Privacy Policy

Last updated: May 2026

What we store

When you create a proposal, we store your account details (email, company name, contact info), the proposal content you entered, and the AI-generated proposal text. This includes client names, addresses, job descriptions, and pricing. This data is stored in a secure database (Supabase, hosted on AWS) and is accessible only to your account.

Who can see your proposals

Only you. We enforce row-level security at the database level — every query is restricted to your user ID. No other ProposalPro user can access your proposals, even in the event of an application bug. We (as developers) have database-level access via administrative credentials, which we use only for maintenance and support.

AI generation and Anthropic

When you generate a proposal, your job details — including client name, job description, and pricing — are sent to Anthropic's Claude API to produce the proposal text. Anthropic does not use API data to train its models. Anthropic retains API request logs for a limited period for safety and operational monitoring. You can review Anthropic's data handling policy at anthropic.com/legal/privacy.

Encryption

All data in transit between your browser, our servers (Vercel), and our database (Supabase) is encrypted using TLS 1.3. Data at rest is encrypted using AES-256, managed by Supabase on AWS infrastructure. Supabase is SOC 2 Type II certified. You can review Supabase's security posture at supabase.com/security.

Deleting your data

You can delete any individual proposal at any time from the proposal preview page. Deletion is immediate and permanent — client names, job descriptions, pricing, and all generated content are removed from our servers. To delete your entire account and all associated data, contact us at privacy@proposalpro.com.

What we do not do

  • We do not sell your data to third parties
  • We do not share client information with any other ProposalPro user
  • We do not use your proposals to train any AI model
  • We do not send marketing emails without your explicit consent

Payments

Payment processing is handled by Stripe. We never see or store your card details. Stripe is PCI DSS Level 1 certified. You can review Stripe's privacy policy at stripe.com/privacy.

Contact

For privacy questions, data requests, or account deletion: privacy@proposalpro.com