Privacy Policy
Effective June 29, 2026 · Last updated June 29, 2026
Applies to the LawCommand Suite: the LawCommand and LawNote web and iOS apps.
LawCommand and LawNote are private, login-required tools used by the staff of a subscribing law office. They are business-to-business software, not consumer apps. We collect only what the apps need to function, we never sell or share your data for advertising, and we do not track you across other companies' apps or websites. This policy explains what we collect, why, how we protect it, and the choices you have.
1. Who we are
The LawCommand Suite is operated by Valley Edge Digital ("we," "us," "our"). For a subscribing law office, the firm is the controller of the personal data in its workspace and we act as its processor. Questions and data-rights requests: support@lawcommand.io.
2. Information we collect
| Category | Examples | Why |
|---|---|---|
| Account & identity | Work email address, display name, your role in the office, your user ID | To sign you in, identify you to your colleagues, and enforce role-based access |
| Your firm's work product (User Content) | Court-settings calendar, case-review notes, ticklers/deadlines, call & walk-in logs, team chat messages, matter associations | This is the service — the shared workspace your office uses |
| LawNote audio & handwriting | Voice-dictation recordings you create, their transcripts (review drafts), Apple Pencil/handwriting ink | To capture, store, and play back the notes you record or write |
| Technical/operational | Authentication tokens/session, basic request data needed to operate the service securely over HTTPS | Security and reliable operation |
| Newsletter / marketing email | If you sign up for updates on our website (lawcommand.io), the email address you submit | To send the updates you opted into; you can unsubscribe anytime; never sold and not used for tracking |
We do not collect location, financial, health, browsing-history, contacts, or photo-library data, and we do not use a device advertising identifier.
Newsletter / marketing email — If you sign up for updates on our website (lawcommand.io), we collect the email address you submit to send you those updates. You can unsubscribe anytime. We never sell these addresses.
3. How we use information
- To provide and operate the apps for your firm (sign-in, the shared office workspace, recordings/notes).
- To secure the service — tenant isolation, access control, and abuse/fraud prevention.
- To provide support and maintain the service (debugging, backups, service continuity).
We do not use your data for advertising, and we do not build cross-app or cross-site advertising profiles. We do not sell your personal information.
4. Transcription & AI
In LawNote, AI features (such as transcription) are off by default and fail closed. Transcripts are review drafts, never an automatic final record. Privileged audio is not sent to a third-party provider without an explicit opt-in. If a firm enables third-party transcription, that sub-processor and the purpose will be reflected here before any such processing occurs.
5. How information is shared (sub-processors)
We share data only with the infrastructure providers needed to run the service, under their terms and security commitments. We do not sell or rent personal data to anyone.
| Provider | Purpose |
|---|---|
| Supabase | Application database, authentication, and file storage (Postgres + Auth + Storage) |
| Vercel | Web application and site hosting |
| Cloudflare | DNS and network/edge security |
We may also disclose information if required by law or to protect the rights, safety, and security of users and the service.
6. How we protect your data
- Tenant isolation: database-enforced Row-Level Security scopes every record to its office.
- Encryption: TLS/HTTPS in transit; encryption at rest for the database and file storage.
- Access control: role-based permissions, enforced in the database, not just the interface.
- File access: private storage with short-lived signed URLs, re-issued on each read.
- Device security: optional Face ID unlock on iPhone/iPad is handled by Apple on your device; we never receive your biometric data.
- No secrets in the app: the shipped apps contain no server or service credentials.
7. Data retention & deletion
We retain your firm's data for as long as the office's account is active and as needed to provide the service. When an office closes its account, or on a verified deletion request, the associated data is deleted from our live systems; routine encrypted backups age out on their normal cycle. Your firm's administrator can also manage and remove content within the apps.
8. Your rights (GDPR & CCPA/CPRA)
Depending on where you live, you may have the right to access, correct, export, or delete your personal data, and to object to or restrict certain processing. Because your firm controls its workspace, please direct requests to your firm's administrator or to us at support@lawcommand.io; we support firms in fulfilling these requests and will respond within the timeframes required by applicable law (e.g. 30 days under GDPR). We will verify your identity before acting on a request.
"Do Not Sell or Share" (CCPA/CPRA): we do not sell or share your personal information, and we do not use it for cross-context behavioral advertising. There is nothing to opt out of, but you may still contact us with any privacy request.
9. Children
The apps are workplace tools for law-office staff and are not directed to children under 13, who should not use the service.
10. International users
Our infrastructure providers operate facilities in the United States and other regions. By using the apps, you understand your firm's data may be processed in those locations under appropriate safeguards.
11. Changes to this policy
We may update this policy as the service evolves. Material changes will be reflected here with a new "Last updated" date.
12. Contact
Valley Edge Digital — support@lawcommand.io
Support: lawcommand.io/support