Draft. This has not been reviewed by a lawyer. It is published so the sandbox has a real policy URL, and it describes what the software actually does today. Do not rely on it as a legal document until that review has happened.

Privacy policy

Last updated 9 September 2026. Applies to IRLProof at https://sandbox.irlproof.me.

The part that is unusual, in full

This service exists to let you prove you are a real person without telling anyone who you are. That only means something if the data practices match, so they are stated here first and in plain terms rather than buried.

What we take from your driver's license, and what we keep

When you sign in, your wallet app shows you exactly what is being requested and you approve it. Your phone sends us a signed response. From that response we derive one value and keep it:

We do not keep your name, date of birth, address, license number, photo, height, weight, eye colour, or any other detail. Where those values pass through our software at all, they exist only in memory for the moment it takes to process your sign-in, and are never written to a database, a log, or a backup.

What this means in practice

We cannot tell anyone which license belongs to which account, because we do not know. Not to a court, not to law enforcement, not to an advertiser, not to you, and not to ourselves. This is not a promise about what we would choose to do if asked. The information does not exist in our systems, so there is nothing to disclose, subpoena, sell or leak.

The trade-off is real and you should know it: if you lose access to your license, we cannot recover your account, because we have no way to recognise you other than the license itself.

What is public, because you publish it

A proof is meant to be published. When you create one, it says which platform and which account name you claim, when your license was checked, and when it expires. It contains no identifier for you and nothing that connects it to any other proof you have made. Two proofs you create cannot be linked to each other from their contents.

If you add your own details to a proof, those are published too, and are shown clearly marked as written by you and not checked by anyone.

We do not sell anything about you

We do not sell, rent, or share personal information with third parties, and there is very little we could sell even if we wanted to. Proof pages load nothing from any third party: no advertising network, no analytics script, no tracking pixel, no embedded fonts. Someone reading your proof is not reported to anyone.

Everything else

Information we collect

How we use it

To recognise you when you return, to issue and serve the proofs you ask for, to apply limits that keep the service resistant to automated abuse, and to keep the service running and secure. We do not use it for advertising or profiling.

Who we share it with

Service providers who host and run the service on our behalf, under obligations to protect it. Otherwise, only where required by law, and see the section above for the limits of what we are able to disclose at all.

How long we keep it

Account data for as long as your account exists. Proofs are kept while active and, once revoked or expired, are kept in a reduced form so that anyone who finds your published link gets a truthful answer rather than a broken page.

Deleting your account

You can delete your account at any time from your dashboard. Doing so revokes every proof you have made and removes the credential details and signed proofs we hold. The irreversible fingerprint is retained so that a deleted account cannot be silently recreated to escape limits; it identifies nobody on its own.

Your rights

Depending on where you live you may have rights to access, correct, delete, or receive a copy of your personal information, and to object to certain processing. Contact us at the address below. Note again that we hold almost nothing about you, and cannot connect a request to an account without your being signed in to it.

Children

This service is not directed at children and requires a government-issued driver's license or state ID to use.

Security

Data is encrypted in transit and at rest. The secret key used to produce the irreversible fingerprint is held in a separate managed key store, not in the application database, so that access to one does not give access to the other.

Changes

We will update the date at the top when this changes. Material changes will be announced on the site.

Contact

privacy@irlproof.me

Terms of service · How this works