Current · signed July 1, 2026
Warrant canary
Republished on the first business day of each quarter, PGP-signed, with the then-current Bitcoin block hash embedded so that the statement cannot have been pre-signed in bulk under duress.
Answer
Incognito VPS publishes a PGP-signed warrant canary each quarter with the current Bitcoin block hash embedded, which proves the statement was signed after that date and cannot have been pre-signed in bulk. The signing key fingerprint is 4F2A 9C31 8E77 B0D6 5A14 C982 7E3B 61F0 A5D4 2288.
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Incognito VPS Infrastructure OÜ warrant canary — 2026 Q3
Signed: 2026-07-01
Next scheduled: 2026-10-01
As of the date above, Incognito VPS Infrastructure OÜ:
1. has not received any National Security Letter or equivalent secret legal demand.
2. has not received any gag order preventing disclosure of a legal demand.
3. has not been compelled to modify its systems to facilitate surveillance.
4. has not been compelled to hand over cryptographic keys.
5. has not been subject to any search or seizure of customer data.
6. retains full control of its infrastructure and signing keys.
7. has not been acquired, and no change of ownership or control has occurred.
Proof of signing date — Bitcoin block 907412:
00000000000000000000f1c9b2e7a4d83c05e6b71a9d2f480c3e5a7b19d64f28
This statement is signed with key 4F2A 9C31 8E77 B0D6 5A14 C982 7E3B 61F0 A5D4 2288
and is republished on the first business day of each quarter. Absence or
staleness of this statement should be treated as meaningful.
Verify:
gpg --fetch-keys https://incognitovps.com/incognito-signing.asc
gpg --verify canary.asc
Confirm block 907412 was mined on or after 2026-07-01.
-----BEGIN PGP SIGNATURE-----
iQIzBAEBCgAdFiEETyqcMY53sNZaFMmCfjth8KXUIogFAmZ+3xUACgkQfjth8KXU
Iog5Vg//WvhH2kJ7pQnR4dY0xLmT3sBcVfN8gEwqZ1yUj6RtKpXbLmA9cQ4vDzHs
00000000000000000000f1c9b2e7a4d83c05e6b71a9d2f480c3e5a7b19d64f28
Lq7xEeR2mNvY8gTzUwKp5aHb3XcJdFo0iSnQ9rZlAvMt6yBuGx1PkWfCeD4hNsIa
=2026
-----END PGP SIGNATURE-----
Seven statements
Each is a separate assertion. A future canary that drops one, rather than lapsing entirely, is the signal to watch for.
- 01
Incognito VPS Infrastructure OÜ has not received any National Security Letter or equivalent secret legal demand.
- 02
Incognito VPS Infrastructure OÜ has not received any gag order preventing disclosure of a legal demand.
- 03
Incognito VPS Infrastructure OÜ has not been compelled to modify its systems to facilitate surveillance.
- 04
Incognito VPS Infrastructure OÜ has not been compelled to hand over cryptographic keys.
- 05
Incognito VPS Infrastructure OÜ has not been subject to any search or seizure of customer data.
- 06
Incognito VPS Infrastructure OÜ retains full control of its infrastructure and signing keys.
- 07
Incognito VPS Infrastructure OÜ has not been acquired, and no change of ownership or control has occurred.
How to verify it
- 01
Fetch the key
gpg --fetch-keys https://incognitovps.com/incognito-signing.asc
- 02
Check the fingerprint
Compare against keys.openpgp.org and an archived copy — not just this page.
- 03
Verify the signature
gpg --verify canary.asc
- 04
Check the block hash
Confirm block 907412 on any explorer and that it was mined on or after 2026-07-01.
What this does not prove
The legal theory behind canaries — that compelling a company to publish a false statement is harder than prohibiting it from disclosing a true one — is untested in most jurisdictions, including ours.
Treat it as one signal among several, not as proof. A single missed cycle is weak evidence; schedules slip for mundane reasons. A lapse followed by quietly changed wording, or a lapse nobody will comment on, is much stronger.
Longer explanationPrevious canaries
Every prior statement stays available at a dated URL. Unbroken since 2021 Q3.
55-second deploy
Pick a jurisdiction. Pay in crypto. Be running in a minute.
No account to create, no email to confirm, no card to enter.