SigID Identity Privacy
# SigID Identity Privacy
SigID Identity is the personal account surface for people who use SigID. It exposes controls for profile sharing, connected applications, sessions, authenticators, trusted devices, agents, delegated access, credential-vault grants, wallets, data export, processing restrictions, and account deletion. These controls require an authenticated session because they reveal or change private account state; agents must not scrape the browser interface or ask a person to paste credentials, access tokens, recovery codes, or private keys into a prompt.
SigID processes account identifiers, authentication and fraud-prevention signals, consent records, tenant and organization context, agent and delegation records, billing references, operational telemetry, and audit events where needed to provide and secure the service. Applications receive claims according to their registered scope, tenant policy, and consent context. Retention can continue where necessary for security logs, disputes, tax records, legal preservation, fraud prevention, and backup integrity.
Use the authenticated Identity controls to inspect or change account state. Read the [canonical privacy summary](https://www.sigid.org/privacy), the [full privacy documentation](https://docs.sigid.org/privacy/), or contact `privacy@sigid.com` for a data-rights request. Never include passwords, bearer tokens, private keys, recovery codes, or another tenant's data in an email.