Security claims should be specific.
Stonefern documents each product’s actual boundary instead of using one generic privacy or security claim for everything.
Disk Insight: local and read-only
Disk Insight scans storage on the Windows computer where it runs. The current release is designed not to delete, move, rename, or modify scanned files, and normal scan data is not uploaded to Stonefern.
Network Repair: local-first diagnostics with explicit changes
Network Repair reads Windows network state locally and intentionally sends limited diagnostic traffic when testing the gateway, DNS resolution, and basic outbound connectivity. Repairs such as DHCP renewals, adapter restarts, Winsock reset, or TCP/IP reset run only after explicit approval and can temporarily interrupt connectivity.
PC Repair: guided Windows servicing
PC Repair uses Windows servicing, update, storage, and system-management facilities. Diagnostics are separated from system-changing repairs; approved repairs can modify Windows state, may require elevation or restart, and can cause Windows or Microsoft servicing components to use the network.
DeskLink: direct paired-PC traffic
DeskLink is a network product by design. Normal sessions communicate directly between the Primary PC and Companion PC and encrypt DeskLink application messages with AES-256-GCM derived from the pairing key. Optional clipboard text, remote input, and Extended Display frames are sent only when those features are used.
StreamLink: local playback control with scoped provider access
StreamLink connects to Twitch chat and compatible Windows media sessions. OAuth tokens are protected locally with Windows DPAPI for the current user. StreamLink controls playback and optional chat replies; it does not relay the music audio through Stonefern.
Subtitle & Audio Cleanup: local but file-changing
Media inspection and remuxing are performed locally with FFmpeg/FFprobe. This product can intentionally replace source media after a temporary output is validated, so its product page and notice use a different safety model from read-only tools.
Release integrity
Stonefern’s public products use product-specific release metadata, integrity checks, and Windows installer workflows. See Release Integrity for the public delivery model.
Responsible disclosure
If you believe you found a security issue, email [email protected]. Include the affected product/version, reproduction steps, impact, and enough technical detail to investigate. Do not access data or systems you are not authorized to test.