One private link per request
Each customer gets an unguessable link to their own request. There is no shared inbox, no customer account to break into, and the link stops working when the request is deleted.
Encrypted in transit and at rest
Pages and uploads use HTTPS. Files are stored on Cloudflare's infrastructure, encrypted at rest, and only reachable through your signed-in account or the customer's own link.
Deleted when you're done
Files are deleted 24 hours after you complete a request, or when its retention period ends (7 days on Free, 60 days on Pro). You can delete immediately, and each deletion is recorded with a certificate.
AI only where you allow it
Switch AI checks off for a whole checklist or for single items like ID documents. Those files are never sent to the AI provider. Full ID, account and card numbers are never kept in summaries.
Emails customers can trust
Requests come from your business name via Tangentflow, with your logo, a note explaining why they got it, and a reminder that we never ask for passwords, PINs, card details or payment.
Only the right customer
Email replies are accepted only from the customer's address on file, through a private reply address for that request. Anything else is rejected.
No permanent repository
Tangentflow is not where documents live forever. Download the package or deliver it to your Google Drive or webhook, then let the copy disappear.
Built-in limits
File types and sizes are checked on upload, files are served with strict security headers, and suspended accounts' links stop working immediately.
Questions about your data?
Email hello@tangentflow.com and a person will answer. See also our privacy policy for exactly what we process and for how long.