Legal

Privacy

This policy describes data handling on getswiftapi.com and its supporting website APIs.

Information submitted to SwiftAPI Labs

The enterprise-evaluation form may collect your name, work email, organization, role, deployment stack or model route, evaluation interest, use case, and desired timeline. The current intake flow stores these fields in the website's SQLite database and may send confirmation and administrative notification emails through Resend.

The current intake implementation also receives server request metadata. It stores the submitting IP address in the evaluation-intake record and may include that raw IP address in an administrative notification email for abuse prevention and request review.

Live benchmark and sandbox submissions

Running the VOID Test causes the website server to send the benchmark's fixed prompts to configured model providers. The Exploratory Research Sandbox sends the prompt you enter to the selected provider. Provider-specific terms and privacy practices apply to those calls.

Do not submit confidential, personal, illegal, regulated, or security-sensitive content to public testing surfaces. Recent sandbox events may be retained temporarily in server memory for operation of the service. Public feed responses do not expose raw prompt text or full attestation payloads.

Attestation verification

Pasted or uploaded attestation contents are processed locally in your browser. The verifier fetches public authority information from swiftapi.ai but does not transmit the pasted attestation to SwiftAPI Labs or an analytics service.

Operational and security processing

The service processes request headers, timestamps, rate-limit state, error information, and other server metadata needed to operate the site, prevent abuse, diagnose failures, and secure protected administrative routes. Legacy authority-request workflows store hashed IP identifiers, key hashes, request status, and audit records in SQLite. Plaintext authority keys are not persisted.

Service providers and external links

Resend may process email delivery data. Railway hosts the deployed service and persistent SQLite volume. Model providers process live benchmark or sandbox calls. DOI, Zenodo, GitHub, PyPI, USPTO, rayanpal.tech, and provider links lead to external services with separate policies.

Retention and deletion

Evaluation submissions and operational records are retained as needed to respond, maintain an audit trail, prevent abuse, and operate the service. Temporary in-memory research events may be lost when the service restarts. To request access, correction, or deletion of submitted contact information, email sharthok.rayan.pal@gmail.com.

Cookies and analytics

The public site does not add advertising analytics or tracking pixels. Essential platform or security behavior may still involve standard request headers and browser storage controlled by the hosting or browser environment.

Contact

Privacy questions: sharthok.rayan.pal@gmail.com.