Personal Rights Management

Your data policy. Signed by you, checkable by anyone.

Create a personal data policy, sign it on this device, and publish it somewhere anyone can check — without having to trust us.

1 · Create

A key that never leaves

Your signing key is generated here, in this browser. We never see it, so we can never sign as you.

2 · Author

Say what you permit

Start from the California ALPR template. Allow, condition, or object to each use, in terms a machine reads and words a person does.

3 · Sign & publish

Exactly the bytes you signed

You sign on this device. We store the signed bytes, then this app downloads them again and checks them against what you signed.

Don’t trust us. Verify it.

Anything published here can be checked offline with an open-source verifier and no request to this site. If RightsRoot disappeared tomorrow, your documents would still verify.

npx @prm/cli verify policy.json --kel kel.json --offline

This records your instructions and the date you gave them. It does not create legal rights that do not already exist.

RightsRoot is the platform. PRM — Personal Rights Management is the open protocol it implements; the specification lives at rightsroot.org/spec/prm, and anything published here can be verified by any implementation of it.