Privacy summary

This page is maintained by the DocAmass administrator to answer common privacy questions about how the service collects and handles information.

What is collected

Contact details for grant-writing consultants and invited client contacts (name, email), the answers clients provide to intake questions, and the documents clients upload against their intake.

Why it is collected

To let a grant writer see what a client has provided, request corrections, and assemble a complete grant application package.

Who can access it

Where files are stored

Uploaded files are stored in a private, access-controlled bucket. Downloads use short-lived signed links generated only after authorization is verified.

Retention and deletion

Administrators may archive intakes, permanently delete intakes, or permanently delete a client organization. Clients may request deletion of their information from inside the app.

AI use

Uploaded documents and answers are not sent to any AI provider by DocAmass in this version.

What DocAmass does not claim

This service does not claim SOC 2, ISO, or PCI compliance, does not guarantee data residency in any specific country, and does not claim that uploads are scanned for malware unless the administrator has explicitly configured such scanning.