The measurement runs at your desk. It reads, in memory, your dispositioned alerts (those your analysts already decided) and your transactions, and writes its outputs next to your files and nowhere else. The outputs hold counts, rates, confidence intervals (the range the true rate likely sits in) and verdicts by your alert id. A verdict is the tool's answer on one alert. None of your account ids, amounts, transaction dates or countries leave the machine. Your alert ids do survive as verdict keys, so choose opaque ones.
It makes no callback, sends no telemetry and needs no account. The whole measurement is a local process reading two CSV files (plain text tables) on your machine.
Verify on your own decoyMeasure a file holding an invented amount and account id, then search the outputs for them.
run it yourself
grep -r "the amount you invented" your-alerts-measured.md your-alerts-measured.jsonfinds no match, because the outputs carry verdicts and none of your values
Where it livessrc/your-alerts.ts:9 · src/your-alerts.ts:25