Privacy Policy

Last Updated: August 6, 2026Version 2.0

1. Data Sovereignty & Zero-Retention Philosophy

At TaskVerified, privacy and control are fundamental to our architecture. For Mode A users (API & MCP), we operate on a strict zero-retention model: all text, code, and files submitted for verification are processed in memory and immediately discarded. For Mode B users (Platform), we support "Sovereign Storage" integrations, allowing you to automatically archive verification assets directly to your private Google Drive or Microsoft OneDrive.

2. Information We Collect

We collect only the data necessary to provide deterministic verification services, secure user authentication, and system monitoring:

  • Identity Data: Name, email address, and profile credentials (managed securely via Clerk).
  • Verification Inputs: Raw text, code snippets, files, or URLs submitted to our engines for validation (Mode A inputs are not stored; Mode B inputs are stored in your selected storage).
  • Telemetry & Interaction Metadata: Keyboard cadence and window focus patterns (collected only if you explicitly enable the Headless Time Tracking / Proof-of-Work feature). We never capture screen pixels or log text content.
  • Billing & Subscription Data: Subscription tiers, billing contact information, and payment records (managed securely via Polar).
  • System Logs: IP addresses, API request metadata, and rate limit telemetry used exclusively to maintain security and block malicious usage.

3. How We Use Your Data

Your information is utilized solely to:

  • Execute deterministic checks from the 119-Rule Forensic Registry on your inputs.
  • Generate cryptographic pass/fail verification certificates and audit trails.
  • Render visual pipelines, annotation layers, and client-facing delivery portals.
  • Calculate proof-of-work metrics (only when Headless Time Tracking is active).
  • Process billing, manage subscriptions, and prevent fraud or API abuse.

4. Third-Party Sub-processors

We share data only with trusted service providers essential to hosting our infrastructure and executing requested checks. We never sell or license your data to third-party advertisers or brokers.

ProviderPurpose
ClerkAuthentication & Profile Management
NeonRelational Database (PostgreSQL)
AblyReal-time Updates & Event Messaging
CloudflareSecure File Storage (R2)
PolarSubscription Management & Billing Infrastructure
ResendTransactional Email Delivery
VercelServerless Hosting & Global CDN
Proprietary Verification PartnersAI Authorship Probability & Plagiarism Scanning (e.g., Winston AI)

5. Data Retention & Erasure Rights

You maintain complete control over your data. Mode B accounts scheduled for deletion enter a 30-day "Soft Delete" period, during which you can retrieve your verification logs. Following the 30-day grace period, all associated assets are permanently purged from our databases, except where retention is legally required. You may exercise your right to access, correct, or erase your personal information at any time.

6. Cookies & Tracking

We use only strictly necessary functional cookies required for authentication and security (managed by Clerk). We do not deploy any marketing, profiling, or cross-site tracking cookies.

7. Integrations & Sovereign Storage Permissions

Enabling integrations (Google Drive or Microsoft OneDrive) grants the platform limited API permissions to write verified assets directly to dedicated folders in your cloud account. You can revoke these permissions at any time directly through your cloud provider's security settings.

8. Contact & Legal Entity

TaskVerified is operated from Varanasi, India. For privacy inquiries, data deletion requests, or to exercise your rights under Indian data protection laws, please contact our Data Protection Office at hello@taskverified.com.

Privacy Policy | TaskVerified — Forensic Data Governance | TaskVerified