SCP SCOPE

Privacy and data

Your reflection remains under your control.

SCOPE separates device-local history from the limited server processing needed to produce, protect and review the controlled service.

Reflections saved on your device

Your active reflection and recent reflection history are stored in the local storage of the browser and device you are using. They are not automatically synchronised to another browser or device.

You can rename, export or delete a reflection from the workspace. Clearing browser data may also remove locally saved reflections.

Server processing and operational conversation records

When you send a message, it is processed by the SCOPE server so a response can be produced. The controlled-pilot release may store the user message, SCOPE response, timestamp, route, pathway and quality flags so authorised administrators can investigate failures, review safety and improve answer quality.

These records are not a personal profile, readiness score or decision about you. The default controlled-pilot retention period is 30 days, unless a shorter period is configured or a record must be retained temporarily to investigate a reported safety, privacy or technical issue.

External AI processing

When AI support is enabled, the current message and limited recent conversation context may be sent to the configured external AI provider. The context can include recent messages and organised-reflection fields needed to preserve the active thread.

SCOPE applies a governed output contract and safety checks before presenting the response. AI processing does not transfer the conversation into RILayer and does not authorise a decision.

User-owned exports

You can export the current reflection as readable Markdown or JSON, or export all reflections currently saved on that browser and device as one JSON file.

The export is created in your browser from device-local data. Using Export does not upload the reflection. The downloaded file becomes your responsibility to store, share or delete safely.

Feedback records

Feedback you submit is stored server-side so authorised administrators can review and respond to product or safety issues. A selected response or conversation excerpt is attached only when you explicitly include it through the feedback process.

The default feedback retention period is 180 days. Do not include passwords, payment information or unnecessary sensitive information in feedback.

RILayer and external links

Opening Resources, RILayer, the SCP homepage or human-support links does not automatically transfer your SCOPE conversation or organised reflection.

The governed RILayer consent gateway is not connected in this release. A future transfer must require an editable summary, a chosen purpose and explicit versioned consent. Raw chat must not be transferred.

Correction and deletion

Local reflections can be deleted directly from the device history. Use the Feedback page for a correction or server-record deletion request and include the relevant reference identifier where available.

A deletion request may require enough information to locate the record without collecting unnecessary identity information.

Protect your privacy

Keep passwords, payment details and unnecessary medical, legal, financial or other sensitive information out of SCOPE and exported files. Share only the context needed to make the question clearer.