Reports and appeals

Evidence deserves its own privacy boundary.

Reports may contain highly sensitive context. They must be encrypted to an authorized, policy-scoped reviewer before leaving the device.

Submission disabled

Required delivery path

Collect less. Encrypt first. Authorize every reader.

  1. ScopeChoose personal, community, service, or protocol authority.
  2. MinimizeInclude only evidence necessary for the stated policy.
  3. EncryptSeal evidence to current authorized reviewer keys.
  4. ReceiptReturn a signed report ID, policy, retention, and appeal route.
Report draft

This form does not store or transmit text, screenshots, message contents, or identifiers.

Appeals

A decision needs a route back.

Appeals require an authenticated report receipt, the issuing authority’s current policy, a separate authorized review path, and encrypted supporting evidence. No appeal can be started in this build.

Appeal authorization and encrypted evidence services are not connected.

Evidence

Private by default

Message contents and sensitive attachments never become public moderation objects.

Authority

Reviewers are scoped

A community moderator does not automatically gain service-wide or protocol authority.

Retention

Deletion has a policy

Encrypted evidence receipts disclose retention, access, and appeal expectations.