← WhistterLEGAL DIRECTIVE // REV 2026.4

Privacy Directive

OPERATIONAL SYSTEMS HOLDING (OS) • MINISTRY OF MSME REGISTERED ENTITY

1. The Zero-Telemetry Guarantee

Whistter is engineered under the strict doctrine of non-extractive computation. We do not maintain user activity tracking, behavioral fingerprinting scripts, advertising SDKs, or cloud-side crash telemetries. No persistent data logs are stored on remote infrastructure.

2. Silicon Enclave Key Custody

All cryptographic primitives live exclusively within client-side secure elements (Apple Secure Enclave and Android StrongBox). Private signing keys and double-ratchet state parameters never exit physical device silicon and are mathematically inaccessible to Whistter or OS systems.

3. Volatile Ghost Mode Zeroization

When utilizing Phantom or Ghost rooms, ephemeral message buffers reside solely in volatile L3 cache allocations. Upon contextual room exit or process termination, client memory registers are aggressively scrubbed using pseudo-random null arrays, mitigating post-hoc forensic dumping.

4. Statutory Compliance

This directive aligns with the Digital Personal Data Protection (DPDP) Act 2023 of India, EU GDPR principles of data minimization, and California Consumer Privacy Act (CCPA) standards. As zero personal telemetry is collected, no data brokering or commercial sale can occur.

5. Governance Inquiries

Operational Systems Holding (OS)
Attn: Office of the Chief System Architect (Shahnawaz Anwar)
Official Desk: contact@whistter.com
New Delhi, India