Privacy Policy. What Signet7 collects and what it does not.
Effective date: 19 August 2026. Operator: the Signet7 project. Privacy contact: samuel.sanderson@signet7.io.
1. Who we are
Signet7 is a cryptographic email-evidence and optional action-gate product. The current operator is the Signet7 project, founded by Samuel J. Sanderson, with Josh S. Riley as Founding Team Member, and George Terris II as Founding Team Member for marketing. Until a legal entity is formed, this Privacy Policy is the project's published rule for how information is handled. When an entity is formed, that entity becomes the controller or business for the same practices unless a later version of this page says otherwise.
When a customer deploys Signet7 for that customer's own users, Signet7 processes those users' data as a service provider for the customer. The customer decides the purpose. Signet7 follows the customer's documented instructions, this policy, and the product's built-in limits.
2. Data we collect
We collect only what the product needs to do the job you asked it to do.
- Website: page requests. The static site has no signup, payment, or cookie banner. Product notes you Send on Feedback are posted to Signet7 so we can read them. Do not send invoices, passwords, or customer files. GitHub Pages may log IP address, user agent, path, time, and security events as ordinary host logs.
- Recipient verify: supported message bytes are received in memory so Signet7 can hash and check them. Default public verify does not keep the raw email.
- Optional evidence: if an authorized operator turns evidence on, Signet7 stores protected identifiers and digests. It does not store the raw body, submitted signature, or submitted key by default.
- Mailbox agent: a customer-installed agent may read mailbox metadata through IMAP or Microsoft Graph on the customer's machine. It is designed not to keep mail bodies. Local state is message identifiers and cursors, not message text.
- Account and test billing: tenant, program, subscription identifiers, and event IDs. No card numbers, bank credentials, or security codes. Live billing is off.
- Deletion requests: a request identifier, a fingerprint of the subject, scope, status, and time. The raw subject string is not stored.
- Support mail: whatever you send to the published inbox. Do not send live payment messages or secrets.
3. Why we process it
We process information to verify supported sender and content evidence, operate the optional action gate, secure the service, prevent abuse, answer deletion and cancel requests, and, if separately authorized later, project a subscription. We do not sell personal data. We do not use personal data for advertising. We do not train a generative model on customer content.
4. Artificial intelligence
Signet7 is not a generative chatbot and does not generate email or marketing copy. An optional policy engine can record whether a named action was allowed or blocked. That is a static rule check. See AI use.
5. Data providers
Named providers are listed on Data providers. Stripe is not a live subprocessor. GitHub Pages hosts this website. Amazon Web Services is an optional private deploy target. Customer mailbox providers are used only when the customer connects them.
6. Retention and deletion
Raw email and transient uploads are not retained by default. Transient files are deleted after processing. If optional evidence is on, hash-chained evidence rows are append-only. A deletion request suppresses current use of the identified personal data and purges transient uploads. It does not silently rewrite historical hash rows. Legal holds, if any, are recorded separately.
How to request deletion: email samuel.sanderson@signet7.io with the word Delete, or call POST /api/v1/privacy/deletion-request on an operated instance. We will acknowledge the request and apply the product deletion path. Identity checks apply.
7. Rights
You may request access, correction, deletion, export, or restriction. Send the request to the privacy contact. We will not require a maze of pages. Applicable law may add or limit these rights. This policy does not claim that Signet7 is currently a CPRA "business" or a GDPR "controller" in the European Union. If those thresholds are later met, the same rights process applies and this page will say so.
8. Children
The product is for business email and adult operators. It is not directed to children under 13, and we do not knowingly collect their personal information. Do not submit a child's personal information.
9. Security and public storage
Declared object stores are configured with public-access blocks. Default verify does not keep raw email. This is not a certification, penetration-test report, or live-account audit.
10. International transfers
The public website is hosted on GitHub Pages. Optional AWS regions are chosen at deploy time. There is no live EU establishment claimed on this page. If a later deploy processes EU personal data, the formed entity will name the transfer tool on this page before that processing starts.
11. Changes
Material changes will be posted on this page with a new effective date. Continued use after the new date is use under the updated policy.
12. Contact
Privacy, deletion, and cancel requests: samuel.sanderson@signet7.io. Same inbox as Contact. Do not send live payment messages or secrets.