Privacy
HoldBack stores what you give it: your email, your grants and their vesting schedules, prices for the tickers you track, and the tax profile numbers you enter. That's the product. We don't buy data about you, we don't sell data about you, and we don't run third-party advertising or analytics trackers.
Documents you upload
A grant document you upload is stored only while you review the import. When you confirm, the file is deleted unless you explicitly chose to keep it; the page images rendered for review are always deleted. Abandoned drafts are purged on a schedule. Documents are never written to application logs.
AI processing
To read a grant document or map an unfamiliar CSV, HoldBack sends the document images — or, for CSVs, only the column headers and a few sample rows — to Anthropic's Claude API. This runs under commercial data-processing terms, not a consumer AI product's terms: API inputs and outputs are not used to train models. Models read documents; every tax figure is computed by our own code from published tax tables.
Credentials
We never ask for, store, or connect with your brokerage credentials. There is no account-linking integration, by design.
Payments
Payments run through Stripe's hosted checkout. Your card details go to Stripe, not to us; we store only your subscription status.
Deletion
Deleting your account deletes your data — grants, documents, extraction records, everything. It is not a soft-delete flag. If you cancel the paid plan instead, your data stays and you keep the free tier.
Questions: hello@holdbackrsu.com