Chat to Evidence

Privacy

Short version: your chat never leaves your device. This page explains what that means in practice and what little we do collect.

Last updated September 16, 2026

Your chat file

When you drop a WhatsApp, Telegram, Instagram or Messenger export onto this site, it is opened and converted by JavaScript running in your browser tab. There is no upload endpoint for chat files. The parsed messages, the preview and the generated PDF exist only in your browser’s memory and are discarded when you close or reload the page. We never see the contents, the participants, the file name or the SHA-256 fingerprint of your export.

During PDF generation the page fetches open-source Noto font files from a public CDN (jsDelivr) so that non-Latin scripts and emoji render correctly. Those requests contain no information about your chat, only which font file is being requested.

What we do collect

Server logs

Our hosting provider (Vercel) keeps standard, short-lived request logs (IP address, user agent, URL) for security and debugging. Chat content is never part of a request, so it never appears in logs.

Your rights

You can ask us to delete any support correspondence or payment-related records we hold about you by emailing hello@chattoevidence.com. Because we do not hold your chats, there is nothing to delete on that front — clearing your browser’s site data removes the Case Pass token and any cached fonts.

Changes

If we ever change how the tool handles data, we will update this page and the date above. The in-browser processing model is the whole point of the product, so it is not going to change quietly.