Terms of Use and Privacy
Last updated 8 October 2026
These terms cover your use of the HeldAt website and the software it serves (the console, the vault and the verifier). By pressing “Accept and enter” you agree to them. If you do not agree, do not use the site.
1. What HeldAt is
HeldAt is open, client-side software. It computes SHA-256 commitments, seals receipts with AES-256-GCM and verifies receipts, entirely inside your browser. It is not a bank, exchange, custodian, broker or adviser.
2. Self-custody
- We never receive, store or have access to your assets, receipts, keys, salts or passphrases.
- Receipts are kept in your browser's local storage. Clearing site data deletes them. You are responsible for exporting and safely storing backups.
- A lost receipt or passphrase cannot be recovered by anyone.
3. Token and contracts
The $HELD token and the bond contract described on the site are not deployed. Nothing on the site is an offer to sell, a solicitation to buy, or a recommendation about any token or asset. Any contract address sent to you is not from us unless it is published on our official channels.
4. Wallets and transactions
Connecting a wallet is optional. If you anchor a commitment, your wallet sends a transaction you approve, and you pay its network fee. Transactions on public blockchains are permanent and public.
5. Your responsibilities
You use the software at your own risk and must comply with the laws and regulations that apply to you, including tax rules and any restrictions in your country. Do not use HeldAt for unlawful purposes.
6. No warranty
The software is provided “as is”, without warranties of any kind. To the fullest extent allowed by law, we are not liable for losses arising from its use, including lost receipts, wallet errors, network fees or market movements.
7. Changes
We may update these terms. When we do, the date above changes and you will be asked to accept again.
Privacy
- The site has no accounts and no tracking cookies.
- We count visits anonymously: each page view or action (for example “a proof was sealed” or “a proof was verified”) adds one to a daily total. Nothing else is sent with it: no cookie, no IP address, no device details, and never a receipt, an amount, an address or a passphrase.
- Your browser stores these things locally: your acceptance of these terms, your vault of receipts, your theme, which wallet you last connected, and, if you install the app, a copy of the site's files for offline use. None of it is sent to us.
- Checking a balance, a proof or an anchor reads public blockchain nodes (for example drpc.org, tenderly.co, blastapi.io, publicnode.com, mainnet.base.org) directly from your browser. Those nodes see the address being checked and your IP address, as with any wallet.
- Fonts, images and films are served from this site. Links to wallets and to X take you to those services, which have their own policies.
This page is a template for a self-custody tool and should be reviewed by a lawyer for your jurisdiction before launch.