Security

Built for the profession that keeps secrets

A law firm’s system holds the most confidential material a business can hold. Here is exactly how SmartCase protects it — stated plainly, because vague reassurance is not how lawyers assess risk.

Encryption

Data is encrypted in transit [TLS 1.2+] and at rest [AES-256 — confirm].

Access Control

Role-based permissions: clerks, associates, partners and accounts each see only what their role requires. Matter-level restrictions available for sensitive files [confirm]. Every access and change is logged in an audit trail.

Backups and Continuity

[Daily] automated backups, retained [X days], restorable on request. [State RPO/RTO if you can.]

Data Location and Ownership

Your data is hosted [where — state country/provider]. It belongs to the firm, not to us: export it at any time in standard formats. [Confirm.]

Confidentiality by Contract

Our staff operate under confidentiality agreements; support access to firm data is [logged / permission-based — confirm and describe].

Compliance

[Uganda Data Protection and Privacy Act, 2019 registration status; Kenya DPA 2019; other countries as applicable — state accurately or omit.]

On-Premise Option

Firms with strict data-residency policies can run SmartCase on their own infrastructure on the Enterprise plan.

FAQ

Who can see our matters?

What happens if we leave?

Where is data stored?

Has SmartCase ever had a breach? [Answer all truthfully.]