Private Beta · Validating models with 20 finance teams.
GDPR Readiness

Building privacy safeguards before production launch.

ScribeArc is currently validating finance workflow problems. We are designing our data practices around GDPR principles before accepting production customer data.

Current Status: Pre-Launch Validation

ScribeArc is currently in pre-launch validation. We are not yet accepting production financial data from EU customers without appropriate agreements and safeguards in place.

✦ Current Phase

During Validation

Sample Documents

We prefer redacted or sample documents. Please do not upload sensitive production financial documents unless explicitly requested.

Internal Use Only

Any research materials shared by users are used strictly to understand workflows and test functionality internally.

Right to Deletion

Users can request the manual deletion of any shared research materials or feedback at any time by emailing our support team.

✦ Foundation

Principles We Are Designing Around

Data Minimization

We aim to process only the data necessary to validate our document processing services. We discourage collecting extraneous personal data.

Purpose Limitation

Any research materials shared by users are used strictly to understand workflows and improve our initial product design.

Security by Design

We are designing our infrastructure with security top of mind, incorporating encryption in transit and at rest from day one.

User Control

Even during validation, you remain in control. You can request the manual deletion or export of any shared materials by contacting us.

Transparent Processing

We are committed to transparency. Before production launch, we will clearly document how data is handled and publish a list of sub-processors.

Accountable Operations

As we move toward production, we will formalize privacy ownership, establish DPAs, and review obligations with legal counsel.

Before We Process Production EU Data

We plan to support Data Processing Agreements before onboarding EU customers or processing production EU personal data. Here is our compliance roadmap:

Publish sub-processor list

Finalize DPA process

Define data retention policy

Document data deletion/export workflow

Review GDPR obligations with legal counsel

Add production privacy controls before onboarding EU customers

Privacy Questions

For privacy questions during validation, contact us at hello@scribearc.com. As we move toward production, we will formalize privacy ownership, data processing agreements, and customer data request workflows.