YOUR INFORMATION

Privacy

Last updated: September 22, 2026

Clawback helps commercial tenants screen common area maintenance (CAM) reconciliations. This notice describes the data the current app handles and where it goes.

Free estimate and browser storage

Your selected reconciliation CSV, TSV, or Excel workbook is read in your browser. The free estimate runs on your device; the source CSV or workbook is not uploaded by that workflow. If you continue to checkout, the flagged estimate rows, lease rules, and report details are saved in this browser tab's session storage so they can be restored when you return from checkout. This temporary draft clears when you remove the file or close the tab. The original file itself is never saved by Clawback.

Paid report generation

To generate a paid audit draft, the app sends the flagged line details, the estimator's check counts and notices, tenant and landlord names, property, reconciliation year, optional response date, and lease-reference fields you enter to a Clawback serverless function. It returns the report and letter and does not write those inputs to a Clawback application database. Do not include sensitive information you do not need in the fields. Lease documents are not uploaded or analyzed by the current app.

Payment and access cookie

Checkout is hosted by Stripe. Stripe processes payment details under its own privacy terms. Clawback receives the Checkout Session information needed to verify a purchase. After verification, Clawback sets a signed, HttpOnly browser cookie. A $299 single-audit purchase is valid for one year and is bound to the flagged row set in its first report. A $99/month portfolio subscription stays active only while Stripe reports the subscription as active; Clawback checks that status before each report. The cookie does not contain payment details.

Hosting and service providers

The portfolio register is optional and saved in your browser's local storage. It contains only the property name, reconciliation year, screening subtotal, finding count, response date, and status. It stays on this device, is not sent to Clawback, and can be exported as CSV. Optional portfolio lease rule profiles store only the name, gross-up threshold, tenant share, and excluded categories you enter. Profiles can be exported as JSON for your own backup. The stored profile itself is not sent to Clawback; when you apply its values and continue to checkout, the currently used lease rules are included in the temporary checkout draft described above. Clearing browser site data removes both the register and profiles. You can also download an optional calendar reminder containing the property name, response date, reconciliation year, and finding count; that file is saved only when you choose where to import it, and the calendar provider may process it under its own terms. Clawback cannot restore local data on another device. Cloudflare hosts the app and processes technical request data under its own terms and privacy notice. Stripe processes payment and subscription information under its own terms and privacy notice. Clawback does not provide a customer account or cloud file library. Stripe provides subscription management and cancellation through its customer portal.

Your choices

You can remove a selected file from the estimator or close the browser tab to clear the temporary checkout draft, and clear Clawback cookies in your browser settings. Clearing the paid-access cookie removes access from that browser; the current app does not offer account recovery.

Questions

Clawback is operated by Mase Labs, a sole proprietorship. For privacy requests, contact liumasn@gmail.com.