Last reviewed: June 2026
Your data, and exactly what happens to it.
This page is written for two readers at once: the person who'll use Clarilytic, and the person who has to approve it. No diagrams that hide things, no badges we haven't earned.
The short version
- Your documents are used to answer your questions. Nothing else.
- Every customer's data is kept in separate storage — not just separate rows in a shared pile.
- Everything is encrypted in transit and at rest; stored credentials are encrypted too.
- You control who on your team sees what, with team roles, explicit sharing, and audit logging.
- Deleted means deleted: trash with restore, then full removal on request.
What happens when you upload a file
Your file travels over an encrypted connection (the same TLS that protects online banking — the connection is encrypted, not the file itself) and lands in your organization's own storage area, where the storage layer encrypts it at rest. Clarilytic reads it, classifies it, and pulls out the people, companies, dates, amounts, and obligations inside. Those findings are stored alongside the document — in your partition, nowhere else. When you ask a question, Clarilytic searches only your organization's documents and answers with citations into them. You can open a processing trace for any document and see each step it went through.
Kept apart by design
Each customer's documents, findings, and search indexes live in separate databases and partitions. There is no shared pool your data sits in. A bug in another customer's account cannot reach into yours, because there is no “into yours” from there.
Who can get in
Sign-in runs through an enterprise-grade identity provider. Inside Clarilytic, access has two layers: six team roles control what each person can do (a reviewer can read without being able to delete), and portfolios with their workspaces are shared explicitly — so a guest sees only what was shared. Actions are recorded in an audit log.
Encryption
In transit: modern encrypted connections, always. At rest: encrypted storage for documents, findings, and indexes. Credentials you store with us (for cloud imports) are themselves encrypted.
Deletion
Deleted items go to a trash you can restore from. When you want something truly gone — a document, a workspace, or your whole account — we fully delete the documents and everything derived from them, on request.
What your data is never used for
Not to train systems for other customers. Not for advertising. Not sold, shared, or browsed by staff out of curiosity — access by our team is restricted to operating the service and supporting you when you ask.
What we are not (yet)
We are an early-stage company. We have not completed SOC 2 or ISO 27001 audits, and we won't imply otherwise with lookalike badges. We also won't claim the product is flawless: poor scans can defeat it, and it tells you when it isn't sure instead of guessing. If your evaluation needs answers beyond this page, write to us — support@sulbasolutions.com — and you'll get them from the people who built it.