Privacy

What we know about you, in plain language

Short version: almost nothing, by design. Not storing your data is the product's architecture, not a policy promise.

If you just visit this site

Nothing. No cookies, no trackers, no analytics. The verifier on Check a proof runs entirely in your browser — a bundle you drop there is read locally and never uploaded. You can watch the network tab to confirm both claims. The site is served by Cloudflare Pages, which handles the connection like any host.

If you create a hosted account

We store the email address and organisation name you give at signup, and your API key in hashed form. That's the account. Your evidence log stores fingerprints (one-way, salted hashes) and non-sensitive metadata of your agents' actions — never prompts, outputs, tool arguments, or customer data. The salts that would make a fingerprint checkable stay on your machine, so the log is unreadable to us by construction.

If you point traffic at the hosted gateway, requests pass through us in transit to reach your model provider; they are relayed, not written down. If that transit is more than you want, run the recorder inside your own network — nothing leaves it, and that is the intended production setup.

Deletion, retention, questions

Email proof@swarrm.ai from your signup address and we delete your account and your tenant's log. We keep data only while your account exists — there is no secondary use, no sale, no sharing, no advertising, full stop. Data is processed in Switzerland on hardware we own.

Anchoring writes a single 32-byte hash of a log checkpoint to a public blockchain and a timestamp authority. A hash of a hash of your metadata — it identifies no one and nothing.