Security
This page summarizes how security is approached across the current public SmartPromptsAI website, checkout, intake, request, and delivery workflows.
Current workflow overview
- Paid SmartPromptsAI packages are purchased through secure checkout where checkout is active.
- Checkout is handled through Stripe rather than by storing payment card data directly on SmartPromptsAI systems.
- Intake and request details are submitted through the current public SmartPromptsAI forms.
- Some workflows are paid package flows, while others are manual request or add-on review flows.
- Clarification, delivery, review, and revision follow-up are handled asynchronously by email.
Access control
- Access to operational systems is limited to the operator account(s) required to handle checkout, intake, review, delivery, and support.
- Access is kept to the minimum needed for request review, clarification, delivery, and follow-up.
- Client materials are handled only in the context of the requested SmartPromptsAI work.
- Full admin access to client tools is not required by default unless a specific approved delivery workflow needs it.
Data in transit
- Web traffic uses HTTPS where supported by the active platform providers in the current public flow.
- Payment data is processed through Stripe’s checkout environment rather than stored directly by SmartPromptsAI.
- Form submissions, request details, and delivery communication depend on the security controls of the active form, hosting, and email providers used in the workflow.
- Email delivery depends on the transport security capabilities of the active email providers used in the flow.
Data minimization
- Only information needed to evaluate fit, process checkout where applicable, complete intake, deliver the requested work, and handle follow-up is requested.
- Unnecessary access, irrelevant materials, and unrelated account permissions are not required by default.
- SmartPromptsAI workflows are designed around using the materials needed for the requested output, not broad access to unrelated client systems.
- Human review add-ons request only the context needed to review tone, clarity, trust, claims risk, and delivery quality.
AI use and human review
- AI may be used to help structure, draft, transform, organize, or review submitted materials depending on the requested product or workflow.
- AI use does not mean every output is automatically published, approved, or delivered without review.
- Human QA Premium, where requested and accepted, is a manual review layer for tone, clarity, trust risk, risky claims, and final delivery quality.
- More detail about AI handling is available on the AI Use page.
Retention and deletion
Client data is retained for up to 90 days after completion of the requested work for delivery follow-up, clarification, revision handling, and support related to the completed work. After that window, materials should no longer be kept in active working use unless a separate operational, legal, payment, fraud-prevention, or support reason applies.
Third-party providers
Providers used in the current public SmartPromptsAI flow are listed on the Subprocessors page. Privacy handling is described on the Privacy page.
Security contact
Security questions can be sent to admin@smartpromptsai.ai.