Effective July 2026. Questions or requests: andre@portmem.com.
The marketing site (portmem.com) collects only what you submit through the access-request form: name, work email, firm, and anything you write in the message field. We use it to respond to your request. No advertising trackers.
The PortMem console and API (app.portmem.com) process the documents and reports you upload in order to run retrieval and verification. In the hosted tier, document text is sent to our subprocessors — Anthropic (verification judge) and NVIDIA (embeddings) — under their API data-protection terms, and stored in Google Cloud. Tenant data is isolated with database-enforced row-level security. The air-gap deployment tier keeps all content inside the customer boundary. See Trust & Security for the full data-flow description.
Signed evidence packets are buffered briefly for handoff and are then the customer's to archive; PortMem is not a long-term archive of your records. Evidence anchoring sends only cryptographic hashes, never content, to the OpenTimestamps network.
Account and workspace data persist while your account is active. On request we delete a workspace's ingested documents, reviews, and account data, subject to any legal obligations. Write to the address above.
You can request access to, correction of, or deletion of your personal information at any time by emailing us. We respond to all requests, including those under GDPR, CCPA, and LGPD where applicable.
If this policy changes, the effective date above changes with it. Material changes affecting product data handling are communicated to account holders directly.