Privacy Policy
What we collect
When you sign in, Supabase Auth handles authentication and provides your account identifier and email to this application. At account creation you accept our Terms of Use; we store the acceptance timestamp and terms version on your account. When you upload a deposition PDF, we process the file to generate a cited summary and related audit artifacts.
How we use uploads
Uploaded transcripts are used solely to run the Summit6 pipeline. In-flight processing uses a short-lived scratch workspace (typically up to two hours). Completed summaries and related artifacts are stored under your matter and job record for the retention period in your subscription plan. Your account agreement covers authorization for all uploads you make through the service.
AI processing
Summaries are generated using large language models with automated citation and audit checks. Output may contain errors. You are responsible for reviewing citations and the audit appendix before relying on any summary in legal work.
Website analytics
Public marketing pages (home, acta-ipsa landing, request access, security, privacy, terms, sign-up, and sign-in) may use cookieless page-view analytics to understand how visitors find Summit6. These metrics do not include deposition content, account credentials, or authenticated product usage.
Third parties
We engage third-party providers for infrastructure, authentication, payments, AI inference, notifications, and website analytics. A current list of subprocessors is available under NDA or as part of our Data Processing Addendum. We do not use uploads to train models.
Security
For access control, retention, subprocessors, and SOC 2 / HIPAA alignment, see Security & Data Handling.
Contact
Questions about this policy should be directed to the operator listed in your engagement letter.