Privacy Policy

Last updated: April 2026

We built Ovrsight because we believe every business owner deserves honest financial clarity — not because we wanted access to your financial data. This page explains exactly what we do with your information, in plain English.

What we collect

When you use Ovrsight without an account, you upload one or two PDF documents — typically a Profit & Loss statement and optionally a Balance Sheet. We store these files temporarily so our analysis engine can read them.

If you create an account, we also collect:

  • Account details — your email address and name
  • Business profile — business name, ABN, industry, location, and other details you provide during onboarding
  • Payment method — collected by Stripe when you subscribe. Ovrsight never sees your card number — it is handled entirely by Stripe's secure payment infrastructure
  • Financial documents — PDFs you upload for analysis, stored securely in Supabase

You control what you share. The free tool works without an account — no name, no ABN, nothing beyond the document you upload.

How we use it

Your documents are used for one purpose only: to run the Ovrsight analysis and return results to you. We pass the contents of your PDFs to Claude (Anthropic's AI) to extract financial figures and generate your report.

We do not use your financial data to train AI models. We do not analyse it for any purpose beyond your own report. We do not sell it, share it, or use it to profile you.

To improve the quality of our financial benchmarks, we may use anonymised, aggregated data derived from financial documents you upload. No individual business data is ever visible or attributable — this is fully automated pattern analysis across many businesses, not a review of your numbers.

If you provide your email, we use it to send you the report you asked for and service-related communications (billing, product updates). We won't send you marketing unless you explicitly ask us to, and you can opt out any time by emailing us.

Where it's stored

Your documents and analysis results are stored in Supabase, using their Sydney (ap-southeast-2) region. This means your data stays in Australia. Supabase uses AES-256 encryption at rest and TLS in transit.

All communication between your browser and Ovrsight is encrypted via HTTPS.

How long we keep it

We automatically delete your uploaded documents and analysis results after 30 days. This happens without you needing to do anything. After 30 days, your financial data is gone from our systems entirely.

If you want your data deleted sooner, email [email protected] and we'll do it manually within 24 hours.

Who we share it with

Nobody. We do not sell your data. We do not share it with advertisers, data brokers, or third parties for their own use.

The only external service that processes your financial data is Anthropic (the company behind Claude), which handles the AI analysis. Anthropic does not use API inputs to train their models. You can read their data handling policy at anthropic.com/privacy.

Your rights

You have the right to request access to your data, ask us to correct it, or ask us to delete it at any time. You don't need to give us a reason. Just email us.

If you're in Australia, you're also protected by the Privacy Act 1988 and the Australian Privacy Principles. We take those obligations seriously.

Cookies and tracking

Ovrsight does not use advertising trackers or third-party analytics. We don't drop third-party cookies. We may use basic session storage in your browser to keep your analysis available while you're on the page — this disappears when you close the tab.

Questions

If you have any questions about how we handle your data, or if you'd like us to delete anything, please get in touch. We're a small team and we read everything.

This policy may be updated from time to time. If we make meaningful changes, we'll update the date at the top of this page.