RMDWSecurity & Trust
RMDW LLC. How we protect your data across everything we build. Last updated July 2026.
Privacy and security are not a bolt-on for us. They are the reason our private AI product exists, and we hold the Academy to the same bar. This page is a plain, honest account of how we handle your information and how we run the systems behind it.
Your data stays yours
For the Academy, we store only what the product needs: your email for sign-in, your course progress, and your plan and billing status. We never sell or rent your personal data, and we never hand it to a third-party AI service. Across everything we build, your data is used to deliver the thing you paid for, nothing else.
Private AI, by design
Our AI product, Echols, is built the opposite way to most AI tools. Your chats, code, and files are processed on hardware we control, never sent to a third-party AI cloud, never sold, and never used to train any model. For businesses that want their own private deployment, it runs on their hardware, so their data never leaves their building. The full technical detail is on the Echols security page.
Payments
Payments are handled by Stripe. We never see or store your full card details. Stripe processes them directly and we keep only a customer reference and your subscription status.
Encryption
Access tokens and secrets are encrypted at rest, our managed database encrypts stored data at rest and takes automated backups, and all traffic between you and our sites is encrypted in transit over TLS.
Reliability
We monitor our systems around the clock with automated health checks and real-time alerts, services recover automatically after a restart, critical hardware runs on battery-backed (UPS) power, and your account data lives in a managed database with automated backups. We treat uptime like production.
Who builds and secures it
RMDW is built and operated by Richard Echols, a mathematician and data engineer with an enterprise background (including years at IBM) and a CompTIA Security+ certification. Security is designed into how we build, not bolted on afterward.
Formal certifications, honestly
We do not yet hold third-party attestations such as SOC 2 or ISO 27001. Those frameworks are built to reassure customers about vendors that hold other people's data in a shared cloud at scale, and we pursue them as we grow into regulated clients in fields like healthcare, legal, and finance. For private, on-premise AI deployments the question is largely moot, because your data never leaves your control, which is the exact outcome those audits exist to verify. We would rather tell you plainly where we are than imply a badge we have not yet earned.
Report a security issue
Questions, or something to report? Email richardechols@rmdwllc.com. We take responsible disclosure seriously and will respond quickly.
This page is provided in good faith and describes our current practices, which we improve over time. It is not legal advice or a contractual warranty.