# Privacy Policy — VerixID

*Effective Date: March 1, 2026*[cite: 5]

VerixID is engineered to be **anonymous by design**[cite: 5]. We never receive, store, or access your file contents[cite: 5]. We do not construct user profiles[cite: 5]. The only personal data we retain is an email address—and strictly for paid tier users to facilitate billing communications[cite: 5].

---

## 01 · SERVICE OPERATOR

VerixID operates as a digital document integrity recording system governed under the laws of the Republic of Indonesia[cite: 5]. Privacy-related inquiries can be submitted via our [Contact Page](/en/contact/)[cite: 5].

---

## 02 · PRIVACY PRINCIPLES

* **Zero Custody:** Cryptographic fingerprint generation (SHA-256) executes entirely on your client device[cite: 5]. Files are never transmitted to our infrastructure because our system architecture lacks the mechanisms to receive them[cite: 5].
* **Anonymous by Default:** Utilizing our platform requires no user account, full name, or identity credentials[cite: 5]. Free tier users remain entirely anonymous[cite: 5].
* **Data Minimization:** We store only the technical minimum required to operate the verification platform[cite: 5].

---

## 03 · DATA WE STORE

### 3.1 Ledger Records (Integrity Logs)
When a file is registered, the following data points are committed to the ledger[cite: 5]:
* Mathematical cryptographic fingerprint (SHA-256) of the file (never the source file contents)[cite: 5]
* Server timestamp generated at registration[cite: 5]
* Pseudo-random Record ID[cite: 5]
* Cryptographic hash of the Ownership Key (never the raw Key itself)[cite: 5]
* Digital signature of the record[cite: 5]
* Optional client-submitted metadata: filename and file size[cite: 5]

> Ledger records **do not constitute personal data** as they contain no identity attributes and cannot be linked to an individual without the client-held Ownership Key[cite: 5].

### 3.2 Billing Data (Paid Tier Users Only)
For paid subscriptions, we process and retain[cite: 5]:
* **Email Address:** Used exclusively for invoice delivery and critical service notifications[cite: 5].
* **Transaction Records:** Processed directly by integrated payment gateway providers[cite: 5].

Email addresses are never used for marketing campaigns, shared with third parties outside of payment processors, or leveraged for user profiling[cite: 5].

### 3.3 Data We Explicitly Do Not Collect
VerixID **strictly excludes the collection and retention of**[cite: 5]:
* Source file contents in any payload or format[cite: 5]
* IP addresses, geolocation metrics, or browser User-Agent telemetry[cite: 5]
* User legal names, physical addresses, or personal identifiers[cite: 5]
* Tracking cookies, cross-session identifiers, or behavioral analytics[cite: 5]

---

## 04 · LEGAL BASIS FOR PROCESSING

VerixID is a registered Electronic System Provider with Komdigi (Reg No. `022901.01/DJAI.PSE/04/2026`)[cite: 5]. Data processing complies with **Law No. 27 of 2022 on Personal Data Protection (UU PDP)** under the following legal bases[cite: 5]:
* **Service Delivery:** Ledger record processing is essential to fulfill document integrity verification functions[cite: 5].
* **Contractual Obligations:** Email data retention is necessary to fulfill billing obligations and administrative communications for paid plans[cite: 5].

---

## 05 · DATA RETENTION

* **Ledger Records:** Retained for 1 year post-registration in alignment with VerixID retention commitments[cite: 5]. Records are strictly *immutable* and cannot be altered or removed prior to the expiration of the retention window[cite: 5].
* **Billing Email Data:** Maintained for the duration of an active subscription and purged following the fulfillment of accounting compliance requirements[cite: 5].

---

## 06 · THIRD-PARTY DATA SHARING

We do not sell, lease, or monetize user data[cite: 5]. Third-party service interactions are strictly limited to[cite: 5]:
* **Infrastructure Providers:** Edge cloud computing environments processing zero identity parameters[cite: 5].
* **Payment Processors:** Authorized gateways executing financial transactions[cite: 5].
* **Legal Authorities:** Compliance with valid judicial orders or law enforcement demands (strictly confined to non-personal ledger records)[cite: 5].

---

## 07 · YOUR DATA RIGHTS

Under Law No. 27 of 2022 (UU PDP), you hold the right to access, rectify, or request deletion of your billing email records[cite: 5]. 

*Note:* Ledger records are cryptographic and *immutable*, rendering modification or deletion technically impossible[cite: 5]. However, because ledger records hold no personal data, deletion is irrelevant under data privacy frameworks[cite: 5]. To exercise your rights regarding billing data, submit a request via our [Contact Page](/en/contact/)[cite: 5].

---

## 08 · COOKIES & SECURITY ARCHITECTURE

* **Zero Tracking Cookies:** VerixID employs no tracking cookies, third-party analytics scripts, or advertising pixels[cite: 5].
* **Local Session Storage:** Utilizes browser `sessionStorage` solely to maintain state across pages within a single session (purged automatically upon tab closure)[cite: 5].
* **Technical Safeguards:** Protected via TLS encryption, stringent infrastructure access controls, and strict domain isolation across ledger, billing, and forensic layers[cite: 5].

---

## NAVIGATION & RESOURCES

* **Products:** [Submit File](/#dropzone) | [Verify Record](/en/verify/) | [COA Services](/en/coa/)[cite: 5]
* **Legal & Governance:** [Terms of Service](/en/terms/) | [Acceptable Use](/en/acceptable-use/) | [Manifesto](/en/manifesto/)[cite: 5]
* **Support:** [Contact Us](/en/contact/)[cite: 5]

---

*Registered Electronic System Provider (PSE Komdigi) No. `022901.01/DJAI.PSE/04/2026`.*[cite: 5]