Privacy
Written to be read, not skimmed past. This describes what we collect, what never leaves your browser, and what we do with the difference. Last updated 2026-10-03.
We record little, we name all of it, and what you type into a free tool stays in your browser unless you choose to send it.
// Privacy_01
What our free tools do with what you type: nothing
The free tools run entirely in your browser: the Clean Room, the AI Readiness Check, the AI Exposure Check, the WISP Builder, the WISP Health Check, the IRS Notice Lookup, the IRS Notice Decoder, Compliance Deadlines and Breach Deadlines. Text you paste, answers you give, and identifiers the tools detect are processed locally on your machine and are not transmitted to us or to anyone else. Closing the tab discards them. Each page still records that it was opened, as the next section describes.
Two qualifications. First, some tools remember things on your own device using browser storage: the Clean Room keeps the firm dictionary you add to it, the Readiness Check notes that you have already sent a report, and several tools keep display settings such as the colour palette. These stay in your browser, and the Clean Room’s Remove all control clears the dictionary. We recommend not using the firm dictionary on shared computers. Second, if you explicitly choose to send us a readiness report or attach one to a contact message, that specific content is transmitted to us as described below.
// Privacy_02
What we record when you visit
Every page on this site records the visit: the page you opened, including any part of its address after a question mark, the address that referred you, the page title, your browser language and time zone, your screen size and pixel density, how long you stayed, and a random session identifier that groups the pages of one visit together. Our server also records your IP address, the list of languages your browser says you prefer, and your browser’s user agent, a line of text that describes the browser and your operating system. From the user agent we note the browser, the operating system, whether the device is a desktop, tablet or phone, and whether it looks like an automated crawler. From the IP address we record an approximate location: country, region, city, postal area, and a latitude and longitude. None of this is used for advertising, none of it is sold or shared, and there is no cross-site tracking.
The free tools record the visit, never what you put into them. The Clean Room, AI Readiness Check, AI Exposure Check, WISP Builder, WISP Health Check, IRS Notice Lookup, IRS Notice Decoder, Compliance Deadlines, Breach Deadlines, the Workbench and the AI Vault record that the page was opened, in the way described above. What you type, paste, upload or choose in them is not part of that record and is not sent to us. On the Clean Room and the AI Exposure Check the page address is recorded without anything after it, so the choices the Exposure Check keeps in the address stay in your browser.
Every page, the free tools included, loads Plausible, a cookieless analytics service that counts page views in aggregate. It receives the page's address and the site you came from, never what you type or paste into a page. On the Clean Room and the AI Exposure Check it receives the bare page address, so the choices those tools keep in the address stay in your browser. Plausible sets no cookies, stores no IP address, and creates no record of an individual visitor, so it cannot follow you between sites or between days. It is separate from the visit record described above.
The session identifier is held in your browser's session storage and is discarded when you close the tab. Visit records are kept for operational review and you can ask us to delete yours by emailing support@claremontsecurity.com.
// Privacy_03
What we collect when you contact us
When you submit the contact form or send us a readiness report, we receive what you typed: firm name, your name, email, optional phone, firm size, the area you selected, and your message or report. This arrives as email to our support inbox and is also recorded in a private database so an inquiry cannot be lost to a mail failure. We use it to respond to you and for no other purpose.
We do not sell or share inquiry data, we do not add you to a mailing list you did not ask for, and we do not use advertising trackers, advertising cookies, or cross-site tracking on this site. The visit records described above are our own, held in our own database, and are not shared with an analytics network. Inquiry records are retained while relevant to a current or prospective engagement; you can ask us to delete yours at any time by emailing support@claremontsecurity.com.
// Privacy_04
Vault accounts
The AI Vault and the Workbench require a sign-in. Authentication is handled by Clerk, and vault content you create (saved prompts, saved briefings) is stored in our database, associated with your account, so it follows you across devices. We record basic usage events for vault features (which asset was copied, by which account, when) to maintain the service and understand what is useful. We do not record the content of anything you type into the Workbench tools.
The Workbench (Briefing, Clean Room, and Scan) runs in your browser, and text you paste into it is not transmitted to us. It can remember a firm dictionary, pinned prompts, and an attached briefing on your own device using browser storage, and the Workbench sidebar includes a control that clears them.
If any of this is unclear, that is a defect in the page and we will fix it.
// Privacy_05
Service providers
This site runs on a small set of infrastructure providers, each used for a specific job: Vercel (hosting), Cloudflare Turnstile (bot protection on forms), Resend (delivery of inquiry email), Supabase (database, hosted in the United States), Clerk (vault authentication), Plausible (cookieless page-view counts), Google Fonts (typefaces), and Calendly (scheduling, only if you choose to book). Each receives only what its role requires.
// Privacy_06
Questions
Ask us directly: support@claremontsecurity.com or (414) 301-1017. If any of this is unclear, that is a defect in the page and we will fix it.
