What developers, studios and their clients ask.
How do I prove that my code existed before a given date?
By creating, on that date, a Sealway proof of the version’s archive: the archive’s fingerprint is bound to a qualified electronic timestamp, which establishes that it existed at the latest at that instant. Keep the archive as it is; it and the evidence file are enough to show it, without Sealway.
Is a GitHub repository enough as evidence?
It is a useful trace, not independent evidence of a date: commit dates are declared by the machines creating them, the history can be rewritten, and the repository shows what the host displays under its rules and retention. An archive dated by a qualified timestamp fixes what a repository cannot.
How do I protect software before showing it to a client?
Copyright protects original software without formality; what is missing is evidence of what existed before. Archive and date the version before the presentation, then fix by contract what is assigned and what stays yours. A non-disclosure agreement is a matter of contract, not of evidence.
Do I need to deposit my source code?
No deposit is needed to be protected. A deposit (e-Soleau, APP) or an escrow meets precise needs: an attested date (date certaine) with a public body, evidential archiving, continuity for a client. Sealway meets the dating need by another means; the three can coexist depending on what is at stake.
Can a timestamp be used for software?
Yes: for the timestamp, software is a file like any other. The archive gets a SHA-512 fingerprint, bound to a qualified electronic timestamp. What the timestamp establishes, existence and integrity on a date, holds for code as for a document.
Does Sealway prove that I am the author of the code?
No. Sealway establishes that an archive existed on a given date and has not changed since. Under French law the author is presumed, until proven otherwise, to be the person under whose name the work is disclosed (art. L. 113-1); attribution is argued by any means, and ownership of the rights depends on status and contract.
Does Sealway certify the dates of my commits?
No. If the archive contains the .git directory, Sealway proves that this archive, history included, existed on the date of the proof. The dates written in the commits remain statements by the machine that created them; they do not become certified.
Should I include dependencies and third-party code?
Include the dependency manifest rather than the dependencies themselves, and the licences of third-party components. The proof does not say that this third-party code is used in accordance with its licence: that is for you to check, and it stays outside what Sealway establishes.
Is my code disclosed when I create a proof?
No. The fingerprint does not make it possible to reconstruct the archive, and the archive is encrypted server-side before storage. Producing the archive to a third party remains your decision, when you need to.
What if I regenerate the archive later?
A regenerated archive almost always has another fingerprint: file order, metadata, compression. The proof bears on the exact archive of that day; keep it as it is, it is what you will produce.