Identity and organization access
Individual email, authentication state, organization membership, role and access metadata used to administer the account and resolve organization access.
Privacy notice
This notice explains the information used to provide the service, the providers involved and how to make a privacy request. If a signed customer agreement applies, that agreement controls.
Use public, fictional or otherwise permitted nonconfidential material for your reviews. Confidential uploads are not enabled. This notice describes information handling; it does not grant permission to upload restricted material. Applicable signed customer terms and legal requirements take precedence.
Updated 7 October 2026
Information in the service
The service uses account and operational records to provide workspace access for your organization, insurance review workflows and support for authorized organization work.
Individual email, authentication state, organization membership, role and access metadata used to administer the account and resolve organization access.
Context, wording, analysis history, company standards, reviewed source excerpts, decisions, notes and related operational records used to provide the workflow. When you select a file or photo, it is sent through the authenticated service and processed for that request to extract text. The original file is not written to InsureClause application storage. Agreement drafts can save automatically as you work. Extracted or pasted agreement wording is saved only after you confirm authority to use that wording; Save Draft and Analyze Review also save the draft.
The public form collects a reply email, general access fields, request type and the message you submit so the request can be routed for review. To limit automated misuse, it also creates a daily keyed identifier for the requesting network. This pseudonymous identifier helps group requests for abuse prevention; it is not a promise of anonymity. The raw network address is not stored with the support request.
How information is used
In Company Standards, Save Draft stores the proposed positions and any reviewed policy excerpt included with them. Evidence results are temporary until deliberately saved. Where Save Evidence Version is available, you can deliberately save a version linked to a current agreement review after confirming your authority and the retention choice. Choose comparison details with source excerpts, or also the complete supplied text; original files are not retained in application storage. The chosen expiry limits access. Unsaved checks clear when you refresh or sign out.
InsureClause uses information to authenticate users, provide access for the right organization, run the requested insurance decision workflow, preserve attributable analysis and decision history, respond to support, diagnose reliability and protect the service.
Customer workspace content stays within organization workflows and is not used as an online training example or added to global insurance knowledge. Any different use requires a transparent and authorized basis.
Access and service providers
Organization users reach records through individual accounts and application paths limited to their organization. Authorized platform administration uses separate server controls. The administration overview contains account and contact details and support messages. Workspace wording, analysis and decisions remain in the organization workspace.
Supabase supports authentication and data access. Resend delivers account confirmation, invitation, password reset and security emails on our behalf. It processes recipient email addresses, message content and delivery information. Vercel hosts the application. Where challenge protection is enabled, Cloudflare processes the challenge interaction. Billing checkout is disabled. If it is enabled later, Stripe will process payment and subscription information through the provided payment flow. Optional external AI processing is currently disabled. The planned narrow integration uses selected source excerpts and reviewed concept descriptions, with a local check before any suggestion is used; it does not automatically change contract conclusions or wording. Before activation, the service will identify the provider and purpose, explain what information is sent and provide any required notices or choices. A setting that avoids storing a provider response does not itself guarantee zero provider retention. Accepting these terms does not itself enable that processing. File and photo extraction runs when an authenticated user makes a request, and the original file is not written to InsureClause application storage. See Security practices for more information about service providers.
Cookies and browser storage
InsureClause uses browser storage to keep you signed in and continue the work you requested. The application does not load advertising, audience analytics or affiliate tracking scripts. These optional purposes are not activated by signing in or accepting service terms.
Supabase stores your session in this browser so you can move between pages. It can persist between visits until you sign out, the session is revoked or browser data is cleared. Challenge protection may process browser information and use Cloudflare security cookies when enabled. Provider security settings determine their duration.
Session storage remembers a review reference, screen and time in the current browser tab. It does not hold the agreement wording. It is cleared by the application when the checkpoint is reset, or when the browser ends that tab session; browser session restoration may retain it.
If you dismiss workspace orientation, a local preference remembers that choice. It stays until orientation is completed or the preference is cleared. This preference is not used for advertising or partner attribution.
Optional analytics, advertising and referral tracking are off for everyone; there is no optional consent to grant at present. Sign out to end this browser's application session. Your browser settings can clear site data, which may also sign you out. Clearing browser data does not delete saved workspace records.
Use the control below to clear only setup reminder preferences. It does not clear your sign in session or saved reviews.
Before introducing an optional storage purpose, InsureClause will explain it and provide the appropriate choice before activation. Provider cookies and deployed settings are reviewed separately from the application code.
Retention and your requests
For new trials lasting 15 days under the updated trial policy, the workspace records a download deadline 14 days after trial expiry. During that retrieval period, authorized users can download existing work; new reviews and editing remain unavailable. After the deadline, trial workspace content is no longer available through the service. Existing accounts retain their recorded policy and dates unless an authorized change is communicated. Account, consent, security and support records have separate operational or legal purposes. For a saved evidence version, the selected expiry restricts later access. Where deletion is available to an authorized administrator, it removes evidence content and its decisions while retaining a minimal deletion reference to prevent duplicate or conflicting requests. Access expiry and physical deletion are separate steps. Automated physical deletion of expired trial content remains subject to operational acceptance before activation; until that gate is accepted, restricted records await the controlled deletion process. This is not a promise of immediate deletion from every provider backup. Backup retention and restoration controls are reviewed separately, and a downloaded copy remains in the recipient's control.
You can submit an access, correction, account closure or removal request through the security and privacy route. Identity or organization authority may need to be verified before action is taken.
Related information