top of page

Privacy Policy

Privacy Policy — Proof of Effort (PoE)

Khepri Humetric Solutions, Inc.

Effective date: August 4, 2026     ·     Last updated: August 4, 2026

1. Who We Are

Proof of Effort (“PoE,” “the Software,” “the Service”) is operated by Khepri Humetric Solutions, Inc., a Delaware corporation (“Khepri,” “we,” “us”). This Privacy Policy explains what information PoE and the seekingproof.com website collect, how we use it, the legal bases on which we rely, and the rights you have.

Contact for privacy matters:

Khepri Humetric Solutions, Inc.

3680 Wilshire Blvd Ste. P04 #A142

Los Angeles, CA 90010

support@kheprisol.com

We are a United States company. We do not maintain an establishment in the EU, EEA, or UK, and we do not target our marketing to residents of those regions. Because our products can be downloaded and purchased from anywhere through our payment processor, this Policy provides disclosures for users in those regions where the GDPR, UK GDPR, and comparable laws may apply to our processing (see Section 10).

2. The Core Privacy Principle Behind PoE

PoE is designed so that the data it produces is content-free and non-biometric by architecture, not merely by promise:

  • PoE does not capture, store, or transmit the text you write. Scoring operates on a mathematical representation of writing activity, never on document content.

  • During a writing session, keystroke-event data — including inter-event timing — is held transiently in your computer’s memory only. Before any data is scored, stored, or transmitted, raw per-keystroke timing is converted to coarse categorical values at a resolution deliberately coarser than that at which keystroke timing can function as a biometric identifier, and the raw timing values are cleared. Raw per-keystroke timing is never persisted and never leaves your device.

  • PoE performs no biometric enrollment, no per-person template, no one-to-one verification, no one-to-many matching, and maintains no identity database. PoE classifies the writing artifact (e.g., authentic effort vs. transcription) and scores effort; it does not identify or recognize you as an individual.

The design intent is that PoE’s outputs cannot be used to identify a person from their typing.

3. Information We Collect

3.1 Behavioral telemetry (content-free)

When you use paid-tier capture features, PoE generates content-free behavioral metadata about your writing activity — aggregated activity summaries that describe rhythm, edits, and flow. This metadata contains no document text and no raw timing. It is transmitted to our scoring service to produce your effort score and, where applicable, sealed into your portable “.poe” artifact.

Where you copy and paste, PoE records a one-way cryptographic hash of clipboard text to support paste-provenance accounting. The hash is content-free and is not reversible to the underlying text.

3.2 License and device information

To operate licensing, PoE stores and/or transmits:

  • your license code;

  • an install fingerprint — a device-binding identifier generated on your device and used to bind a paid license to a single installation;

  • your license credential and its expiry.

The install fingerprint is a device-binding identifier used for license enforcement. It is not used to profile you or to track activity across sites.

3.3 Account and payment information

Purchases are processed by Stripe, our third-party payment processor. Stripe collects and processes your payment details directly under its own privacy terms; Khepri does not receive or store full payment card numbers. We receive limited transaction and contact information (such as your email address and subscription status) necessary to provision and support your license. License communications are delivered by email through our email provider. Customer support correspondence is handled through our Google Workspace inbox at support@kheprisol.com.

3.4 Research archive data (opt-out)

PoE stores your content-free scoring submissions in a research archive used for longitudinal product improvement and calibration. Archived submissions are organized under a research identifier that is intentionally decoupled from your billing identity: it is not stored in our licensing database and is never joined to your email address or install fingerprint.

This setting is on by default. You may change or withdraw this setting at any time in the License window of the Software. Opting out prevents future scoring submissions from being added to the research archive; scoring submissions from users who have opted out are not retained beyond the time required to produce and return your score.

Legal basis for research archive processing: For users to whom the GDPR or UK GDPR applies, we rely on our legitimate interests in product improvement and calibration, balanced against your rights, together with the readily available opt-out mechanism, as our lawful basis for this secondary processing. The research identifier is intentionally decoupled from your billing identity to minimize the impact of this processing on your privacy. You may object to this processing at any time by opting out in the License window.

3.5 Website information (seekingproof.com)

Our website may collect standard technical data (IP address, browser type, pages viewed) via server logs and any analytics or hosting services we use. The site is hosted on Wix.

4. What We Do Not Collect

  • We do not collect or store the text of your documents.

  • We do not store raw per-keystroke timing.

  • We do not create biometric templates or perform biometric identification or verification.

  • We do not join your research identifier to your billing identity.

  • We do not sell your personal information (see Section 9).

5. How We Use Information

We use the information above to: provide and maintain the Service; produce and verify effort scores and artifacts; provision, enforce, and support licenses; process payments and prevent fraud; communicate with you about your license and the Service; and improve and calibrate the Service through the research archive on the basis described in Section 3.4.

6. Legal Bases for Processing (EU/EEA/UK Users)

Where the GDPR or UK GDPR applies, we rely on:

  • Contract (Art. 6(1)(b)) — to provide the Service you purchase, including scoring, licensing, and artifact generation.

  • Legitimate interests (Art. 6(1)(f)) — for license enforcement, fraud prevention, security, service improvement, and operation of the research archive described in Section 3.4, balanced against your rights.

  • Consent (Art. 6(1)(a)) — for any non-essential cookies where required.

  • Legal obligation (Art. 6(1)(c)) — where we must retain records to comply with law.

We do not knowingly process special-category data under Art. 9. PoE’s architecture is designed so that behavioral metadata is not biometric data used for identification.

