NextFluent

Security and data

Your file stays on your login. Your client gets the page.

A response file is the most sensitive thing an agency holds. This page says, plainly, where it goes, who can see it, and what leaves your browser. The legal wording is on the trust note and the data processing agreement.

Where things live.

The sample and your browser

The Harborline sample and the “try it on your own file” desk on the homepage run in your browser tab. Your file is read there and counted there. Nothing is uploaded. Close the tab and it is gone.

The desk

A study you add on the desk goes over HTTPS to the EU. The database, sign-in and file storage are on Supabase in Frankfurt. The application is hosted on Vercel, with its server code in Vercel’s Frankfurt region. Each organisation’s rows are isolated from every other’s.

The client page

Your client’s page carries figures, wording, bases and receipts, and the questions they type. It never carries the response file or the codebook, and the file is not in the link.

No language model on the number path.

Every figure Fieldlock shows is arithmetic on the rows of your file. Binding your English question to a field is done by scoring against the question wording, the answer labels and the notes the desk took when the study was added. No language model is asked for a number, a field or a sentence.

Each receipt records this as model=none. Nothing you upload is sent to ChatGPT or to any other language model provider, and none is listed as a subprocessor. The companies that process your study data are Supabase and Vercel. We will tell you in writing before adding one.

In transit
TLS on every connection, from your browser to the desk and from the desk to the database.
At rest
Encrypted at rest with the host, in Frankfurt.
Sign-in
Invite only. There is no public registration. You write to us, we open a login, you upload in the desk. Never by email.
Isolation
Row-level isolation per organisation in the database. A study on one login is not visible on another.

Who sees what.

You, on the desk Your client, on their page Anyone with a receipt
The response file Yes Never Never
The codebook Yes Never A fingerprint only
Figures, wording and bases Yes The cards you sent, and answers to questions on studies you opened What is in the receipt
Questions your client types Every one, listed on the client page desk Their own No
Receipts Every one On every card Can re-hash it at /verify without a login

How long we keep it, and how it ends.

While the desk is paid for

Study data is kept for the paid year of the desk: the fields, pairs, pins, waves, receipts and the response files behind them. Ask us to remove a study and we remove it.

When the desk ends

We keep study data until you ask us to delete it, and then we delete it within 30 days, except records the law requires us to keep. Ask for a copy first and we return it before deleting. Write to trust@nextfluent.com.

Where the company stands.

Security questions and reports: trust@nextfluent.com.

Bring the question, not the file.

Write to us from your work email and we open a login. You upload in the desk, on a call with us, in an afternoon. Do not attach a file to the email.