What Canvas processes
Local import and rendering happen in your browser. When you choose to publish, Canvas stores the project name, high-level component labels, relationships, provider domains, descriptions, and repository-relative source references contained in the scan JSON.
Do not include source code, credentials, environment values, customer information, or other confidential data. Automated validation blocks common credential formats but cannot recognize every sensitive value.
Public, unlisted sharing
A published scan receives a hard-to-guess public URL and is marked noindex. Anyone who receives that URL can view the scan, raw JSON, and generated Markdown. Unlisted does not mean private or access-controlled.
Storage and deletion
Published scans are stored in private Vercel Blob storage and served through Canvas. A scan expires 90 days after its latest publish or update. The publishing client receives an edit token; Canvas stores only its hash. Keep that token secret because it authorizes updates and deletion.
Analytics and operational data
Canvas uses Vercel Web Analytics for aggregate page-view reporting without third-party tracking cookies. Query strings, fragments, and individual shared-scan identifiers are removed before analytics events are sent. Hosting and firewall systems may process network and request metadata to operate the service, prevent abuse, and diagnose failures.
External services
Canvas is hosted by Vercel. When a map displays a provider icon, your browser may request a favicon from Google using the validated provider hostname. External links are governed by the destination's own privacy terms.
Contact
For privacy questions, deletion assistance, or abuse reports, email team@silhouette.exchange. The broader Silhouette Exchange privacy policy is available in the trading application.