Privacy Policy

Effective date: June 14, 2026

Overview

SmallClaims is a private document preparation service for small claims users. We collect and process information only to create packet previews, generate purchased PDFs, provide customer support, process payments, protect the service from abuse, and operate the product reliably.

Information we collect

  • Case intake information: name, email, optional phone number, state, county or city, party information, claim amount, dispute type, story text, and any optional source or campaign fields.
  • Evidence files: documents, images, screenshots, receipts, contracts, messages, invoices, estimates, and labels you add to those files.
  • Processing data: extracted text from supported files, generated preview JSON, generated packet JSON, generated PDFs, model usage metadata, and generation error categories.
  • Payment metadata: package selected, payment status, amount, receipt link, Stripe identifiers, and the email used for receipt delivery. Stripe processes card details directly; we do not receive or store your full card number.
  • Product reliability data: hashed IP address, device type, browser user agent, request route, rate-limit counters, status changes, support requests, privacy requests, and Supabase-stored product events.

How we use information

  • To create a filing document preview from your story and evidence.
  • To generate and store purchased filing documents, demand letters, evidence add-ons, and related data.
  • To send transactional emails for preview access, payment confirmation, document access, support, and Human Review updates.
  • To provide account access through password setup and the portal.
  • To process one-time payments, refunds, receipts, and payment support.
  • To troubleshoot failures, prevent abuse, enforce upload and generation limits, and measure funnel performance.

How evidence is handled

  • Uploaded evidence is stored in private Supabase Storage buckets, not public buckets.
  • Evidence and generated filing documents are accessed through server-side authorization and short-lived signed URLs.
  • We extract text and metadata from supported files so the filing documents can cite and organize the materials you provide.
  • OpenAI and/or Anthropic may process your case text and evidence excerpts solely to generate your preview and filing documents. Your case materials are not used by SmallClaims to train models.
  • Human Review, when purchased, permits a reviewer to access the case materials needed to check formatting, clarity, completeness, and obvious missing information.
  • Application logs and product events are designed not to include story text, evidence contents, access tokens, or full uploaded files.

Service providers

We use Supabase for database, authentication, and file storage; Stripe for payments; Resend for transactional email; Vercel for hosting; and OpenAI/Anthropic for document generation. Each provider receives only the data needed for its role in the service. We do not sell personal information.

Retention

We retain paid case records, generated packet metadata, and payment records so customers can re-download packets, receive support, and so we can maintain accounting and abuse-prevention records. Unpaid draft and preview cases may be removed or anonymized after a shorter period because they have not become customer records. Operational events, rate-limit records, email telemetry, and support records are retained for reliability, security, and customer service. When a deletion request is approved, we remove evidence files and generated packet files where no longer needed, remove or anonymize extracted document content, and retain only limited payment, audit, and operational records required for legitimate business needs.

Your controls

  • Access your case from the customer portal using the email tied to the case.
  • Export a machine-readable copy of case metadata, orders, preview data, generation records, and packet metadata.
  • Request deletion of case materials and generated documents.
  • Rotate a private access link if it was forwarded or exposed.
  • Submit privacy or support requests from the portal or case pages.

Security practices

  • HTTPS is used for app traffic.
  • Case evidence and packets are stored in private buckets.
  • Supabase row-level security protects customer-owned data for authenticated access, and sensitive operations run through server-side authorization checks.
  • Case links use high-entropy access tokens that can be rotated.
  • Admin operations are gated by server-side admin checks and recorded in audit logs.
  • Supabase-backed rate limiting and operational events help detect abuse, stuck jobs, and service failures.

Contact

Privacy questions, deletion requests, export requests, and access link concerns can be submitted from the customer portal or from the case page. SmallClaimsis a private service and is not affiliated with any court, clerk's office, government agency, or law firm.