Privacy statement

What we store, why, for how long, and how to make us delete it. Written for the person reading it, not for a compliance file.

Last updated 12 August 2026[email protected]
FILES YOU VERIFY
Never stored

The public tool analyses in your browser. Nothing is uploaded.

TRACKING
No cookies

No advertising, no third-party analytics, no consent banner needed.

DATA LOCATION
EU only

Three sub-processors, all EU/EEA, no transfers outside.

1 · Who is responsible

PROVENA B.V., Keizersgracht 241, 1016 EA Amsterdam, is the controller for data about visitors to this site and about account holders. For asset data processed on behalf of a customer we act as processor, governed by the data processing agreement.

2 · What we hold, and for how long

CATEGORYBASISRETENTION
Account name and emailContractAccount life + 90 days
Billing recordsLegal obligation7 years
Manifests and hashesContractAccount life
Ledger entriesContractAccount life (append-only)
Audit log of admin actionsLegitimate interest24 months
Support correspondenceLegitimate interest24 months
Files in the public verifierNot stored

Ledger entries are the one category we cannot delete on request while an account is active: an append-only record that can be edited is not evidence. They contain hashes and identifiers, not asset content, and are removed with the workspace.

3 · What we deliberately do not do

  • No advertising or marketing cookies, on any page
  • No third-party analytics; aggregate request counts only, no visitor identifiers
  • No storage of files submitted to the public verification tool
  • No training of models on customer assets, ever, under any plan
  • No sale or sharing of personal data with anyone

4 · Your rights

You may request access, correction, deletion, restriction, portability or object to processing. Write to [email protected]; we answer within 30 days and usually within five working days. You can lodge a complaint with the Autoriteit Persoonsgegevens or your local supervisory authority.

5 · Security and breach notification

Encryption in transit and at rest, enforced two-factor authentication, role separation for signing operations, append-only audit logging. If a breach affects your data we notify you within 72 hours with what we know at that point, and update as we learn more.

6 · Changes

Material changes are announced 30 days ahead by email to account holders and on this page. The previous version stays available on request.

Data processing agreementSub-processor listData residency