S SiteSums
PrivacyTermsData processingCookiesSecurity

How your data is kept safe

You are putting your clients' details, your prices and your bank account into SiteSums. Here is what stands between that and anyone who shouldn't see it — in plain English, with nothing left out.

Last updated 16 September 2026 · SiteSums is operated by Nikita-Jade Hancock, 124 City Road, London EC1V 2NX. Questions: privacy@sitesums.co.uk

Where it lives

Your data is stored in a UK data centre (London), operated by Supabase on Amazon Web Services. It is encrypted on disk and encrypted in transit — the padlock in your browser is real. Backups are encrypted too.

Your account can only see your account

This is the one that matters most. Every table in the database carries rules — called row-level security — that the database itself enforces before returning a single row. Your account can read and change only rows marked as yours. This is not a check in our application code that a bug could skip; it is the database refusing. We test it by creating two accounts and confirming neither can reach the other's data through any route.

Sign-in without passwords

You sign in by clicking a link we email you. There is no SiteSums password to be guessed, reused or leaked. Your email account is your key, so protect it the way you would your bank login — with a strong password and two-factor authentication.

The links you send clients

A quote, portal or approval link contains a random token with 128 bits of entropy — around 340 billion billion billion billion possibilities. They cannot be guessed or enumerated. You can regenerate any of them at any time from the document, which instantly kills the old one. A deleted document's link stops working.

Money

Card payments are handled entirely by Stripe: card numbers never reach SiteSums. When you take a card payment from a client, they type their details into Stripe's page, not ours. Your own bank details — which you enter so clients can pay you by transfer — are stored encrypted at rest and appear only on the documents you produce.

Files

Receipts and template masters are in private storage, readable only by the account that owns them. Two things are deliberately public: your logo and your project cover images, because they appear on the pages your clients open. Treat a cover image the way you'd treat a photo on your website — a house exterior is fine; a floor plan with an alarm code on it isn't.

What we can see

Administrative access to the live database is limited to named individuals at Nikita-Jade Hancock and used only to keep the service running or to help you when you ask. We do not read your documents for any other reason, and we never sell or share your data.

When something goes wrong

Errors are logged with the account they affected and reviewed. If we ever discover a breach affecting your data we will tell you within 48 hours with everything we know, so you can meet your own duties. Details are in the data processing terms.

Your controls

  • Export everything, any time — Settings → Export.
  • Delete your account and everything in it yourself — Settings → Delete account. Immediate, irreversible, and backups age out within 30 days.
  • Regenerate any share or portal link from the document it belongs to.

What we'd ask of you

  • Secure your email account — it is your SiteSums key.
  • Don't forward a client's document link to anyone other than that client.
  • Tell us straight away if you think your account has been accessed: privacy@sitesums.co.uk.

Found something?

If you believe you've found a security weakness in SiteSums, please email privacy@sitesums.co.uk before telling anyone else. We will respond within two working days, fix it as a priority, and credit you if you'd like.

© 2026 SiteSumsPrivacy · Terms · Data processing · Cookies · Security · Contact