Sovereignware Archive of record · est. 2026

Ratings

Every published Beacon rating, newest first. Each entry is a citable artifact with named sources and an open right-of-reply.

2026-05-31

eufy Home Security Cameras

Hardware · In January 2025, the New York Attorney General secured a $450,000 settlement after finding that eufy's video streams were not end-to-end encrypted and could be accessed without aut…

Critical
2026-05-31

GrapheneOS on Google Pixel

Hardware · GrapheneOS is a hardened, open-source Android operating system that provides a tracking-free environment by disabling background telemetry and advertising IDs by default. It implem…

Sovereign
2026-05-31

TikTok

App · Despite transitioning to U.S.-based management in January 2026, TikTok's updated privacy policy has introduced expanded collection of precise location data. Additionally, the app c…

Critical
2026-05-31

Signal Private Messenger

App · Signal remains the gold standard for secure messaging in 2026, offering audited, end-to-end encryption by default for all communications and utilizing Sealed Sender technology to h…

Sovereign
2026-05-31

Replika AI Companion

AI App · In May 2025, Italy's data protection authority (Garante) fined Replika's developer, Luka Inc., 5 million euros for serious GDPR violations, including processing sensitive personal …

Critical
2026-05-31

Jan.ai

AI App · Jan.ai is an open-source, local-first personal AI chat application that runs entirely on the user's hardware by default. It processes all conversations and documents locally, ensur…

Sovereign
2026-05-31

Tractor Supply Company

Site · Tractor Supply Company's website was fined a record $1.35 million by the California Privacy Protection Agency in September 2025 for serious CCPA violations. The site failed to hono…

Critical
2026-05-31

Plausible Analytics

Site · Plausible Analytics is an open-source, GDPR-compliant web analytics platform designed to offer detailed metrics without using cookies or collecting personally identifiable informat…

Sovereign
2026-06-05

Apple Vision Pro

Hardware · Apple Vision Pro introduces severe surveillance risks due to its vast array of always-on sensors, including multiple depth sensors, microphones, and 12 cameras. Although eye-tracki…

Critical
2026-06-05

Framework Laptop

Hardware · Framework laptops are engineered with a heavy emphasis on user privacy, the right to repair, and open-source compatibility. By default, they feature physical hardware kill switches…

Sovereign
2026-06-05

Amazon.com

Site · Amazon's e-commerce platform relies on aggressive cross-site tracking and opaque data processing practices to build extensive behavioral profiles for targeted advertising. This sys…

Critical
2026-06-05

DuckDuckGo

Site · DuckDuckGo operates as a privacy-first search engine that actively mitigates cross-site tracking by refusing to store search history, collect IP addresses, or build personalized us…

Sovereign
2026-06-05

Ollama

AI Platform · Ollama is an open-source, local-first framework that allows organizations to run large language models (LLMs) entirely on their own hardware. It processes all prompts and data loca…

Sovereign
2026-06-05

OpenAI ChatGPT (Consumer & Free Plans)

AI Platform · By default, OpenAI's consumer-facing ChatGPT and Plus accounts actively utilize user chats, uploaded files, and personal inputs to train future models. Unless a user manually navig…

Critical
2026-06-05

California Privacy Rights Act (CPRA / CCPA)

Privacy Law · The California Privacy Rights Act (CPRA) is widely considered the strongest consumer data privacy law in the United States. It provides robust, enforceable consumer rights, includi…

Sovereign
2026-06-05

Utah Consumer Privacy Act (UCPA)

Privacy Law · The Utah Consumer Privacy Act (UCPA) is heavily criticized by digital rights advocates for prioritizing business interests over consumer safety. It fails to mandate fundamental dat…

Critical
2026-06-05

Virginia Consumer Data Protection Act (VCDPA)

Privacy Law · Passed as one of the earliest state-level frameworks, the VCDPA is rated RED by privacy advocates because it was heavily influenced by industry lobbyists and serves as the template…

Critical
2026-06-05

Iowa Consumer Data Protection Act (ICDPA)

Privacy Law · The ICDPA is rated RED as it is one of the weakest state privacy laws passed in the United States. Unlike stronger statutes, it denies consumers the fundamental rights to correct i…

Critical