Privacy

The service stores what it needs to operate an identity domain

CatalystLinkKeys is not an anonymous credential system. It is a domain-backed identity service. Creating an account requires an external email, a chosen handle, and successful email verification.

Operational data

The service stores account and handle records, LinkKeys user identifiers, issued claims, verification state, and the security data needed to authenticate and authorize requests. It also records delivery events and suppressions so it does not repeatedly send to addresses that bounce or complain.

Authorization and local-app flows necessarily process the relying party, requested claims, consent decision, key fingerprints, and short-lived protocol artifacts. Administrative mutations are recorded with the responsible operator, target, outcome, and supplied reason.

Claim release

Claims are not public directory entries. Compatible applications request claims through an authorization flow. Release depends on domain policy and your consent, and the resulting assertion is scoped to the relying party.

Account lifecycle

Support operators can deactivate an ordinary account. Permanent purge is a restricted, audited operation that minimizes the LinkKeys user to a tombstone so its UUID cannot be silently reused.

For access, correction, account support, or abuse reports, contact support@catalystlinkkeys.com or abuse@catalystlinkkeys.com.