Draft for review. This document is standard SaaS boilerplate tailored to DueClarity. David should review with legal counsel before treating it as final.

Data Handling

Effective July 1, 2026

What you upload

DueClarity processes AR aging files you upload — typically invoice numbers, customer names, amounts, due dates, and aging buckets. You control what is uploaded. We do not connect to your ERP or pull data automatically.

Where it is stored

Your data is stored in a dedicated PostgreSQL database hosted by Supabase on AWS (us-east-1). Each account is row-level isolated — no other DueClarity customer can read your invoices or customers. Data is encrypted in transit (TLS 1.2+) and at rest (AES-256).

Who can access it

Only you (via your login) and DueClarity's founder for support when you ask for help. We do not sell, share, benchmark, or resell your AR data. We do not use your data to train machine learning models. Stripe receives billing metadata only — not your AR uploads.

How long we keep it

Data is retained while your account is active. If you cancel, we keep it for 30 days in case you return, then permanently delete it. You can delete individual uploads or your entire account from Settings → Data & Privacy at any time.

How to export

Every plan includes a full CSV export of invoices, customers, and upload metrics from Settings → Data & Privacy. Growth adds branded PDF and Excel executive exports from reporting pages. Exports are generated on demand from your stored snapshots — we do not maintain a separate data warehouse.

How to delete

Delete individual uploads or request full account deletion from Settings → Data & Privacy. You can also email hello@dueclarity.com for immediate deletion — we action requests within 5 business days.

Deterministic analysis — no AI training on your data

DueClarity metrics and recommendations are rule-based and reproducible from your uploads. We do not run machine-learning models on your AR file, and we do not use your data to train models for DueClarity or anyone else. What you see can be re-derived from the same snapshots.

Snapshot model

DueClarity compares your current upload to your previous upload (N vs N-1). We retain the minimum data needed for that comparison — not an eternal invoice history. Derived metrics (DSO, risk scores, recommendations) are recomputed from your snapshots when you view a page, not stored as separate truth.

Questions

Security overview: /security. Privacy policy: /privacy. Contact: hello@dueclarity.com.