Legal
Privacy Policy
Last updated
This policy explains what OurPortal ("we", "us") collects when you use the service, why, and who else sees it. It covers both business owners who buy a portal and the clients they invite into it.
OurPortal is operated by [Company Legal Name], [Company Address]. This is a general template describing the product as it actually works; it is not a substitute for advice from a lawyer about your own obligations.
What we collect
- Account information: your name, email address and business name when you buy a portal or sign in.
- Client contact data: the name, email and any other detail you (the business owner) enter for a client you invite into your portal.
- Files: whatever you or a client upload to a documents or resources page — contracts, deliverables, reference material, up to 10 MB per file.
- Messages: the content of any conversation sent through a portal’s messages page.
- Payment data: when a client pays an invoice, or when you pay the $199 platform fee, payment card details are handled entirely by Stripe — we never see or store a full card number.
- Cookies and session data: Clerk sets the cookies that keep you signed in between visits. We do not run advertising or cross-site tracking cookies.
Why we collect it
- To run the service: create your portal, show a client the pages assigned to them, deliver invoices and messages, and keep you signed in.
- To process payments: connect to Stripe, raise checkout sessions, and record whether an invoice was paid.
- To keep the service working: diagnose errors, prevent abuse, and maintain the systems above.
- We do not sell personal data, and we do not use client contact data or message content to advertise to anyone.
Who we share it with
- OurPortal runs on a small number of infrastructure providers, each of whom processes some of the data above as part of delivering the service. We do not sell or rent this data to anyone else.
- Vercel — hosts the application and serves every page and request.
- Neon — hosts the Postgres database — accounts, client records, messages and invoice records.
- Clerk — handles sign-in and authentication, and sets the session cookies that keep you signed in.
- Stripe — processes every card payment — the one-time platform fee and client invoice payments.
- Vercel Blob — stores uploaded files (documents and resources added to a portal).
Data retention
- Account, client and payment data is kept for as long as the related account is active, so the portal keeps working. If you close a business’s portal, its data is retained for a limited period afterwards in case of billing or legal questions, then deleted.
- Files and messages are deleted when the client relationship or the portal itself is deleted, except where a copy is retained in a backup for a limited period.
Your rights
- Depending on where you live, you may have the right to access, correct, export or delete your personal data, and to object to or restrict certain processing. To exercise any of these, contact us using the details below and we will respond in a reasonable time.
- A client’s data inside a portal is entered and controlled by the business owner who invited them; a client who wants their data corrected or removed should start with that business, and can also contact us directly.
Cookies
- The only cookies set are the ones Clerk uses to keep you signed in. There is no advertising cookie, and no cross-site tracking pixel, anywhere in the product.
Children
- OurPortal is a business tool and is not directed at children. We do not knowingly collect personal data from anyone under 16.
International transfers
- Our infrastructure providers may process and store data in countries other than your own. Where that happens, it is covered by those providers’ own data-protection commitments.
Changes to this policy
- We may update this policy as the product changes. Meaningful changes will be reflected in the "last updated" date above; continuing to use the service after a change means you accept the updated policy.
Governing law
- This policy is governed by the laws of [Governing Law / Jurisdiction].
Contact
- Questions about this policy can be sent to us at hello@ourportal.space.