Legal
Privacy
PublishPass · Effective 23 August 2026
What we read
When you run a proof, we fetch the URL you provide so we can check structure, metadata, and trust signals. We do not ask for a password, and we do not log into your accounts. Localhost, private IP addresses and protocols other than http and https are refused. Redirects, download size and request duration are capped.
What we keep
After a check we store the report so it has a unique shareable URL. Reports expire after seven days. Tracking and credential-like query parameters are removed before the URL is stored. If you ran the check in this browser you can delete that report from the report page.
To limit abuse we keep a short-lived counter, derived from your IP address, in server memory for sixty seconds. It records how many checks have been run, not which pages. Our host also writes ordinary request logs under its own retention policy.
What a report is not
A PublishPass scan is not a WCAG certification, not a legal opinion, and not proof of compliance. Colour contrast, keyboard use, focus order and whether alt text is any good still need a person. We will not claim otherwise.
Contact
Privacy questions: info@pixelculture.org