Privacy summary
This page is maintained by the DocAmass administrator to answer common privacy questions about how the service collects and handles information.
What is collected
Contact details for grant-writing consultants and invited client contacts (name, email), the answers clients provide to intake questions, and the documents clients upload against their intake.
Why it is collected
To let a grant writer see what a client has provided, request corrections, and assemble a complete grant application package.
Who can access it
- Workspace administrators can access records belonging to their workspace.
- Invited client users can access only the intakes belonging to the client organization they were invited to.
- Clients cannot see internal notes or another client's information.
Where files are stored
Uploaded files are stored in a private, access-controlled bucket. Downloads use short-lived signed links generated only after authorization is verified.
Retention and deletion
Administrators may archive intakes, permanently delete intakes, or permanently delete a client organization. Clients may request deletion of their information from inside the app.
AI use
Uploaded documents and answers are not sent to any AI provider by DocAmass in this version.
What DocAmass does not claim
This service does not claim SOC 2, ISO, or PCI compliance, does not guarantee data residency in any specific country, and does not claim that uploads are scanned for malware unless the administrator has explicitly configured such scanning.