We do not auto-approve adopters.
An application can be organized for review. Approval remains a shelter or rescue decision.
AI can help prepare a first draft of public-profile text from sources already on the record. Everything else — status changes, medical and behavior interpretation, applicant decisions, publishing an organization-owned profile — is a human action, by construction. External listings remain source-owned and visibly attributed. Trust is not just a policy page. It is the product behavior: hold, review, source, approve, and record why.
The product should make its boundaries easier to see than the policy language describing them.
source-bound first draft only; a person edits and saves
staff review profiles, applications, and placement calls
no auto-placement, no auto-rejection, no pay-to-rank
unknown fields are not filled with guesses
Nothing public without review. A real person is attached before publishing
WhiskerMatch keeps the line between its own records and outside listings visible. A sourced animal page is a temporary view of the source organization’s own record, not a claim that the organization uses or has been verified by WhiskerMatch.
Fixture records are labeled illustrative. Live-mode provider failure, missing configuration, and empty results have distinct states; none silently turns into demo inventory.
Every accepted external record keeps its provider identity, source organization, source URL, update time, fetch time, and expiry. The provider's page is the place to confirm availability and inquire.
Expired or disappeared records are not presented as currently available. Stable WhiskerMatch URLs explain a source withdrawal or provider outage instead of fabricating a replacement animal.
The discovery projection keeps only city, state, rounded coordinates, and explicit uncertainty. Street address, provider email, and provider phone do not cross the public adapter boundary.
Early teams should not have to infer the boundary from a policy page or trust a product demo on faith. These are operating constraints, stated plainly enough to inspect.
An application can be organized for review. Approval remains a shelter or rescue decision.
No model output closes an application or sends a rejection on its own.
Prepared work stays labeled, its source stays visible, and the reviewer can see what needs confirmation.
Unknowns, edge cases, and changing context are part of the record—not friction to erase from the story.
A score cannot carry policy, lived observation, exceptions, relationships, or professional judgment.
The pilot begins with inspectable sources, named reviewers, visible holds, and a record of the final action.
No borrowed logos, implied customers, fabricated metrics, or testimonials written in advance.
Photos, care notes, medical sources, foster observations, and behavior context may help a reviewer understand the record. None of them gives AI authority over an adopter or placement.
AI does one thing in the product today: help prepare an organization-owned public profile draft from sources already on the record. Every other surface below is human-only, by construction, not by restraint.
Not policy prose — product behavior. Draft badges, the review gate for organization-owned profiles, external source trails, and unknown-field states.
Label on an organization-owned profile draft · named reviewer required before save, approval, or publish
Invisible automation making placement calls
Every reviewed field carries where it came from — intake, foster, vet, reviewer — visible on the record
Confident-sounding profile copy with no traceable origin
Public profile is blocked until required fields are reviewed
Stale or incomplete public records going live
Reviewer, timestamp, and credentials recorded on the case
Anonymous changes and unclear ownership
Unknown and needs-review field states are shown, never auto-filled
Invented certainty about an animal
Field-level edits keep before/after, who, and when — and a re-review trigger on sensitive fields
Quiet rewrites of medical, behavior, or availability state
No auto-rejection, no auto-placement · humans approve, decline, and publish
Adopters or animals being filtered out by a model
Ranking has no paid inputs · no partner, sponsor, or advertiser can influence discovery
Money buying which animals or organizations are shown
Essentials and partner offers are post-placement only — isolated from the placement surface
Commerce nudging an adopter toward an animal or a shelter
See these boundaries in motion in the interactive product demo — each event shows what AI may draft and what a human must review.
Animals change. Intake notes get corrected. Behavior is re-observed. The point of one reviewed animal record is that change is tracked and visible — not silently overwritten.
A staff member, foster, reviewer, or adopter flags something — a medical update, a corrected age, a behavior change. The flag routes back into the queue with an owner, not into a comment that nobody reads.
