Staff Signature

Security and data

We never touch your email. Here is everything we do keep.

A short, plain answer for whoever signs off on new tools at your organization.

No access to your email

We never connect to your mail server, never route your mail, and never read a message. Signatures are installed in each mail app, or set through Google's signature setting if you turn on auto-install.

Only what a signature needs

Name, title, phone, email, website, logo and photo, plus the install log your admins see. No passwords. Card numbers go to Stripe and never reach us.

Hosted in the United States

Database and files on Supabase (AWS us-east-1). Website on Vercel. Payments on Stripe. Email delivery on Resend.

Encrypted

HTTPS everywhere. Our providers encrypt stored data at rest.

Locked-down database

Row-level security on every table. The website talks to the database only with a server-side secret that never reaches the browser.

Delete anytime

Staff can delete their own signature from their edit link. Admins can ask us to remove the whole organization. We answer within 30 days, usually the same day.

Questions IT usually asks

Who can see our staff list?

Only the people holding your organization's private console link: the owner and any admins the owner adds. Each admin gets their own link, which the owner can remove at any time. The owner can replace the console link if it was shared too widely.

What does click tracking record?

Which signature, which link, the time and the browser type. Not the IP address of the person who clicked, and nothing that identifies them. You can turn tracking off for your whole organization in the console.

What does Google auto-install access?

Two Google scopes: reading your directory (names, titles, phones, emails) and setting each user's Gmail signature. Nothing else. No email content. You can revoke it any time in your Google Admin console.

What will the Microsoft 365 add-in access?

It runs inside Outlook when someone starts an email, looks up that person's signature from us, and adds it. It does not read or send your mail. Your IT admin installs it and can remove it at any time.

Do you use our data for AI or advertising?

No advertising, no selling, no sharing beyond the services that run the product. The optional "match my current signature" import sends the screenshot you upload to Anthropic to read the layout; it is not used to train models.

Are you SOC 2 certified?

No. We are a small company and we will not claim a certification we do not hold. If your review needs a questionnaire filled out, email us and we will answer it plainly.

What happens if something goes wrong?

If we learn of a breach affecting your data, we will tell you promptly and explain what happened and what we did about it.

The full details are in our Privacy Policy. Security questions: hello@staffsignature.com.