Privacy Verification

Privacy Claims Backed by Evidence

SecurityNet is designed to minimise the information retained by its infrastructure. But privacy claims should not depend on trust alone.

We examine the production SecurityNet mediator environment, test how it behaves during real SecurityNet activity, and document what we find — including anything that needs to be changed.

The evidence below is based on testing of the live SecurityNet mediator infrastructure, not a laboratory simulation.


No SecurityNet Server Logs

SecurityNet does not create or retain application-level server logs of user communication activity.

During verification, we examined the mediator process, system logging paths and associated proxy logging. Historical application logging identified during the audit was disabled, and a subsequent live SecurityNet transfer produced no corresponding mediator activity records in the locations examined.

View the evidence →


No SecurityNet Metadata Capture

SecurityNet is designed not to capture or retain metadata about user communication activity on the mediator.

During live verification, we completed a successful SecurityNet transfer and examined the relevant server logging and storage locations. No corresponding SecurityNet activity record, transferred file or temporary copy was found in the locations examined.

View the evidence →


No Stored Copies

SecurityNet does not use the mediator as cloud storage. Files passing through the mediator are not retained there as stored copies.

During live verification, we completed a successful SecurityNet file transfer and then examined the mediator working directory and standard temporary storage locations. No transferred file, temporary copy or other transfer artefact was found.

View the evidence →