Amazon One was purposefully designed with data security in mind. In addition to following industry best practices regarding encryption and access controls, we have also included physical hardware security measures that are built into each Amazon One device. We intentionally architected the Amazon One service to store all highly sensitive biometric data off-device in a highly secure, isolated, and purpose-built cloud storage environment. Additionally, access controls are enforced and audited on both the data repository and the key management system. This ensures that, once collected, biometric data is transient and never persists on a device. Palm data that is provided to Amazon One is stored separately from other Amazon consumer data.
We understand that how we protect consumer data might be top-of-mind for businesses. At Amazon, earning and maintaining consumer trust is very important. We take data security and privacy seriously, and any sensitive data is treated in accordance with our long-standing policies.
We have purposefully designed Amazon One so that consumers have full control over their data and must take intentional action to use the service. Potential customers can review our security and privacy practices, FAQs, and terms at the Amazon One website.