Privacy by architecture

Your conversations stay in your browser.

Veritiana uses visible conversation text only for local measurement. The server does not need your prompts or responses to build your usage profile.

Prompt text stays local
ONNX inference runs locally
Metrics sync is optional
Privacy boundary
Conversation content stays local. Only derived metrics may leave the browser.
Local by default
Visible conversation content
Prompt + rendered response

The extension reads only the supported conversation content visible in the browser interface.

Never synced
User prompt
Local processing only
AI response
Local processing only
Conversation history
Remains in the browser
Local interpretation
Content becomes measurable metadata

Token estimates, classification and cost calculations are produced inside the extension runtime.

Browser runtime
Token estimates
Input, output and reconstructed context
Task label
Assigned above the confidence threshold
Complexity
Separate locally generated classification
Cost estimate
API-equivalent comparison value
Local record
Stored in the browser
Default
Conversation-level metrics
Local usage history
No account required
Private metrics sync
Numerical events only
Optional
Pseudonymous identifiers
Numerical usage estimates
Classification labels and versions
Never included in sync
Prompt text Response text Conversation transcript Hidden provider activity

Synchronisation is disabled by default. When enabled, only derived metrics and technical version identifiers are added to the sync queue.

Conversation content does not leave the browser
Data flow

Four layers. Only the last one can leave the browser.

Privacy is enforced by separating browser content from the numerical event used by the dashboard.

01

Visible conversation

The extension reads the prompt and response already shown in the browser.

02

Local estimation

Visible tokens, context growth and API-equivalent value are estimated locally.

03

Local classification

The ONNX model estimates task, complexity and confidence in the browser.

04

Optional metrics sync

Only anonymous numerical and classification metrics can be sent to the server.

What can sync

Metrics needed to build your dashboard.

Sync is optional. When enabled, the server receives the minimum information required for history, aggregation and profile continuity.

Anonymous identifiers

Profile ID, device ID and a local conversation key.

Usage metrics

Estimated input, output, visible context and API-equivalent value.

Classification labels

Task, complexity, confidence, engine and classifier version.

Technical context

Platform, visible model label, turn index and timestamp.

Never collected

The server does not receive the content of your AI work.

Prompt text

Your exact instructions are not part of the synced event.

Response text

AI responses are measured locally and are not uploaded.

Attachment content

Uploaded documents are not copied to Veritiana.

Hidden reasoning

Veritiana does not claim access to hidden reasoning.

Provider internals

System prompts, routing, caching and internal provider cost are not measurable.

Unnecessary identity data

The anonymous meter does not require your name or email.

Anonymous profile

Start immediately. Claim the profile later.

The extension creates an anonymous identity and device credential. Email is only needed when you decide to preserve or connect the profile.

Anonymous registration

The browser receives a profile identifier and device credential.

Signed claim flow

An expiring claim link can attach an account without losing anonymous history.

Multiple devices later

Claiming enables future device linking while each device remains independently authenticated.

User control

Local-only use remains a valid product mode.

Disable sync

Keep measurements only in the browser.

Export

Export supported profile data when the dashboard is enabled.

Delete

Delete the server profile and synced metrics.

No account required

Email registration remains optional for the local meter.