CSCapture Signoff
Privacy ยท validation build

What this pilot stores and why.

Capture Signoff processes only public HTTP(S) pages submitted by an invited pilot owner. The persistent pilot stores the project name and submitted public URLs in a private Cloudflare D1 database. It stores screenshots, evidence manifests, hashes, capture status, and page approval decisions in private Cloudflare R2 and D1 storage so an owner can create a client review link and compare a later capture.

Reviewers do not need an account. The current pilot does not ask for or store reviewer names or email addresses. Review tokens are stored as hashes, expire after seven days, can be revoked, and are limited in use. The owner access key is kept in the browser tab's session storage and is sent only as an authorization credential.

Projects use a 30-day retention setting and can be deleted immediately from the pilot workspace. Deletion removes the project database records and its private stored artifacts. A daily retention job removes expired pilot projects. Backups and infrastructure logs may persist for a limited period under Cloudflare's service practices.

Coarse product events contain an event name, short source label, numeric value, time, and internal-test marker. They do not contain submitted URLs, screenshots, HTML, page text, project names, approval tokens, reviewer identity, cookies, form values, or credentials. The service itself does not set advertising or cross-site tracking cookies.

Cloudflare provides hosting, Browser Rendering, D1, R2, Queues, DNS, and security infrastructure and therefore processes network requests and stored service data on our behalf. Do not submit logged-in pages, credentials, localhost, private network targets, or pages you are not permitted to access.

For access or deletion questions, contact lidaban2025@gmail.com. This page describes the current invite-only validation build and will be updated before any public self-service or paid launch.