Privacy

Privacy Policy

Last updated: January 22, 2026

Your Privacy Matters

ProofOS is built on a foundation of data privacy and user control. We comply with the Digital Personal Data Protection (DPDP) Act, 2023, and implement privacy-by-design principles.

1. Data We Collect

Account Information

When you create a wallet, we collect your email address or phone number for authentication purposes.

Proof Data

Claims you add to your wallet are encrypted with AES-256 and stored securely. Only you can decrypt them.

Consent Receipts

Every share you create generates a consent receipt with SHA-256 hashes for audit purposes.

2. How We Use Your Data

✓ To create and maintain your proof wallet

✓ To verify claims using third-party providers (with your consent)

✓ To generate cryptographically-signed proof packages

✓ To enforce share permissions and revocation

✓ To maintain audit trails for compliance

3. DPDP Compliance

Consent Management

Every data sharing action requires explicit consent. Consent receipts are cryptographically signed and can be audited.

Right to Erasure

You can delete your wallet at any time. All associated claims and shares will be permanently removed.

Data Portability

Export your proof packages in Proof Package Format (PPF v1.0) - JSON or PDF. Works without ProofOS.

Data Localization

Indian user data is stored within India on Supabase servers compliant with RBI guidelines.

4. Data Security
AES-256 Encryption

Per-wallet encryption keys. Zero plain-text PII storage.

Ed25519 Signing

Every proof package is cryptographically signed. Tamper-evident.

5. Third-Party Data Sharing

We share data with third parties ONLY:

  • ✓ When you explicitly create a share link (with consent receipt)
  • ✓ For verification providers (UIDAI, EPFO, etc.) with your consent
  • ✓ As required by law enforcement (with valid court orders)

We NEVER sell your data. Ever.

6. Your Rights

✓ Right to access your data

✓ Right to correct inaccurate data

✓ Right to delete your wallet

✓ Right to export your proofs

✓ Right to revoke consent anytime

✓ Right to nominate a data guardian

7. Contact & Data Protection Officer

For privacy concerns or to exercise your rights:

Email: privacy@proofos.com
Data Protection Officer: dpo@proofos.com