SMS consent, on the record.
This page documents, for customers and carrier reviewers, exactly how Cyphra collects and stores text-message consent — and what the current status is.
Current status
Texting is not active yet. Carrier registration (10DLC A2P) is still in progress. No text messages are being sent, and no consent is being recorded anywhere on this site.
The live availability endpoint, checked on every visit, is /api/setup/sms/status. While it reports pending, the setup wizard offers only a skip path: no phone number is requested, no consent checkbox is shown, and nothing is written to the consent ledger. This page likewise has no form and collects nothing.
The opt-in workflow
- 01
A customer completes paid account setup at www.cyphra.io and reaches the final wizard step (Texting).
- 02
The step asks whether the customer's own agent may text them. The consent checkbox starts UNCHECKED by default.
- 03
The full disclosure text is shown next to the checkbox, exactly as quoted below.
- 04
If the customer checks the box and submits, the number and the audit record are stored. Checking the box is never required to finish setup — skipping is always available, and consent is not a condition of purchase.
- 05
If texting is not switched on (the current state), the wizard shows a plain notice that carrier registration is in progress and collects nothing — no phone, no checkbox, no ledger entry.
- 06
The customer can opt out at any time by replying STOP to any message once texting is live; HELP returns help information.
Disclosure text — verbatim
disclosure_version: 2026-09-sms-v2
I agree to receive text messages from my Cyphra agent at the number provided. Message frequency varies. Message and data rates may apply. Reply STOP to opt out at any time, HELP for help. Consent is not a condition of purchase. We will not share your mobile information with third parties for marketing purposes.
This is the exact consent language shown beside the checkbox in the setup wizard, shipped in the published site bundle. It is reproduced here so reviewers can read it without going through checkout.
What a consent record contains
| Field | Recorded value |
|---|---|
| Phone number | the full E.164 number exactly as submitted |
| Consent timestamp | UTC, second precision |
| Client IP | taken from the request headers at submission |
| Form URL | https://www.cyphra.io/setup |
| Disclosure version | 2026-09-sms-v2 (2026-09-sms-v2) |
| Checkbox state | always true — an unchecked submit is never recorded |
| User agent | the browser user agent at submission |
| Storage | append-only ledger, retained at least 6 years |
Every entry is append-only: records are never edited or deleted by the product, and the ledger is retained for at least six years.
What the agent sends
Once texting is live, a customer's own agent sends low-volume service texts about that customer's account — never marketing. Messages are sent only between 8am and 9pm in the recipient's local time. Representative samples:
- Hi, this is your Cyphra agent. I'm online and watching your inbox — I'll text you if something needs your attention. Reply STOP to opt out.
- Your Cyphra agent here: a new email arrived that matches your watch rule. Details are in your dashboard. Reply STOP to opt out.
- Reminder from your Cyphra agent: the server maintenance window starts in 30 minutes. Reply STOP to opt out.
Every message identifies the sender's agent and carries STOP opt-out instructions. The same limits are stated in the carrier campaign registration.
While registration is pending
Until carrier approval completes and texting is switched on: Cyphra does not send text messages, does not ask for phone numbers for texting, does not collect SMS consent, and does not operate a messaging campaign. This page documents a mechanism, not an active service.
