Last updated: 9 July 2026
ContractClerk helps small businesses understand the contracts they're asked to sign. Contracts are sensitive, so this page sets out plainly what we collect, where it goes, and what control you have over it.
Account information. Your email address and name, handled through our authentication provider. We never see or store your password.
Contract content. The text of contracts you upload, paste, or generate, along with the analysis produced from it — clause excerpts, risk ratings, recommendations, and detected dates. If you save contract versions, the full text of those versions is stored so you can compare them.
Counterparty details. Names and email addresses you enter when tracking a contract, sharing it for review, or sending it for signature.
Billing information. Your subscription tier and the customer identifier assigned by our payment processor. Card details go directly to that processor and never reach our servers.
Usage information. How many analyses you've run, and aggregate AI usage totals used for capacity planning. These records count tokens and cost; they do not contain contract content.
Analytics. If you allow it, pages visited and features used. Web addresses are stripped of identifiers before they leave your browser, so contract identifiers and share links are never sent to any analytics provider.
When you upload a PDF or Word document we extract its text and then discard the file itself — the original is not retained. Scanned documents are processed on our own servers rather than sent to a third-party OCR service.
Contract text is sent to Anthropic's API to produce the analysis. Under Anthropic's commercial terms, content submitted through the API is not used to train their models.
We do not sell your information or share it for advertising. We use the following providers to run the service, each with access only to what their function requires:
If you import a file from Google Drive, Dropbox, or OneDrive, that connection is opened by you and used only to retrieve the file you pick.
Sending a contract for review creates a private link containing a randomly generated token. Anyone holding the link can view that contract without signing in, so treat it as confidential. Links expire after 30 days by default, and you can revoke one at any time from the contract's page.
Some storage is strictly necessary and always present: keeping you signed in and enabling checkout. It cannot be switched off without breaking those features.
Analytics storage is optional. Where the law requires prior consent we ask before loading anything; elsewhere it is on by default and you can turn it off below. Either way, declining leaves every feature fully working.
We honour Global Privacy Control. If your browser or an extension sends a GPC signal, we treat it as a standing instruction to opt out and load no analytics — you don't need to do anything else.
Analytics are currently on for this browser.
This setting is stored on this device, so you'll need to set it again on other browsers.
We keep your contracts and analyses for as long as your account is open, so your history stays available. Delete a contract and we remove it from your dashboard while retaining its negotiation history; contact us if you want it erased outright or your account closed and its data deleted.
Depending on where you live, you may have the right to access, correct, export, or delete your information, to object to certain processing, and to withdraw consent. You can exercise any of these by contacting us and we will not treat you differently for doing so.
Questions about this policy or your data: privacy@contractclerk.com