Privacy Policy
Sovereign Data Architecture
- Effective date
- August 18, 2026
- Last updated
- August 2026
1. Our Fundamental Commitment: Zero Data Monetization
At Unfoggable, we operate under a simple principle: You are not our product. We do not sell, rent, monetize, share, or broker your personal information, document metadata, or uploaded records to advertisers, third-party analytics firms, session-recording tools, or data brokers. We utilize zero ad-tech or invasive analytics scripts. Our business model relies entirely on direct user subscriptions.
2. Database Isolation & Row-Level Security (RLS)
Your documents, policies, receipts, and personal notes are isolated at the database kernel level using Row-Level Security (RLS). This means your data is cryptographically and architecturally partitioned so that only your authenticated account can query or view your vault. No other user — and no automated advertising scraper — has access to your records.
3. AI Processing & Public Model Firewall
When you forward or upload documents to your vault, our processing engines extract metadata (such as expiration dates, policy numbers, and vendor names) strictly to populate your personal dashboard and trigger your proactive reminders.
- Zero AI Model Training: Your files, text, and extracted metadata are NEVER used to train public AI models (e.g., Anthropic, OpenAI, or public LLM pools).
- Zero Data Mining: Your uploaded documents are processed solely for your explicit functional use.
4. Verified Sub-Processors & Service Providers
To deliver a secure, healthcare-grade vault experience, Unfoggable relies on an exhaustive, vetted list of infrastructure sub-processors. Each sub-processor is bound by strict data protection agreements:
- Supabase (AWS Hosted): Database, Authentication/MFA, File Storage. Handles encrypted document files, user credentials, and vault records.
- Vercel: Application Hosting & Edge Execution. Handles server-side execution and application routing.
- Anthropic (Claude API): AI Extraction Engine. Handles document extraction, email classification, and photo analysis (under strict zero-retention training terms).
- Postmark (ActiveCampaign): Email Intake & Transactional Messaging. Handles inbound document intake, alerts, digests, and verification codes.
- Stripe: Billing & Subscription Management. Handles payment processing and invoice records (no credit card data is stored directly by Unfoggable).
- Google & Apple: OAuth Identity Providers. Handles Single Sign-On authentication tokens.
5. Data Retention, Temporary Caching & Purge Protocols
We enforce strict lifecycle schedules to minimize data exposure across live and backup environments:
- Document Deletion: When you delete a document, image, or thumbnail, it is removed from active, live systems immediately.
- Temporary Export Purging: On-demand export files (such as emergency summaries generated via "The Clearing") are automatically and permanently purged from temporary storage within 48 hours.
- Encrypted Backup Lifecycle: Backups are managed via our infrastructure partner (Supabase) and age out on a strict retention schedule — state-level data is fully purged from encrypted backups within 30 days.
6. Your Rights & Account Deletion Requests (CCPA / GDPR)
You maintain full data sovereignty under consumer privacy frameworks (including CCPA/CPRA and GDPR). You have the right to request access to, export of, or complete deletion of your personal data and vault contents.
To request a complete account purge, submit a formal deletion request to privacy@unfoggable.com. Upon receiving your request, your account, associated files, and personal metadata will be deleted immediately from active systems and completely purged from encrypted backups within 30 days.
7. Compliance Disclosures
Unfoggable continuously monitors threshold requirements under the California Consumer Privacy Act (CCPA) and General Data Protection Regulation (GDPR). While Unfoggable operates proactively with CCPA-grade privacy controls for all users regardless of location, Data Protection Impact Assessments (DPIAs) are maintained internally regarding automated document processing activities for international compliance.
Questions about this document?
Write to privacy@unfoggable.com — the same address handles access, export, and deletion requests.