Skip to content
privum
How it works Apps Run one Docs
Analytics Open app

Legal

  • Terms of use
  • Privacy

On this page

  • What we collect
  • What stays on your device
  • Who sees what
  • Apps and AI
  • Reports you share
  • Contact
Legal

Privacy

privum is built so that nobody, us included, sees who you are and what you do at the same time. This page says what each party does see.

Last updated 10 October 2026

What we collect

Nothing. There are no accounts, no analytics, no cookies and no tracking scripts, and nothing about you is stored on any server of ours.

What stays on your device

Your recovery phrase and the keys made from it, the receive boxes and private accounts you’ve used, payments found for your public payment address, and your activity list, in your browser’s storage.

Clearing it, or “Use another wallet”, removes them. Your notes stay on-chain for the phrase to find again.

Who sees what

WhoSeesDoesn’t see
The website’s hostYour IP address when you load the page, as with any website.Anything you do after that. None of it goes through the host.
The OHTTP relaysYour IP address and when you make a request. Where there are several, each request goes through one at random.The request itself. It is sealed for the relayer.
RelayersWhat you ask for, arriving from the relay. The one that sends your transactions sees those; your reads and ENS lookups go to others, one at random each, and your own balances are asked among decoys.Your IP address, or anything else that says who you are. And they can’t change what you asked: it is bound into your proof.
ExchangesFor payouts and ZEC: the amount, the time and the address paid. A relayer places the order, so the request comes from its server.Your IP, your wallet or your notes.
Your browser walletThis site’s address, and a shield it signs.Your balances or what you look at here. The app reads nothing through it.
The chainsA shield (the account and amount), a withdrawal (the amount and address), and that private transactions happen.Who makes them, or how they connect.

The relayer software writes no logs, and operators are asked to keep none. Under Wallet, “Delay requests” makes each request wait a random moment before it leaves, so the relay and a relayer can’t match up its timing.

Apps and AI

  • Private accounts are ordinary addresses, one per app, funded from the pool. An app sees that account and what you do with it, never your notes or your other accounts.
  • Private AI (zkAPI) sees your prompts and the model’s answers, and your IP unless you use Tor or a VPN, since the app talks to it directly. It never learns who paid: credit is bought from a private account and spent with short-lived keys.
  • IMD sees the jobs you post and the private account that pays for them.
  • Your public payment address is public by design. Each payer pays a fresh one-time address; finding them is done on your device, reading every payment’s announcement, not only yours.

Reports you share

A disclosure report is made on your device from what is on-chain, for a range you pick. It shows what it covers to whoever you give it to, and they can check it against the chain. Nobody gets one unless you send it.

Contact

Questions about this page: open an issue on the project’s GitHub.

Read the termsAsk on GitHub