Security at ClariDoc
This page is maintained by the ClariDoc team to answer common security and privacy questions. It reflects the controls currently enabled — not an independent certification.
Encryption
Documents are transmitted over TLS and stored encrypted at rest on our managed infrastructure.
Access control
- Row-level security policies enforce that users can only see their own documents (and, for Pro accounts, those explicitly shared within their household).
- Business workspaces use role-based access with owner, admin and member roles.
- Authentication is handled via email/password and Google OAuth.
Data handling
- Your documents are never used to train AI models.
- You can delete any document at any time; deletions are propagated to storage.
- Sub-processors: Supabase (auth, database, storage), Stripe (payments), an AI gateway for analysis.
Shared responsibility
We provide platform-level controls; you're responsible for protecting your account credentials and for who you invite into your household or workspace.
Reporting a vulnerability
If you believe you've found a security issue, please email security@claridoc.app with details and reproduction steps. We aim to acknowledge within one working day.
Not sure what your letter is asking?
Upload your document to ClariDoc. We'll explain it in plain English, pull out the deadline and give you a clear next-step checklist — usually in under a minute.
Private to your account Analysed in seconds
