AI and Cloud Disclosure
Status: prelaunch Cloud disclosure
Last updated: 25 September 2026
Normascope Cloud is a hosted product that is not on sale yet. The waitlist does not provide Cloud access and does not send screenshots, source code, DOM content, or AI prompts to a hosted service.
The free CLI can send anonymous usage telemetry so we can measure whether the local product is being used. Collection is currently switched off. This telemetry is separate from Cloud access and may contain only a random installation identifier, CLI version, broad operating-system family, coarse event time, command/event type, whether a local report was generated, and a bucketed frame or report-size count. It never contains names, email addresses, repository or organization details, URLs, paths, commits, screenshots, source, DOM, Figma data, prompts, AI responses or API keys.
Telemetry cannot grant, extend or verify Cloud access, and nothing it records is a paid conversion. A recorded publish is what the client said happened, not an account or a payment. Cloud features are refused on the server to any organization without a live entitlement, whichever version of the CLI is asking.
norma telemetry disable stops the persistent identifier and all feature-level analytics. After it, the CLI still sends an empty request per invocation so we can count service volume: no identifier, no version, no platform, no client date, and no way to distinguish installations. NORMA_TELEMETRY=0 and DO_NOT_TRACK=1 send nothing at all.
AI explanations are guidance
When you request hosted AI, an explanation may identify a possible cause of a visual difference or suggest a possible repair. It may be inaccurate or incomplete. It is guidance for a human to review, edit, ignore, or discard.
Normascope, Yutic, and the AI provider do not approve, guarantee, or take responsibility for a code change, design decision, release decision, or other outcome made from relying on an AI response, subject to applicable law.
The deterministic visual comparison, score, and CI pass/fail result remain separate from AI. AI must not silently change them or apply a fix.
Hosted data flow
Uploading and AI are separate. Uploading a run to Cloud stores its screenshots, report and measurements so your team can see them and their history. Nothing goes to an AI provider when you upload.
AI runs only when asked. When someone requests an explanation, or turns on automatic explanations in CI, Cloud sends Anthropic, our AI provider, cropped images of the areas that differ and the comparison's measurements. Page source and DOM content are refused at upload, so they are never part of that request.
Anthropic processes these requests through its commercial API. Its API data policy says retained data is not used for model training without express permission. This describes Anthropic's commercial terms, not a zero-retention guarantee.
Its commercial retention policy states that API inputs and outputs are normally deleted within 30 days, with exceptions for agreed arrangements, certain features, policy enforcement and legal requirements. Flagged inputs and outputs may be retained for up to two years, and safety classification scores for up to seven years. We do not promise zero provider retention. Deleting a Cloud report does not immediately delete data already processed by Anthropic. Do not put secrets or unnecessary personal data in screenshots you upload.
The Subprocessors page names every provider, and the Privacy Policy says how long data is kept. The Terms of Service cover accounts, credits and cancellation.
Normascope Cloud is not on sale yet. Questions: queries@normascope.com.