inkline/ docs

Privacy

We never see your content

Inkline does not collect, store, or transmit the content you approve. For email, that means the text, subject, and recipients. When you approve with Touch ID, only a SHA-256 hash of the content leaves your Mac. A hash cannot be turned back into the content.

What the notary stores

Our notary keeps your public key and the date you enrolled. That is the whole record. Each single-use nonce is deleted the moment it is spent, and no copy of the receipt or the hash is kept: the receipt lives only in the email's stamp link. The notary cannot read, reconstruct, or link the content you approve.

Biometrics stay on your device

Touch ID is handled by macOS and the Secure Enclave. Inkline never receives fingerprint data or any biometric information, and has no way to.

Verification is local

When a recipient checks a receipt, the check runs entirely in their browser using the receipt in the link. The verifier page makes no network requests and we do not learn who verified what.

No tracking

No analytics, cookies, trackers, or advertising SDKs. We do not monitor your browsing or collect behavioral data.

No third parties

We do not sell, rent, or share any data. The only service Inkline talks to is our own notary.

What a stamp means

A stamp shows that the holder of an enrolled key approved that exact content, witnessed by our notary. It is not a guarantee about who wrote the words or the truth of their contents.

Questions: gigialcaraz38@gmail.com. If this policy changes, the date changes with it. Last updated: 9/17/2026.