how we handle data — by not having any
Privacy Policy
On fink, privacy is not a feature or an afterthought—it is the foundational architecture of everything we build. We believe that your digital footprint belongs to you, entirely and unequivocally. This document outlines our ironclad commitment to your privacy and the absolute mathematical constraints that protect it.
It is worth saying plainly why this document exists at all. “Private” apps are everywhere now, and somewhere along the way people stopped asking who builds them. WhatsApp encrypts your messages—and belongs to Meta, which keeps the record of who you talked to and when. Chrome ships privacy controls—and belongs to an advertising company. Skype was sold to Microsoft and later surfaced in the PRISM disclosures. The companies watching you own most of the tools sold to hide you from them. fink is not owned by, funded by, or answerable to any of them, and this policy is written so you can verify that instead of taking it on faith.
1. Zero-Knowledge Architecture
fink utilizes a strict zero-knowledge architecture. All your data—including browsing history, notes, messages, and preferences—is encrypted locally on your device before it ever touches a decentralized network. We do not hold the decryption keys. A court order cannot compel us to produce readable data we have never had.
2. Quantum-Resistant Encryption
Our ecosystem uses strong, publicly specified cryptography: X25519 stacked with Kyber for post-quantum key encapsulation, AES-256-GCM for local storage, and Argon2 for key derivation. Intercepted ciphertext remains computationally infeasible to break with any known technique. Your fink.chat communications and fink.notes backups are sealed with keys that only ever exist on your devices.
3. Data Collection (Or Lack Thereof)
We do not harvest, track, or collect your telemetry. We do not employ third-party analytics scripts, tracking pixels, or "anonymized" data funnels.
- No IP Retention: Our relay nodes necessarily observe the IP addresses of connecting peers—routing is impossible otherwise. They are held in memory for the life of the connection and never written to disk, logged, or retained.
- No Identity Tracking: You do not need an email or phone number to create a fink ecosystem account. Identities are managed via cryptographic public-private keypairs generated locally.
- No Usage Telemetry: We do not know what features you use, how long you use them, or what sites you visit.
- No Metadata Harvesting: We do not collect metadata regarding who you communicate with, when you communicate, or the size of the files you transfer.
- No Device Fingerprinting: We do not track your hardware IDs, MAC addresses, OS version, screen resolution, or browser fingerprint.
- No Location Tracking: We do not request GPS permissions, nor do we attempt to triangulate your physical location through cell towers or Wi-Fi networks.
- No Advertising Profiles: We do not build, buy, or sell advertising profiles. We have absolutely zero interest in monetizing your attention.
4. Peer-to-Peer Routing
When utilizing fink.chat or peer-to-peer syncing for fink.notes, your connections are routed using advanced obfuscation protocols. Traffic is heavily encrypted and routed in a decentralized manner, making metadata analysis nearly impossible for network observers.
5. Compliance & Legal Requests
Because fink is zero-knowledge and local-first, we hold no user content in any intelligible form. We respond to lawful process to the extent we hold anything responsive—which, by design, is close to nothing. We cannot produce message contents, keys, or a social graph, because they do not exist on our side.
It is not simply a matter of policy, but of architecture: we hold no key capable of decrypting your data, and cannot produce readable content we never had. The encryption is end-to-end and local-only.
6. Contact Information
If you have any questions regarding this Privacy Policy, please contact our cryptographically secure support channel or Contact Us.