This Proof-of-Work (PoW) based CAPTCHA component is designed to verify that a visitor is a human (or at least a resource-constrained client) without collecting, storing, or transmitting any personal data. It is privacy-friendly by nature.
To distinguish legitimate users from automated bots, this component asks the visitor’s browser to solve a small computational puzzle (a proof-of-work challenge that currently uses the Argon2id hashing algorithm) before allowing a form submission or action to proceed. This work is performed entirely client-side, using the visitor’s own device. Solving the computational challenge takes a moment of processing time, which is cheap for one real visitor but expensive for bots sending requests at scale.
Nothing. CapPOW! does not collect, store, process, or share any personal data or usage information. Specifically, we do not:
When you load a page protected by CapPOW!, your browser receives a challenge: a random value that has no connection to you. Your browser then does a small amount of computation (currently using the Argon2id hashing algorithm) to find a solution and sends it back to the server to be verified. The challenge and solution are not linked to your identity, device, or browsing activity, and they are discarded after verification (or: once they expire after 10 minutes).
Like any web request, loading the challenge means your browser sends standard technical information, such as your IP address and browser type, to the server that delivers it. This is how the internet works and cannot be avoided. CapPOW! does not log, store, or use this information for any purpose beyond delivering the response to your request.
This component does not load any external scripts, fonts, or resources from third-party domains, and does not share any data with third parties, because no data is collected in the first place.
Because nothing identifying is collected, there is nothing to retain, store in a database, back up, or delete upon request. There is no user data to be subject to breach, subpoena, or resale.
The computation runs locally in your browser and uses a small amount of processing power for a short time. Nothing is installed, and nothing remains on your device afterward.
Because we collect no personal information from anyone, we collect none from children either.
Data protection laws such as the GDPR and the Swiss Federal Act on Data Protection (FADP) give you rights to access, correct, or delete personal data held about you. Since CapPOW! processes no personal data, there is nothing to access, correct, or delete — there is no personal data of yours for us to act upon. You’re still welcome to contact us with questions.
If we ever change how CapPOW! handles data, we will update this policy and revise the “Last updated” date above. Any change that introduces data collection will be clearly announced beforehand.
Glitched Polygons GmbH
4125 Riehen
SWITZERLAND
info@glitchedpolygons.com
Link to Glitched Polygons GmbH's general privacy policy:
https://glitchedpolygons.com/privacy