A human reviews the change before it changes the public record. Medical and behavior content has a standing review cycle. Reviewed is dated, so a stale review is visible as stale.
What changed, who changed it, and when is recorded on the record. A correction is a tracked event, not an invisible edit. The history travels with the animal.
If something is no longer known with confidence, the field returns to unknown rather than holding a value that is no longer true. Unknown stays unknown — including after a change.
Stated plainly so it can be checked. This describes the posture, not a substitute for the written terms of a pilot agreement.
Submitting the pilot form at /pilot sends your answers directly to WhiskerMatch's database — it's not just an email draft prepared in your browser, though a direct mailto: to cazar-brandes@outlook.com remains available if you'd rather use that.
A deletion request for a pilot request or a provisioned organization's data can be made by email to cazar-brandes@outlook.com and is handled by a person.
For organizations in the pilot, structured export of your records is part of the pilot agreement. If you decide not to continue, your data leaves with you. No lock-in is the intended posture.
Organization data is not sold, rented, or fed into a marketing or ad graph. The only AI processing in the product is the labeled organization-profile drafting feature, and only source facts a reviewer entered are sent. External provider listings are not sent to that feature.
This is the stated posture for an early, founder-led stage. The binding specifics — retention, export format, deletion timelines — live in the pilot agreement, not in marketing copy.
On WhiskerMatch, “reviewed” has a specific operational meaning tied to an organization-owned record, not an external provider listing or a public content network.
An authorized staff reviewer for medical and behavior entries; the assigned volunteer reviewer or adoption coordinator for a public profile. Each role can only do what it has been granted, not what it claims for itself.
Who made the change, when, and from what source — recorded on the record and in the append-only audit log.
A materially relevant foster check-in re-flags a published profile automatically. Staff can flag anything else for a reviewer at any time.
Not a stamp, and not AI output relabeled as human work. An organization-owned public profile cannot publish until a named reviewer clears it; nothing about that review is automatic. External source pages show provenance instead of claiming this review.
These apply to every surface of WhiskerMatch. They are enforced defaults, stated in public so behavior can be checked against them.
No partner, brand, or advertiser can pay to change which animals appear first in an organization's public adoption directory. There is no paid placement anywhere in the product.
If a detail isn't confirmed by the shelter's intake or a named reviewer, the field stays unknown. Unknown is a valid state.
The one AI-assist feature in the product helps prepare a first draft of public-profile text from sources already on the record. Every placement-level decision — adopt, foster, publish, reject, any status change — stays with a named human who knows the animal.
Organizations keep authority over how their animals are represented, which fields are public, and where their data goes. The platform doesn't override that authority.
Medical events, vaccinations, medications, and behavior observations are attributed and dated on the record — who added them, when, and from what source.
No countdown pressure. No manufactured scarcity. No guilt copy. No default-opt-in tricks. The product treats staff and adopters as adults.
The principles above describe what the platform enforces. These three describe what it refuses to become — no matter who asks.
WhiskerMatch does not diagnose, prescribe, or replace the veterinary relationship between a shelter and its clinic. Medical events, vaccinations, medications, and behavior observations are structured entries an authorized staff reviewer attaches to the record, dated and sourced. They are informational, not medical advice, and not a substitute for a professional clinical examination. If an animal is experiencing a medical emergency, contact a veterinarian or emergency clinic immediately.
No partner, brand, shelter, or advertiser can pay to change which animals appear first in an organization's public adoption directory. This is a platform-wide constraint, not a line item in a pricing tier.
Organization and applicant records are not sold, rented, or quietly fed into a marketing or ad graph. What an applicant shares with a shelter stays between that applicant and that shelter.
WhiskerMatch does not use AI to make placement decisions, auto-reject applicants, or publish organization records without human review. The one AI-assist feature only prepares a labeled organization-profile draft; humans retain full authority and accountability for every decision that affects an animal's placement.
Start with one workflow, named reviewers, attached sources, and no public change without human approval.