Skip to content
frontsheet

Trust and data

Your trusted information stays under your control.

This page explains, in plain language, what Frontsheet collects, who touches it, and what you can ask us to do with it. It doesn't replace our privacy policy or terms of service, which are the legal documents; this page is the plain-English version, kept specific and current.

What we collect

Frontsheet holds three kinds of information:

  • the website content you submit, and what we read from it: We read one page plus your core identity pages, not your whole website.
  • your account email, used to sign you in and reach you;
  • files you upload, such as a logo, and the business details and materials you create and confirm in your workspace.

How we use it

We use what you give us to:

  • read your source page and prepare your materials;
  • run your account and keep your workspace organized;
  • take payment and keep the records tax and accounting law requires;
  • keep Frontsheet secure and stop abuse; and
  • send you service messages, and marketing only if you've opted in.

Who touches your information

We use a small set of companies to run Frontsheet, and each one only does the job we hired it for:

  • Supabase: our database, authentication, and file storage;
  • Stripe: payment processing. Your card details never touch our servers;
  • Vercel: hosting for the website and the application;
  • Resend: delivering email, such as your magic link and your finished materials;
  • Google Analytics and the LinkedIn tag: understanding site usage and measuring our ads. Both stay off until you opt in through the cookie banner, and you can turn them off again at any time.

How Ai is involved

Frontsheet uses Ai providers, currently Anthropic and OpenAI, to read the content you submit and prepare drafts. That processing happens under contract, on our behalf. Your information is used to build your workspace; it is not used to train shared Ai models, ours or theirs. Everything Frontsheet drafts is a starting point for you to review before you rely on it, consistent with our privacy policy.

What becomes stored, and where

Your confirmed business details, any files you upload, and the materials we generate live in Supabase, our database and file storage provider. Every fact you confirm is saved with a version history you can look back on.

Who inside Frontsheet can see it

Access is limited to the people who need it to build and support the product, and only for that purpose. If you invite teammates into your workspace, they can see what you can see, based on the role you give them. We don't browse customer workspaces out of curiosity.

How we protect it

  • encryption in transit between your browser and our servers;
  • passwordless sign-in with a magic link sent to your email, so there's no password to steal;
  • finished materials are stored privately and served through short-lived signed links, not public URLs;
  • access controls that limit who and what can reach your data.

No method of storage or transmission is completely secure, so we can't promise absolute security. We work to protect your information and to respond quickly if something goes wrong.

How publishing and approval work

"Approval" covers two different things, and it's worth keeping them apart.

Inside your workspace, when a fact changes, the pieces it affects are marked Needs refresh. Someone on your team reviews and approves each one before it updates. You can also turn on an extra step: Require a review step before any piece exports. Turned on per workspace. Growth and above; toggled as an org setting.

Publishing a page to your own live website is a separate, admin-only action. Publish one approved page to your live website when you choose to. Opt-in. Off until you turn it on. We never publish anything without that action.

What Frontsheet can and cannot change automatically

Frontsheet can notice when your source website changes and flag the materials it affects. When your website changes, the materials it affects are marked Needs refresh.

Frontsheet cannot update an approved piece, or publish anything to your live website, without a person on your team reviewing it first. We catch changes on your website and prepare them for your review before anything updates.

Retention, deletion, and export

You can ask for a copy of your information or ask us to delete your workspace at any time. Email privacy@frontsheet.com and our team will handle the request directly; there is no self-serve export or delete button in the product yet. We keep your information for as long as your account is active, and order records for as long as tax and accounting law requires.

If you cancel, we don't delete anything automatically. Your workspace, your confirmed information, and your past materials all stay in place; you're moved off your paid plan, and can email privacy@frontsheet.com any time to ask us to delete your workspace instead.

Your private pages and search engines

Pages that require you to be signed in, such as your workspace, settings, and team pages, are excluded from search engines. They're marked so search engines don't index them, and our crawl policy blocks them outright.

If your materials include someone else's information

Only submit a website, file, or note that you own or have the right to share. If something you upload names another person, such as a reference or a teammate, that's on you to have their permission for. We process what you give us; we don't check whether you had the right to share it.

Current limitations

We'd rather tell you what's not built yet than let you find out the hard way:

  • there's no self-serve export or delete button; both go through privacy@frontsheet.com;
  • We export PDF only. There's no editable Word or PowerPoint file today.
  • We read one page plus your core identity pages, not your whole website.

Security contact

Found a security problem, or have a question about how we protect your data? Email support@frontsheet.com. We read every message.

More detail

For the full legal terms, see our privacy policy and terms of service. For how we build for people who use assistive technology, see our accessibility statement.