Privacy & terms — Inverba
JavaScript is off, so the interactive parts of this page (the in-browser verify demo, copy buttons) won't run. Everything that matters is still readable below — and the same applies to Inverba itself: verification is plain SHA-256 and Ed25519, checkable with about thirty lines in any language.
DRAFT — placeholder legal copy pending review by counsel. Do not ship as-is.
Privacy policy · effective 2026-07-01

We designed Inverba to know as little about you as possible.

Self-hosted Inverba collects nothing. The open-source engine has no telemetry, no phone-home, and no account requirement. Your keys, records, and scraped content stay on your infrastructure. We cannot see them, and we built it that way on purpose.

The managed registry sees hashes, not content. When the hosted registry launches and you anchor records in it, we will receive the signed record metadata (hashes, timestamps, key IDs) — never the scraped content itself. Anchored record metadata is public by design; that is what makes the log auditable.

This website. We use no third-party analytics or advertising trackers. Server logs (IP, user agent) are retained for 30 days for abuse prevention, then deleted.

Managed accounts. For paid tiers we store your name, work email, and billing details with our payment processor. We do not sell or share personal data. Deletion requests: privacy@inverba.dev, honored within 30 days.

GDPR / data residency. Managed-tier data is processed in the EU. A standard DPA is available for enterprise agreements.

Terms of service · effective 2026-07-01

Short, because the code does most of the talking.

The open core is Apache-2.0. Its license — not these terms — governs your use of the self-hosted engine. These terms cover the managed registry, hosted services, and this website.

Your responsibility. You are responsible for what you scrape and how you use it. A Inverba record proves provenance; it is not legal authorization to collect or use content, and nothing we provide is legal advice.

Acceptable use. Don't use managed services to violate law, evade technical protection measures unlawfully, or attack third parties. We may suspend accounts for abuse, with notice where lawful.

The registry is append-only. By design we cannot delete or alter anchored record metadata without breaking the log — this is a feature, and you accept it when anchoring. Do not anchor records containing personal data in the metadata fields.

Warranties & liability. Managed services are provided "as is"; liability is capped at fees paid in the prior 12 months, except where law says otherwise. Enterprise agreements may supersede these terms.

Changes. We version these terms in the open, like everything else. Material changes announced 30 days ahead: legal@inverba.dev.