Use the smallest useful signal
HIP prefers domains, URL hashes, signal counts, scores, reasons, provider names and timestamps over raw private content.
Privacy approach
HIP is designed to evaluate public trust and risk evidence without collecting passwords, form values, private messages, cookies, browsing history or unrelated raw page content.
HIP prefers domains, URL hashes, signal counts, scores, reasons, provider names and timestamps over raw private content.
Client observations remain separate from authoritative scans until verified evidence supports a public result.
Passwords, tokens, cookies, private messages, sensitive identifiers and private evidence do not belong in public APIs, logs or test fixtures.
This page summarizes HIP's engineering privacy defaults. Deployment-specific notices and legally required disclosures must remain accurate for the operator and jurisdiction where HIP is offered.