Version sqlpermit-policy-1.0.0. This document is versioned; the version changes only when the text changes.
Request content is processed transiently in memory to produce a response and is not persisted.
Non-content operational events only: timestamp, request id, route, result class, latency, and payment identifiers. Request and response bodies, raw client IP addresses, and payment payloads are never logged.
No subprocessor receives caller content.
Payer address, payee address, amount, and transaction hash are public and permanent on Base. That is a property of the payment rail rather than of this service.
Customer content is not used to train models.