// TRUST & COMPLIANCE SPEC. CC-DOC-PRIVACY LAST UPDATED: AUGUST 25, 2026

Privacy Policy & Data Handling Protocol.

Codecurv is architected to operate with minimal data collection, client-side computational privacy, and encrypted ingress channels.

FREE UTILITIES RUNTIME 100% Client-Side Memory
TRACKING PIXELS 0 Third-Party Trackers
DATA BROKER RESALE Zero External Egress
INGRESS ENCRYPTION TLS 1.3 / AES-256

01. Sovereign Client-Side Execution

All free computational tools and workbenches on Codecurv (including the WhatsApp Trajectory Dispatcher, Webhook Payload Transformer, and UTM Campaign Sanitizer) execute entirely within your web browser’s JavaScript runtime. Your parameters, phone numbers, custom messages, JSON payloads, and UTM parameters are processed in local memory and are never transmitted to, logged by, or stored on our web servers.

02. Information Collected via Direct Ingress

When you submit an inquiry through our Direct Dispatch Terminal (`/contact`), we collect the information you explicitly provide:

  • Operator Name / Identification: Used to address correspondence.
  • Communication Coordinate (Email): Used to reply to your inquiry.
  • Enterprise / Organization: Optional context regarding your team or project.
  • Intent Category: Categorizes technical or licensing requests.
  • Inquiry Payload: Details of your architecture or licensing requirements.

This data is transmitted via encrypted TLS socket connections to our mail infrastructure (Zoho SMTP) and retained in protected server records to fulfill communication requests. We do not sell, rent, or trade inquiry information with advertising networks or third parties.

03. Rate Limiting & Ephemeral Security Hashes

To maintain uptime and prevent automated denial-of-service (DoS) attacks, our server infrastructure records request rates using salted SHA-256 hashes of client IP addresses. These hashes are stored in temporary cache files, maintained for 60 to 120 seconds, and purged automatically. Raw IP addresses are not stored or shared.

04. Cookies & Local Storage

Codecurv does not use advertising, marketing, or tracking cookies. We utilize:

  • Essential Session Cookie (`__Host_Codecurv_Session`): Provides cryptographic CSRF verification on form submissions.
  • Browser Local Storage (`codecurv_theme_preference`): Retains your interface theme selection (`light` or `dark`) to prevent visual flashing on page load.

05. Third-Party Infrastructure Services

To deliver our web assets securely, we utilize the following service providers:

  • Google Fonts: Web typography delivery via `fonts.googleapis.com` and `fonts.gstatic.com`.
  • ImageKit CDN: Static brand icon and visual asset hosting.
  • Zoho Mail: Encrypted transport for contact form communications.

06. Data Retention & Security

Inquiry records are retained only as long as necessary to address your communication, manage software licenses, or meet legal requirements. All web traffic is encrypted via HTTPS with mandatory HSTS policies.

07. User Rights & Contact Information

You may request access to, correction of, or deletion of your communication records at any time. For questions regarding this policy, contact our engineering team:

// INGRESS COORDINATES

Email: connect@codecurv.com
Entity: Codecurv