Security at a glance
How firms' client data is protected. EstateDraftFL is software infrastructure — not a law firm — and your attorneys control all legal work and approvals.
How your clients' data is protected
- Tenant isolation. Every firm's data is separated at the database level by Row-Level Security — one firm can never see another's matters. Enforced in the database, not just the app, and covered by an automated test suite.
- Encryption. Data is encrypted in transit (HTTPS/TLS) and at rest.
- Document security. Trusts, death certificates, and financial documents live in private storage with signed, matter-scoped access — never public URLs, never emailed as attachments.
- Access control. Magic-link sign-in (no passwords to steal), least-privilege keys, per-firm staff roles, and separated, logged platform administration.
- Audit trail. An append-only audit log records who accessed or changed what, and when.
- AI handling. AI organizes documents and answers general questions; it never gives legal advice, and our AI vendor terms prohibit training on your client data. Every client-facing output waits for your firm's approval before release.
- Backups & recovery. Automated provider backups with a documented restore-testing runbook and evidence log.
- Incident response. A documented runbook with defined severities, containment steps, and notification.
Compliance posture
- Independent audits: none has been performed, and no SOC 2 or ISO 27001 report exists — none is claimed. What we do run, and when it last ran, is on the evidence page.
- Data Processing Addendum: available — EstateDraftFL (LegalDraft Technologies LLC) acts as your data processor; your firm remains the controller.
- UPL / Fla. Bar Op. 24-1: built around attorney-controlled outputs; the AI discloses it is not a lawyer and never delivers a final legal document without your attorney's approval.
Backups and recovery
Our hosting provider backs up the database every day, and a restore drill rebuilds a copy in an isolated project and checks it. Point-in-time recovery is not enabled, stored files are not yet copied to an independent backup, and a full recovery of production has not been performed — we say so here rather than imply otherwise.
Subprocessors
Supabase (database/auth/storage), Vercel (hosting), Anthropic (AI, in law-firm workspaces), Square (payments), Resend (transactional email), and ImprovMX (inbound mail forwarding) — each under its data-protection terms.
Questions?
For a security questionnaire or our DPA, contact security@estatedraftfl.com.
Security researchers: our RFC 9116 disclosure file is at /.well-known/security.txt.