SmartParse Privacy Policy
Last updated: July 28, 2026
This Privacy Policy explains how Safal Consulting ("SmartParse," "we," "us," or "our") collects, uses, stores, and protects information when you use the SmartParse document parsing service (the "Service").
This policy is designed to be accurate to how SmartParse actually operates today. If anything here doesn't match your understanding of the product, please contact us before relying on it — see Section 10.
1. Who We Are
SmartParse is a product of Safal Consulting. For any privacy-related questions, contact:
Email: smartparse.app@gmail.com
JK Nagar 21, Kanniampuram Po, Ottapalam ,Kerala, India 679104
2. What Information We Collect
2.1 Account information
When you sign up via Google OAuth, we receive and store:
- Your name and email address (as provided by Google)
- A unique user identifier
We do not receive or store your Google password. Authentication is handled entirely by Google and Supabase Auth.
2.2 Organization information
- Organization name
- Roles and membership within your organization (e.g., owner, admin, member)
- Plan/subscription tier and usage limits
2.3 Documents you upload
When you upload a document for parsing:
- The document is transmitted to our processing pipeline and converted to text/structured data.
- The document itself is never written to disk or persisted in storage. Processing happens in memory only, both during structure extraction (Docling) and AI-based extraction (Claude API). Once your session's parsing is complete, the original file content is not retained by SmartParse.
- The extracted results(e.g., fields you asked us to pull, summaries, structured data) may be retained in your account's parsing history so you can view past results, unless you delete them or your organization requests deletion.
2.4 Usage and metadata
We log the following for billing, plan enforcement, and product improvement purposes:
- Document type/category you selected (e.g., invoice, contract)
- Analysis task performed (e.g., extract, summarize, Q&A)
- Timestamps of each parse
- Confidence level of extraction results
- Token and parse-count usage against your plan
2.5 Communications
If you contact us for support or submit a trial signup form, we retain your email and message content to respond to you.
3. How We Use Your Information
We use the information described above to:
- Provide and operate the Service (parsing your documents, returning results)
- Authenticate you and manage your organization's access
- Enforce plan limits (parses/month, token usage)
- Send you service-related communications (e.g., trial status, usage alerts)
- Send you marketing communications, only if you have opted in via the consent checkbox at signup or on the trial form
- Improve and maintain the Service
- Comply with legal obligations
We do not sell your personal information, and we do not use your uploaded documents to train any AI model.
4. How Your Documents Are Processed (Sub-Processors)
Understanding exactly where your data goes matters, especially for regulated documents (financial, legal, KYC). Here is the actual processing chain:
| Step | Where | What happens |
|---|
| 1. Upload | Your browser → our Next.js application (hosted on Vercel) | File is transmitted over HTTPS |
| 2. Structure extraction | Our backend service (hosted on Hostinger, India) | Docling extracts document structure. Processed in memory only — never written to disk. Hostinger has no access to the AI extraction layer or your account data. |
| 3. AI extraction/analysis | Called server-side from our Vercel application | The extracted text is sent to Anthropic's Claude API for field extraction, summarization, or Q&A, depending on what you requested |
| 4. Result delivery | Back to your browser | Results are returned and, if applicable, saved to your parsing history in our database |
Our sub-processors:
- Anthropic (Claude API)— performs AI-based document analysis. Anthropic's API is governed by its Commercial Terms, which are materially different from its consumer Claude.ai product: Anthropic does not use API inputs or outputs to train its models, and retains this data only briefly for safety/abuse-monitoring purposes before automatic deletion. See Anthropic's current data retention policy: platform.claude.com/docs/en/manage-claude/api-and-data-retention
- Vercel — hosts our web application and routes requests. Vercel does not have access to document content beyond what passes through in transit.
- Supabase (Singapore region) — provides authentication and database services (account data, organization data, parsing history, usage metrics). Supabase does not process document content — only account/metadata as described in Section 2.
- Hostinger (India) — hosts our document structure-extraction service (Docling). This service never touches your account data, credentials, or the AI extraction layer. It processes file structure in memory only, with no disk persistence.
- Resend — sends transactional emails, such as team member invitations. Resend processes only the email address and invitation content necessary to deliver these messages.
We do not share your data with any other third party except as required by law.
5. Data Retention
- Document content: Not retained. Processed in memory during your active session only.
- Extracted results / parsing history: Retained while your account is active, or until you or your organization admin deletes it.
- Account and organization data: Retained while your account is active.
- Usage/billing metadata: Retained for the duration of your account plus a reasonable period for accounting and legal compliance.
- Marketing communication records: Retained until you opt out or request deletion.
If you close your account, we will delete your personal data within a reasonable period, except where retention is required by law (e.g., financial records).
6. International Data Transfers
Depending on your location, using SmartParse may involve transferring your information across borders:
- Account and organization data is stored with Supabase in Singapore.
- AI processing is performed by Anthropic's API, which may process data in the United States or other jurisdictions where Anthropic operates.
Where required, we rely on appropriate transfer mechanisms (such as standard contractual clauses) to protect data transferred internationally. If you are an enterprise client requiring a Data Processing Agreement covering these transfers, contact us at smartparse.app@gmail.com.
7. Your Rights
Depending on your jurisdiction (including under India's Digital Personal Data Protection Act, 2023), you may have the right to:
- Access the personal data we hold about you
- Correct inaccurate data
- Request deletion of your data
- Withdraw consent for marketing communications at any time
- Request a copy of your data in a portable format
To exercise any of these rights, contact us at smartparse.app@gmail.com. We will respond within a reasonable timeframe.
8. Security
We take the following measures to protect your data:
- All data is encrypted in transit (HTTPS/TLS 1.2+)
- Data at rest is encrypted using industry-standard encryption (AES-256, via Supabase)
- Row-Level Security (RLS) enforces strict tenant isolation — your organization's data cannot be accessed by other organizations, enforced at the database level
- Documents are never written to disk during processing
- Access to production systems is limited to authorized personnel
No system is 100% secure, and we cannot guarantee absolute security, but we are committed to using industry-standard practices to protect your information.
9. Children's Privacy
SmartParse is not directed at, and is not intended for use by, individuals under the age of 18. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us and we will delete it.
10. Changes to This Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify active users via email or an in-app notice. Continued use of the Service after changes take effect constitutes acceptance of the updated policy.
11. Contact Us
If you have questions about this Privacy Policy or how your data is handled, contact us at: smartparse.app@gmail.com