Privacy Policy
Last updated 2026-08-24
FirmCert is operated by Juke Brands LLC (Dallas, Texas), which runs one processing platform across its translation brands. This policy covers the FirmCert workspace; where your firm has executed a data-processing agreement, the DPA controls for client documents.
What we process
- Member accounts — name, title, work email (encrypted at rest), password hashes held by our authentication provider, and optional signature images.
- Client documents — the files your firm uploads for translation, encrypted at rest, malware-scanned, processed by our translation pipeline. Our language-processing providers operate under API terms that do not permit training on submitted content; the subprocessor list is published at /subprocessors.
- Usage and audit records — who uploaded, which document, pages, who signed, when; billing metadata via Stripe (we never see full card numbers).
What we don't do
- We do not sell personal information or share it with advertisers.
- We do not train AI models on your documents — ours or our providers'.
- We do not contact your firm's clients; your firm delivers its own work product.
Retention and deletion
Document deletion requests from firm admins are honored on demand. Billing and audit records are retained as required for accounting and fraud prevention (typically up to 7 years for financial records), in minimal or de-identified form where possible. Member identities attached to signed certifications persist as part of the certification record.
Security and contact
Encryption in transit and at rest, access controls, logging, monitoring; incidents affecting your data are notified within legally required timeframes. Privacy questions and security disclosures: [email protected]. See also the Terms of Service.
