Legal
Privacy
Last updated: August 5, 2026
This policy describes data handling on getswiftapi.com and its supporting website APIs.
Information submitted to SwiftAPI Labs
The enterprise-evaluation form may collect your name, work email, organization, role, deployment stack or model route, evaluation interest, use case, and desired timeline. The current intake flow stores these fields in the website's SQLite database and may send confirmation and administrative notification emails through Resend.
The current intake implementation also receives server request metadata. It stores the submitting IP address in the evaluation-intake record and may include that raw IP address in an administrative notification email for abuse prevention and request review.
Live benchmark and sandbox submissions
Running the VOID Test causes the website server to send the benchmark's fixed prompts to configured model providers. The Exploratory Research Sandbox sends the prompt you enter to the selected provider. Provider-specific terms and privacy practices apply to those calls.
Do not submit confidential, personal, illegal, regulated, or security-sensitive content to public testing surfaces. Recent sandbox events may be retained temporarily in server memory for operation of the service. Public feed responses do not expose raw prompt text or full attestation payloads.
Attestation verification
Pasted or uploaded attestation contents are processed locally in your browser. The verifier fetches public authority information from swiftapi.ai but does not transmit the pasted attestation to SwiftAPI Labs or an analytics service.
Operational and security processing
The service processes request headers, timestamps, rate-limit state, error information, and other server metadata needed to operate the site, prevent abuse, diagnose failures, and secure protected administrative routes. Legacy authority-request workflows store hashed IP identifiers, key hashes, request status, and audit records in SQLite. Plaintext authority keys are not persisted.
Service providers and external links
Resend may process email delivery data. Railway hosts the deployed service and persistent SQLite volume. Model providers process live benchmark or sandbox calls. DOI, Zenodo, GitHub, PyPI, USPTO, rayanpal.tech, and provider links lead to external services with separate policies.
Retention and deletion
Evaluation submissions and operational records are retained as needed to respond, maintain an audit trail, prevent abuse, and operate the service. Temporary in-memory research events may be lost when the service restarts. To request access, correction, or deletion of submitted contact information, email sharthok.rayan.pal@gmail.com.
Cookies and analytics
The public site does not add advertising analytics or tracking pixels. Essential platform or security behavior may still involve standard request headers and browser storage controlled by the hosting or browser environment.
Contact
Privacy questions: sharthok.rayan.pal@gmail.com.