πŸš€ First 100 Founders: claim 100 free QSWT credits β€” no card required. β€” / 100 claimed.
Security & trust

The signed substrate behind every receipt.

Every sealed event carries a SHA-256 content hash, a classical Ed25519 signature, a post-quantum ML-DSA-87 signature, and a chain link to the previous record β€” independently verifiable on a public ledger. This page is for buyers and their security teams.

Cryptography

Chain anchor & data residency

Sealed events are written to an in-region Cloudflare edge queue plus a D1 archive (the source of truth for the /v/<hash> verifier on this site). A rolling Merkle root is anchored on the Base L2 public blockchain so anyone can verify a receipt without trusting EpochCore.

Data residency. Sealed events are stored in US-only Cloudflare regions (IAD / ENAM). The chain-anchor publishes a Merkle root to Base L2 (a public Ethereum-style L2) β€” the anchor is public; your raw event payloads are not.

Retention policy

SegmentDefaultConfigurable up toFloor (regulatory)
Farms (USDA-205)7 years15 years2 years
Restaurants (FSMA-204)7 years10 years2 years
Shops (SEC-17a-4)7 years10 years6 years
EnterpriseCustom30 yearsPer contract

Records cannot be deleted before retention expires. After retention, receipts roll out of the live queue but the Merkle anchor on Base L2 remains permanent.

Service-level & availability

Continuity & liability

If Sealed disappears. Your sealed records remain independently verifiable on Base L2 forever β€” the chain anchors don't depend on us being online. Customers download a complete export at any time during their subscription and for 30 days after cancellation.

Liability. $1M E&O coverage per claim, capped at 12 months of fees. Detailed terms at /terms.

Sub-processors

Compliance status

Vulnerability disclosure

Report a vulnerability via the structured form at /security/report. We acknowledge within 24 hours, triage within 5 business days, and credit reporters in our public hall of fame on request. Encrypted attachments welcome β€” PGP key fingerprint at /security/pgp.txt.

Researcher-side details (in-scope endpoints, severity guidance, safe-harbor language) live in /.well-known/security.txt per RFC 9116.

In scope: seal.epochpay.today, chain.epochcoreqcs.com, the verifier and intake endpoints, the receipt index. Out of scope: social engineering, denial-of-service, physical access, third-party services we don't operate.

Want a deeper conversation?

Convinced?

See the live demo See pricing