VeRIXx β RealEyes Protocol v5.2 Β· Last updated: July 19, 2026
Video certification collects no personal data. This core feature operates entirely on your device (on-device processing). No video, no proof, no biometric data is ever transmitted to our servers.
The optional "Pro Space β Paid Missions" feature processes a minimum amount of data necessary for payments and job matching (see dedicated section below).
The following data is processed on your device only and never leaves your device:
VeRIXx connects only to the following services, which are strictly necessary for operation:
If you activate the Pro Space and post a paid mission, the following data is transmitted to our backend (Google Cloud Run, hosted in Europe) and stored in a Firestore database (Google Cloud, Europe):
Card payment is processed directly by Stripe, acting as a subprocessor. VeRIXx never receives, stores, or accesses any card data (number, CVV, etc.): this information is entered exclusively on Stripe's secure pages. For more information: stripe.com/privacy.
This data is retained for the time necessary to process the mission. You may request deletion at any time via our contact form.
Biometric authentication (Face ID, fingerprint) uses exclusively the browser's WebAuthn API. VeRIXx never accesses your raw biometric data β only a cryptographic signature is generated and stored locally on your device.
In accordance with the GDPR (EU Regulation 2016/679), you have the following rights:
VeRIXx uses no advertising cookies, no behavioral trackers, no ad networks, and shares no data with third parties.
An anonymous identifier (stored locally on your device, never linked to your name, email, or IP address) is used solely to count app visits, for our own internal use only. This identifier is automatically renewed after a maximum of 13 months, and the corresponding aggregated data is deleted after a maximum of 25 months. This audience measurement does not allow tracking across our different apps or sites, and is never cross-referenced with other data.
VeRIXx is not intended for children under the age of 13. We do not knowingly collect any data relating to minors.
Certification requires an account (email address and password), managed through Firebase Authentication (Google Cloud, Europe). This data is used solely for authentication, managing your credits and fraud prevention. Legal basis: performance of the contract. It is kept while the account is active and deleted upon request at the contact address below.
Credit purchases and their usage are recorded in a server-side transaction ledger (Firestore, Google Cloud, Europe): account identifier, amount, timestamp and payment reference. VeRIXx never stores any payment method data.
To guarantee certificate integrity, only the cryptographic fingerprint (hash) of the evidence is sent to our servers for signing β never the video, never its content. This fingerprint cannot be used to reconstruct the video.
In accordance with Article 13 GDPR, the following retention periods apply to data processed by our servers (excluding data stored only on your device, such as local certificates or your certification history, whose retention is entirely up to you):
This application is distributed through the Microsoft Store as a Progressive Web App (PWA). Microsoft's platform policies apply in addition to this privacy policy. For information on Microsoft's data practices, please refer to the Microsoft Privacy Statement.
The application does not use any Microsoft-specific data collection APIs beyond standard PWA capabilities.
For any questions regarding this policy or to exercise your rights:
Ronny APPADOO
10 Rue de la Bourse, 75002 Paris, France
contact@verixx.eu
INPI NΒ°5263235 Β· eSoleau DSO2026019884 Β· SIREN 107 330 375 β RCS Paris