Your proof work.
Your control.
Identity, membership, learning records, privacy, and billing stay separate—so each can be understood and controlled.
Profile & courses
Shown only in your private ProofAnvil workspace.
These courses are present in the current learner catalog. Account access is shown separately only after membership validates.
Sign in to ProofAnvil
Use a verified email code, Google, or a registered passkey. Phone/SMS and end-user passwords are disabled.
Authenticated account required
Sign in is required. Plan status, billing state, and grading-session balance are withheld until the account response validates.
Authenticated account required
Sign in is required. Plan status, billing state, and grading-session balance are withheld until the account response validates.
Writing & grading safeguards
Review the exact rendered proof, course, problem number, timer, and assistance record before grading begins.
The timer begins only when an attempt becomes active. Paused time is never counted.
Submissions are checked for mathematical validity, missing bridges, hypothesis use, and revision opportunities. Low-confidence reads are marked for review instead of receiving a fabricated result.
Retention queue preferences
Sign in is required. No saved or synchronized setting is inferred while the account preference record is unavailable.
Choose your ProofAnvil theme
Export, retention, consent, and deletion
The server creates a bounded JSON snapshot of your identity link, account preferences, consent history, proof submissions, results, reviews, membership, and credit history. It excludes secrets, raw payment/provider payloads, protected solutions, other users’ data, and browser-only appearance settings.
Remove legacy draft records and the active account interrupted-work recovery copy from this browser. Appearance and other device preferences are left unchanged.
ProofAnvil sends the uploaded image to the configured reader for this request, but does not write raw image bytes to D1 or object storage. The confirmed transcript and safe run metadata remain with the attempt.
Optional, revocable, and off by default. Consent is recorded as an account-scoped event under policy proofbound-research-v1; membership and product access never depend on it.
A request requires secure reauthentication, then enters a cooling-off period. Irreversible work also requires independent approval. Proof and identity data are scheduled for deletion or anonymization; provisional financial, abuse-prevention, audit, provider-action, and backup exceptions remain explicitly tracked and are never described as already deleted.
Proofs are never ad targeting.
Proof text, images, grades, error history, mastery, identity, and course performance are never shared with an advertiser.
If enabled on a free plan, placements are limited to public or post-session surfaces. They never appear while writing, reviewing critique, or revising a proof.