Secure by Design

Zero PII Liability.
Total Peace of Mind.

We architected TestivAI on a "Zero PII Liability" principle. We believe your sensitive customer data should *never* leave your environment.

We Never Store Your Screenshots

Our open-source @testivai/witness package processes all data locally within your CI runner. Only the minimal, non-sensitive analysis data is ever sent to our cloud.

What We NEVER Send

  • Full-Page Screenshots
  • Raw HTML Page Source
  • Cookies or Local Storage
  • Request/Response Headers
  • Any Personally Identifiable Information (PII)

This data is a liability. It never touches our servers, so it can never be leaked.

What We DO Send

  • A Base64-encoded **Diff Image** (if a change is found)
  • An isolated **DOM Snippet** (only the changed element and its direct children)
  • Layout Data (bounding boxes of changed elements)
  • Browser & Viewport Metadata (e.g., "Chrome 1200x800")

This is the minimum data required for our AI Judge to perform its analysis.

Enterprise-Grade Security

Scoped API Keys

Generate unique, revocable API keys for each of your projects. You can control access granularly and revoke a key instantly without affecting your other projects.

Read-Only CI Mode

Our @testivai/witness package is fully open-source. When run in a CI environment, it operates in a "read-only" mode, further enhancing security and preventing accidental state changes.

Secure Cloud Infrastructure

Our entire platform runs on Google Cloud Platform (GCP), leveraging VPC controls, IAM-scoped Service Accounts, and data-at-rest encryption for all our services, from the database to the object storage.

Stop Chasing Pixels.
Start Shipping with Confidence.

Join the waitlist for early access.