Legal
Privacy Policy
Last updated: September 23, 2026
This policy explains what Clienti collects while you use the service during beta, how we use it, who we share it with, and the choices you have.
What we collect
Account info: your name, email, and password (or Google sign-in identifier) when you sign up, and the profile details you add in Settings — company, public contact email, phone number and country, timezone, profile photo, Google review link, and your reminder and weekly digest preferences.
Transaction and deal data: properties, milestones, deadlines, closing dates, amendments, notes, reminders and the property image you add to a deal.
Uploaded documents: the purchase agreement and amendment PDFs you upload and the dates, parties and details extracted from them.
Client and party information: the names, email addresses, phone numbers and roles of the clients and other parties you add to a deal or save for reuse.
Review information: when a client leaves a review, their rating, optional written feedback, whether they allow it to be shared and how it should be attributed, and any later withdrawal of that permission.
Timeline views:when someone opens a shared timeline, we record that a view happened and when, so you can see whether your client has looked at it. We don't record the viewer's IP address or device for this.
Usage data: basic logs (timestamps, error messages, IP) used to operate and debug the service.
How we use it
We use your data to provide the service: parse contracts and amendments, generate timelines, send reminders, weekly digests and the emails you ask us to send, run your calendar subscription, request reviews and create social cards from approved feedback, and let you share read-only timelines with parties you choose. We also use it to keep the service secure, prevent misuse, respond to support requests and fix problems. We don't use it for advertising.
Where it’s stored
Supabase hosts our database and file storage. Contracts, deal data, and account info are stored there. Uploaded files are kept in private storage that requires authentication or a signed link to access.
AI processing
We send the contract and amendment PDFs you upload to Anthropic(Claude API) to identify dates, parties, and other deal details. Anthropic doesn't train on data sent through their API. We don't send your contract to any other AI provider.
We use Resendto deliver email. You receive account emails (confirmations and password resets), milestone reminders and, if enabled, a weekly digest. Clients and other parties receive email only when you send it or turn it on: timeline invites, party reminders for milestones you enable, completion emails and review requests. If you invite a friend, we send them one invitation email. We don't send marketing email during beta.
Hosting
The app runs on Vercel, which handles request routing and serves the site. Vercel may log basic request metadata (IP, user agent) for security and operations.
Shared timelines and calendar links
A shared timeline link contains a long random code. It isn't listed anywhere, but anyone who has the link can view that deal's timeline without an account: the property address, milestones and dates, progress, the name of the party handling a step where you have chosen one, and your contact details. Share it only with the people you intend.
Your calendar subscription link works the same way: anyone with it can see the milestone titles, dates and property addresses of your active deals. You can reset it at any time, which stops the old link working.
Sharing
We don't sell your data.We don't share it with advertisers or data brokers. The only people who see your deal data are:
- You
- Anyone you give a share link to (read-only timeline view)
- Clients and parties you email through Clienti (they receive the details in that email)
- Service providers above (Supabase, Anthropic, Resend, Vercel, and Google if you sign in with Google) — acting only to deliver the service
Social cards are only created from feedback a client approved for sharing, and are published only if you choose to share them.
Security
All traffic is encrypted in transit (HTTPS). Stored data is encrypted at rest by Supabase. We use row-level security so users can only access their own deals. Service-role keys are kept server-side only. No system is completely secure, but we take reasonable steps to protect your information.
Retention and deleting your data
We keep your information while your account is active and as long as reasonably needed to provide the service and meet our legal and security obligations. You can remove milestones, notes, parties and your profile photo yourself, and archive or cancel deals. To delete your entire account and all associated data, email team@therefinedrealtor.com from the address on your account. We'll process the deletion within 7 days. Some operational logs (e.g. error logs) may be retained for up to 30 days for security purposes, then purged.
Your choices
- Update your profile and preferences in Settings at any time.
- Turn the weekly digest and each reminder type on or off in Settings.
- Reset your calendar subscription link.
- Email us with questions about your data or to request account deletion.
- Clients can withdraw permission to share their review.
Cookies
We use first-party session cookies to keep you logged in, and your browser's local storage for a few interface preferences (such as whether you've seen the product tour). We don't use advertising or third-party tracking cookies, or analytics tools.
Children
Clienti is not for users under 18 and we don't knowingly collect data from minors.
International users
Clienti is operated from the United States. By using the service, you consent to your data being processed in the US and other countries where our service providers operate.
Changes
We may update this policy during beta. Material changes will be announced via email or in-app. See also our Terms & Conditions.
Contact
Privacy questions? Email team@therefinedrealtor.com.