arrow_back Back to Contract Review

Data Security Overview

How contract data is handled — three options to match your security and control needs.

How Data Flows

dns Self-Hosted

We build the tool and hand it to your IT team. You run it on your own servers with full control. Best for companies with dedicated IT staff.

1
Your Browser Open the app and upload a contract
2
Your Server Your IT team hosts and manages the app
3
Anthropic or Your AWS You choose where the AI runs
4
Back to You You control the entire process

public SaaS — Standard

We host and manage everything. You just open a link and use it — nothing to install, nothing to maintain.

1
Your Browser Open the app and upload a contract
2
Toolbelt Digital Server We host, maintain, and update the app
3
AI Service (Anthropic) AI analyzes your contract securely
4
Back to You Review, accept/reject, export redline

Where Does Your Contract Go?

Each option handles your contract data differently. The color coding below shows who touches your data at each step.

Your Environment
Toolbelt Digital
Outside AI Provider

dns Self-Hosted

You run the app — choose where the AI runs

person You
dns Your Server
smart_toy Anthropic or Your AWS
person Results to You

We build the tool and deliver it to your team. Your IT staff installs it on your own server. The app runs on your equipment, but the AI still needs to run somewhere — you choose: either Anthropic's service (same as Standard) or your own private AWS account (same as Private Cloud). The difference from the other options is that Toolbelt Digital is not involved — your team controls the app, the connection to the AI, and all the data.

check_circle You control the app — no dependency on Toolbelt Digital
check_circle Choose Anthropic or your own AWS for the AI
check_circle If you choose AWS, your contract stays in your environment end-to-end
info If you choose Anthropic, the contract is sent to their servers for processing
check_circle Best for companies with strict security policies or dedicated IT staff
info Your team manages the app, the server, and updates

public SaaS — Standard

Your contract is sent out for analysis and comes back to you

person You
dns Our Server
smart_toy Anthropic
person Results to You

You open a link in your browser and upload a contract. Our server sends it to Anthropic (the company behind the AI) for analysis. The AI reads the contract, identifies risks, and sends the results back to you. Anthropic does not use your contract to train their AI — it's processed, then deleted after 30 days. All data is encrypted during transfer, meaning no one can intercept it along the way.

check_circle Nothing to install — open a link and start using it
check_circle Your contracts are never used to train the AI
check_circle All data is encrypted during transfer
info Anthropic processes the contract on their servers
check_circle We handle all updates and maintenance for you
info Data is kept for 30 days for safety monitoring, then deleted

cloud SaaS — Private Cloud RECOMMENDED

The AI comes to your environment — your contract never leaves

person You
dns Our Server
smart_toy AI in Your Environment
person Results to You

You use the tool the same way as Standard — open a link, upload a contract. The difference is where the AI runs. Instead of sending your contract to Anthropic, we route it to your own private environment on AWS (Amazon's cloud platform). The same AI model analyzes it, but it runs inside your own account that only you have access to. Anthropic never sees your data. Amazon cannot read your contracts — they provide the computing power, but your data is encrypted and inaccessible to them. Nothing is stored after processing. We set everything up and manage it — you just use the tool.

check_circle Same AI quality — just runs in your private environment
check_circle Anthropic never sees or touches your contracts
check_circle Amazon provides the computing power but cannot read your data
check_circle Nothing is stored — data is gone after processing
check_circle Full activity log — you can see exactly what happened and when
check_circle We set it up and manage everything — nothing for you to do

Feature Comparison

Feature Self-Hosted SaaS Standard SaaS Private Cloud
AI model Claude Sonnet 4 Claude Sonnet 4 Claude Sonnet 4
Contracts used for AI training? Never Never Never
Data retention None 30 days, then deleted None
Data leaves your control? You decide Processed by AI provider Stays in your environment
Who runs the app? You Toolbelt Digital Toolbelt Digital
Where does the AI run? Your choice Anthropic Your private cloud (AWS)
Activity log Full control Limited Full log (AWS CloudTrail)
Contract analysis Automated Automated Automated
Redline export Automated Automated Automated
Cost per contract Varies by contract length Varies by contract length Varies by contract length
Work on your end You manage server + updates None — we handle it None — we handle it
Setup effort We build it, you host it None We set up your AWS account

How Private Cloud Keeps Data Separate

With the Private Cloud option, each customer gets their own completely separate environment. We manage the platform and keep everything running, but your data is walled off — your contracts never touch another company's environment.

Toolbelt Digital Manages the platform — infrastructure, security, updates
EHMS-Hayward Your private environment — only you have access
Customer B Their private environment — separate from yours
Customer C Their private environment — separate from yours