Security & privacy

Client information is sensitive. It is treated that way.

Client intake carries some of the most personal information a client will ever share. IntakeLingo AI is built so that data stays inside the firm that collected it.

Firm isolation

Every intake, document, note and staff member belongs to exactly one firm. Access rules are enforced in the database, not only in the interface, so one firm cannot read another firm's clients even through a direct query.

Document storage

Uploads go to a private bucket that is not publicly readable. Staff view files through short-lived links generated only after their firm membership is verified on the server.

Authenticated staff access

The dashboard requires a verified account, and every server request re-checks the signed-in user's firm membership before returning data.

Client data minimization

Clients are asked only what a firm needs to open a matter. The public intake page never exposes other clients, and confirmation screens reveal nothing beyond the client's own submission.

AI handling

Intake answers are sent to the summarization model solely to produce the firm's English summary. Summaries are administrative, never advisory, and the client's original answers remain the record of truth.

No legal advice

IntakeLingo AI is not a law firm and does not provide legal advice, evaluate eligibility, or predict outcomes. Legal questions are recorded verbatim and flagged for attorney review.