FileDeck Embed

Privacy Policy

In effect from 5 August 2026.

This policy explains what FileDeck does with personal data in FileDeck Embed, the hosted document library at filedeck.co. It is written to be read, not to be survived.

Two different roles

We handle two kinds of people’s data, and our responsibilities differ for each:

What we collect from account holders

Embedded libraries: what visitors are and are not tracked with

The embed is deliberately the quietest part of the product, because it runs on somebody else’s website and their visitors never chose us.

Why we are allowed to process it

Who else processes it

We keep this list short on purpose, and it is complete. We do not sell personal data, and we do not share it for anyone else’s advertising.

ProcessorWhat it doesWhere
RailwayApplication hosting — runs the FileDeck Embed service itself.European Union / United States
SupabaseAccount authentication and the platform database (library, document and event records).London, United Kingdom (eu-west-2)
CloudflareR2 object storage for uploaded files and generated thumbnails; DNS and domain registration.Global edge network
StripePayment processing and subscription billing. Card details are entered directly with Stripe and never reach FileDeck.European Union / United States
BrevoTransactional email (account, trial and notification messages) and, where an owner configures it, contact-list sync.European Union
Google Analytics 4Usage measurement on the FileDeck website and dashboard only. Deliberately not present on embedded libraries.European Union / United States
OpenAI / AnthropicAI features only, and only when the library owner supplies their own API key. Document text is sent to the provider that key belongs to.United States

AI features

AI features are off unless a library owner turns them on and supplies their own provider API key. When they do, document text is sent to that provider to build a search index and answer questions, under the provider’s terms and the owner’s account. If no key is configured, nothing is ever sent to an AI provider.

International transfers

Account records and library metadata are held in the United Kingdom. Some processors above operate in the United States or route traffic globally. Where data leaves the UK or EEA we rely on the safeguards those providers offer — adequacy decisions, or standard contractual clauses in their data processing terms.

How long we keep it

Your rights

You can access, correct, export, delete or restrict the processing of your personal data, and object to processing based on legitimate interests. Two of these are built into the product rather than being a request you have to make:

For anything else, contact us and we will respond within one month. If you are a library visitor rather than an account holder, the library’s owner is the right first contact — we will pass your request on to them if you reach us instead.

If you think we have handled your data badly, tell us first so we can fix it. You also have the right to complain to the UK Information Commissioner’s Office at ico.org.uk, or to your local supervisory authority.

Security

Traffic is encrypted in transit. Passwords are hashed, never stored in readable form. Files are served through short-lived signed links rather than public URLs, and every library’s data is isolated at the database level so one account cannot read another’s. No system is perfect; if a breach affects you we will tell you and the regulator within the timescales the law sets.

Children

FileDeck Embed is a business product and is not directed at children. We do not knowingly collect data from anyone under 18.

Changes

If we change this policy materially we will tell account holders by email or in the dashboard before it takes effect, and update the date at the top. The terms of service sit alongside this policy.

Contact

Privacy questions and data requests go through FileDeck support.