, subject to this policy.

We do not sell your personal information for money. We do not "sell" or "share" personal information for cross-context behavioral advertising as those terms are defined under California and other state privacy laws. If this ever changes, we will update this policy and provide the required opt-out.

7. Cookies and Similar Technologies

We use strictly-necessary cookies for session and security, which are always on. For non-essential cookies (such as analytics), we ask for your active consent through a cookie banner and store your choice. You can change non-essential cookie settings at any time.

8. International Data Transfers

We operate from the United States, and your information may be processed there or in other countries where our providers operate. Where required, we use appropriate safeguards (such as Standard Contractual Clauses) for transfers out of the EU/UK.

9. How Long We Keep Your Information

We keep account information for as long as your account is active and for a reasonable period afterward to meet legal, security, and record-keeping needs. Recordings and transcripts are kept under the control of the account that created them and are deleted when that account deletes them or closes, subject to short backup-retention tails. Meeting metadata and diagnostics are kept only as long as needed for the purposes above.

10. Your Rights and Choices

Depending on where you live, you may have rights to access, correct, delete, or port your personal information, to object to or restrict certain processing, and to withdraw consent. To exercise any right, contact us at soliton@metadock.io or use the controls in the app. We will verify your request and respond within the time the applicable law requires. EU/UK users may also lodge a complaint with their local data-protection authority.

11. Children

Soliton is not intended for children under 13, and we do not knowingly collect personal information from them. Consistent with the Children's Online Privacy Protection Act (COPPA), if we learn we have collected personal information from a child under 13 without verifiable parental consent, we will delete it promptly. Where Soliton is used by minors aged 13-17, we limit certain features and processing as appropriate.

12. Security

We use technical and organizational measures designed to protect your information, including encryption of meeting media in transit. No method of transmission or storage is perfectly secure, but we work to protect your information and to address incidents promptly.

13. U.S. State Privacy Disclosures

Residents of California, Virginia, Colorado, Connecticut, Texas, and other states with comprehensive privacy laws have specific rights, including the right to know, access, correct, and delete personal information, and to opt out of targeted advertising, sale, or certain profiling. We do not sell personal information or use it for cross-context behavioral advertising. To exercise your rights, contact us at soliton@metadock.io.

14. Recordings and Consent

Soliton lets a meeting host record a session. When a meeting is being recorded, we display a clear recording indicator to participants. You are responsible for obtaining any consent the law requires before recording. Many U.S. states (including California, Connecticut, Delaware, Florida, Illinois, Maryland, Massachusetts, Montana, New Hampshire, Pennsylvania, Washington, and the District of Columbia) require the consent of all parties to record a conversation; federal law and most other states require at least one party's consent. When participants are in different states, the strictest applicable law controls. We process and store recordings only on behalf of the account that created them, as described in Sections 9 and 6.

15. Changes to This Policy

We may update this Privacy Policy as Soliton and the law evolve. We will post the updated version with a new "Last updated" date and, for material changes, provide additional notice (such as in the app or by email). Your continued use after an update means you accept the revised policy.

16. Contact Us

For any privacy question or request, contact Metaplexus LLC at soliton@metadock.io.