Clause · Security

Security and data

How Clause stores contract data, limits workspace access, and handles signing links and account security.

Last updated: September 7, 2026

Where data lives

Contract content, account details, and signing history are stored in a managed Postgres database. Uploaded business logos use managed file storage.

Who can access it

Your workspace requires your account and contract access is scoped to you. Anyone with a signing link can view the attached agreement, so share it only with the intended recipient.

Private signing links

Each signing request gets a unique, unlisted link. It stops accepting signatures after the deadline you set.

Encryption

Signing emails require an HTTPS app address, and Clause connects to its managed database over HTTPS. These transport protections are not end-to-end encryption.

Your control

Delete individual contracts in the app, or delete your account from Security settings. You can also contact support with a privacy request.

Account access

Clause uses account sessions and verified email addresses for workspace access. Security settings let you manage your password, email address, and signed-in devices.

Signing and document history

Recipients can review and sign the agreement attached to their link without creating an account. Contract owners can track delivery and signing activity and download signed documents and audit records.

A signing deadline prevents new signatures after expiry; it does not promise that the link can no longer display the agreement. Treat signing links as confidential.

Privacy questions

Read the Privacy Policy for information on service providers and retention, or contact support about your data.