ApexAcumen · Legal AI

Privacy Policy

Effective date: April 20, 2025  ·  Last updated: April 20, 2025

Short version: Your legal documents are used only to generate your analysis. We do not train AI models on your documents. We do not sell your data. Documents are deleted after analysis unless you explicitly save them.

1. Who We Are

ApexAcumen is a product of bigSIMPLE Development, operated as a sole proprietorship. Our contact email is bigsimpledevelopment@protonmail.com. When this policy says "we," "us," or "our," it means bigSIMPLE Development.

2. What Data We Collect

We collect only what is necessary to provide the service:

  • Documents you upload — PDF or DOCX files you submit for analysis (contracts, NDAs, leases, terms of service, etc.)
  • Account information — email address and password (hashed) if you create an account
  • Usage data — pages visited, features used, error logs, and timestamps, collected via server logs
  • Payment information — billing details processed by our payment provider (Stripe); we never store raw card numbers

We do not collect: device contacts, location data, microphone or camera access, or any data unrelated to the service.

3. How We Use Your Documents

Documents you upload are processed for one purpose: to generate your clause-level risk analysis and plain-English explanations.

  • Document text is sent to a third-party AI API (Anthropic Claude) over an encrypted connection for analysis
  • Documents are not used to train or fine-tune any AI model
  • Documents are not shared with other users
  • Documents are deleted from our servers within 24 hours of analysis unless you explicitly save a copy to your account
  • Saved documents are stored encrypted at rest and can be deleted at any time from your account settings

4. Third-Party Services

ApexAcumen relies on the following third-party services:

  • Anthropic (Claude API) — AI document analysis. Anthropic's API usage policy prohibits using submitted data to train models.
  • Stripe — payment processing for paid subscriptions
  • Render / Railway — cloud hosting infrastructure

We do not use advertising networks, analytics trackers (Google Analytics, Meta Pixel, etc.), or data brokers.

5. Data Retention

  • Unsaved uploaded documents: deleted within 24 hours of analysis
  • Saved documents: retained until you delete them or close your account
  • Account data: retained for the life of your account, then deleted within 30 days of account closure
  • Payment records: retained as required by law (typically 7 years)
  • Server logs: retained for 90 days for security and debugging purposes

6. Your Rights

You have the right to:

  • Access — request a copy of the personal data we hold about you
  • Delete — request deletion of your account and all associated data
  • Export — download your saved documents and analysis history
  • Correct — update inaccurate account information at any time

To exercise any of these rights, email bigsimpledevelopment@protonmail.com with "ApexAcumen Privacy Request" in the subject. We will respond within 30 days.

7. Security

We use HTTPS/TLS for all data in transit. Documents stored on our servers are encrypted at rest. We follow principle-of-least-privilege for internal access. No system is perfectly secure, but we take reasonable precautions proportionate to the sensitivity of legal documents.

If you believe a security vulnerability exists, please disclose it responsibly to bigsimpledevelopment@protonmail.com.

8. Children

ApexAcumen is not directed at children under 13. We do not knowingly collect data from anyone under 13. If you believe a child has submitted data, contact us and we will delete it promptly.

9. Changes to This Policy

If we make material changes, we will post the updated policy here and update the "Last updated" date above. For significant changes, we will notify account holders by email at least 14 days in advance.

10. Contact

Questions about this policy? Reach us at bigsimpledevelopment@protonmail.com.