7. Sharing and Sub-processors

We share information only with service providers that help us operate the Service, under contract and for these limited purposes:

Provider

Purpose

Data involved

Amazon Web Services (AWS)

Scoring compute and archive storage (United States).

Content-free behavioral metadata; opt-out research submissions.

Stripe

Payment processing, subscription billing, and customer portal.

Payment and transaction data (processed by Stripe directly); limited transaction and contact information provided to Khepri.

Resend

Delivery of transactional email such as license and account messages.

Email address and message contents.

Wix

Hosting of our website, SeekingProof.com.

Website technical/log data, cookies.

Google Workspace

Business email and customer support correspondence.

Email address and message contents.

We do not sell personal information and do not share it with third parties for their own marketing.

8. Data Location and International Transfers

Scoring and archive processing occur on AWS infrastructure in the United States. If you access the Service from the EU/EEA or UK, your information will be transferred to and processed in the United States. Where required, such transfers are made under appropriate safeguards, including the EU Standard Contractual Clauses and the UK International Data Transfer Addendum, and/or under our providers’ certified transfer mechanisms.

9. Your Rights

9.1 EU/EEA/UK (GDPR / UK GDPR)

You have the right to access, rectify, erase, restrict, and port your personal data; to object to processing based on legitimate interests; and to withdraw consent where processing is based on consent. You may lodge a complaint with your supervisory authority. To exercise these rights, contact support@kheprisol.com.

Because the research identifier is decoupled from billing identity by design, we are unable to link a specific archived research submission back to you (GDPR Art. 11 — processing not requiring identification). We will describe the operational limits of erasure honestly once retention and deletion mechanics are finalized.

9.2 California (CCPA/CPRA)

California residents have the right to know, delete, correct, and to opt out of sale/sharing (we do not sell or share personal information as those terms are defined), and the right not to be discriminated against for exercising these rights. To exercise these rights, contact support@kheprisol.com. We will respond within the timeframes required by applicable law — typically within 45 days, with a possible extension of up to an additional 45 days where permitted by law.

CCPA/CPRA §1798.140 enumerates “keystroke patterns or rhythms” within its biometric-information definition. PoE is designed so that the data it retains is not usable to identify a consumer and is not processed for identification.

9.3 Other U.S. states

Residents of states with comprehensive privacy laws (e.g., Virginia, Colorado, Connecticut, Texas, and others) may have analogous rights. Contact support@kheprisol.com to exercise them.

10. Age Requirement

The Service is intended for users 18 years of age or older. We do not knowingly collect information from anyone under 18 through direct signups on seekingproof.com. If you believe a minor has provided information to us, contact support@kheprisol.com and we will delete it.

Where PoE is deployed by an educational institution to its students or staff (including in K–12 settings), the institution is responsible for the data collected in that deployment and for compliance with the Family Educational Rights and Privacy Act (“FERPA”) and any other applicable student-privacy or child-privacy rules. In that context, Khepri Humetric Solutions, Inc. serves solely as a service provider following the institution’s instructions. Additional or separate terms may govern that relationship under a written agreement.

11. Data Retention

We retain personal information only as long as necessary for the purposes described in this Policy:

  • Behavioral metadata / scoring submissions from users who have not opted out of the research archive: seven (7) years.

  • Behavioral metadata / scoring submissions from users who have opted out of the research archive: retained only for the time required to produce and return your score, then deleted.

  • License and account records: seven (7) years, to meet legal, tax, accounting, and dispute-resolution requirements.

  • Payment records: as required by Stripe and applicable tax/accounting law.

12. Security

We use encryption in transit and at rest, access controls, and the content-free architecture described above to protect information. No method of transmission or storage is completely secure; we cannot guarantee absolute security.

In the event of a personal-data breach that triggers notification obligations under applicable law, Khepri will notify the relevant supervisory authority and affected individuals within the timeframes required by GDPR Articles 33 and 34, applicable U.S. state breach-notification statutes, or other governing law. Such notification will include the nature of the breach, the categories of data involved, the likely consequences, and the measures taken or proposed to address the breach and mitigate its effects.

13. Dispute Resolution

Any dispute arising out of or relating to this Policy or our processing of your information shall be resolved exclusively in the state and federal courts located in Los Angeles County, California, and you irrevocably consent to the personal jurisdiction of those courts. These Terms are governed by the laws of the State of California, without regard to conflict-of-laws rules.

You and Khepri each waive any right to a jury trial in any dispute arising out of or relating to this Policy.

If you are a consumer in the EU or UK, nothing in this section deprives you of any mandatory right under the Brussels I Regulation (EU 1215/2012), the UK Consumer Rights Act 2015, or equivalent legislation to bring proceedings in the courts of your country of residence. You may also use the European Commission’s Online Dispute Resolution platform (ec.europa.eu/odr) where applicable. The jury-trial waiver does not apply to consumers in jurisdictions where such waivers are prohibited by law.

14. Changes to This Policy

We may update this Policy. Material changes will be posted at seekingproof.com with a revised “Last updated” date. The posted Policy and the in-client EULA privacy summary should be versioned together so they do not diverge. In the event of a conflict between a newer version of this Policy and an older version of the Terms of Service, the Terms of Service govern except with respect to data-handling matters, where this Policy controls.

15. Contact

Questions or requests: support@kheprisol.com, or write to:

Khepri Humetric Solutions, Inc.

3680 Wilshire Blvd Ste. P04 #A142

Los Angeles, CA 90010

Khepri Humetric Solutions, Inc. — Patent Pending.

bottom of page