Policy
Privacy & account integrity
Account integrity & privacy
One person, one account. When you sign in we seal a device record built from five coarse signals only — platform, browser, timezone bucket, screen bucket and language. It is hashed, stored encrypted and carries a deletion date. We do not use biometric fingerprinting, and we do not probe canvas, audio, fonts or graphics hardware.
This exists for one reason: to stop one device farming many accounts for spam, abuse or fraud. You can see and revoke your own devices at any time, and revoking one ends its live sessions immediately.
Fair use & your data on exit
- A device used to reach 3 or more accounts, or to create 3 or more accounts within 24 hours, is marked suspicious and reviewed.
- A confirmed violation receives one written final warning before any account is blocked.
- A repeat violation blocks the account, and a severe pattern adds the device to the ban list so it cannot create new accounts.
- A blocked account keeps full export access for 72 hours. After that window the data is permanently deleted, as committed.
- Your conversations are never sent to any AI or third-party moderation service. File safety runs on our own infrastructure.