Legal

Legal & Compliance Agreements

SignItSure is committed to absolute clarity and transparency. Our policies are written in plain English so you know exactly how we process your data and secure your agreements.

Last updated: September 3, 2026

Privacy Policy

Effective September 3, 2026

Introduction

SignItSure helps you understand important documents using AI-powered document analysis. You can upload a document, get an explanation in plain English, ask follow-up questions, and manage your information from your account.

This policy explains what we collect, why we collect it, and the control you have over it.

Information we collect

Account information

  • Your name
  • Your email address
  • Login information used to access your account
  • Any profile information you choose to provide

Profile information

  • Your preferences
  • The document categories you care about
  • How you like explanations written
  • Information used to personalise AI responses for you

Documents (processed, not collected)

We do not collect or keep your documents. Files, extracted text, AI context and answers exist only temporarily while the workflow runs, and are permanently erased once signing is complete or the link expires. We build no document archive.

Usage information

  • Credit usage
  • AI requests you make
  • Which features you use
  • General account activity

How we use information

  • To provide document analysis
  • To generate AI explanations
  • To answer your questions about uploaded documents
  • To personalise responses based on your preferences
  • To improve product reliability
  • To manage accounts and subscriptions
  • To monitor usage and prevent abuse

Document handling and AI processing

Here's what happens when you upload a document:

  1. 1Your document is held temporarily in private storage scoped to your account.
  2. 2It is processed through SignItSure's server-side AI system — never directly from your browser.
  3. 3Text may be extracted temporarily so the document can be analysed.
  4. 4The document is split into smaller sections so answers can point to the right part of it. These working copies are temporary.
  5. 5The AI only receives the parts of your document that are relevant to the explanation or question at hand.
  6. 6You can delete a document at any time, and everything — file, extracted text, sections and AI answers — is erased automatically when the workflow finishes or the link expires.

SignItSure does not sell your documents or your personal information.

AI providers and third-party services

SignItSure works with third-party technology providers to run the service. These providers may support:

  • AI processing
  • Authentication
  • Database services
  • Secure storage
  • Payment processing

These providers receive only the information necessary to provide their service to us, and their handling of that information is governed by their own terms and policies.

Data security

Security practices we have in place include:

  • Authentication controls on every account
  • Private document storage
  • User-specific data access controls, enforced at the data layer
  • Server-side protection of AI and API access
  • Restricted access to sensitive systems

No online service can guarantee absolute security, and we won't claim otherwise. We work continuously to protect your information and to limit what any single part of the system can reach.

Your data rights

From your account you can:

  • View your account information
  • Manage your uploaded documents
  • Delete documents
  • Request account deletion
  • Manage AI personalisation settings

Data retention — zero retention of documents

SignItSure operates a zero-retention document model. We do not permanently store the documents you or your customers work with.

  • Uploaded files are held only for as long as the workflow needs them: AI explanation, customer questions and signing.
  • Signing links expire 1 hour to 7 days after sending, as chosen by the sender. Documents that are never sent for signature are erased automatically within 24 hours. In every case there is an absolute maximum: no uploaded file is stored for longer than 7 days, whatever state its workflow is in.
  • At finalization — or when a link expires or is revoked — the original files, the extracted text, the embeddings, the AI context and answers and the captured signature images are permanently deleted. AI processes only the document in front of it; account preferences contain no document text and there is no cross-document search.
  • Completed signed documents are generated once and delivered directly to the business sender and the customer signer. That temporary package is automatically deleted within 24 hours of delivery.
  • We retain only the minimal signing audit record required to evidence a signature — signer name, email, timestamp, IP address and activity events — with no document content attached.
  • Account and workspace information is retained while you maintain your account.

The intent is simple: if our systems were ever compromised, there would be no archive of customer documents available to access.

We never sell, rent or mine your documents, and they are never used for advertising or to train AI models. The audit record we keep proves that a signature took place; it contains no part of what was signed. Where email delivery is enabled, the finished signed file is sent only to the business sender and the customer signer at the addresses they provided.

Anonymized product trends

Separately from the audit record above, and stored in a different database table with no link back to any document, signer or signature request, we keep a small amount of fully anonymized, aggregated usage data: which general category a signer's question fell into (for example "liability" or "cancellation"), which general category a flagged clause fell into (for example "auto-renewal" or "early termination fee"), roughly how long a document took to sign, and the sending workspace's declared industry.

This never includes the document, the clause text, the question text, a document id, a signer's name, email or IP address, or anything else that could identify a person, a company or a document. It cannot be reconnected to the source it came from — including after that source is deleted under our zero-retention model — because we never store the link between them. We use it only to understand aggregate trends, like which topics most often come up before a document stalls.

Children's privacy

SignItSure is not intended for children under 13, and we do not knowingly create accounts for them.