Security and trust
Protection built into the data layer
Clientwright enforces its rules where the data lives. This page describes what exists today, including what does not exist yet.
Row-level organization isolation
Every business record belongs to an organization. Row-level rules in the database keep each organization's data separate, for every way a record is read or written.
Roles and permissions in the database
Admin, Manager, Standard and Read-only roles are on every plan. Business adds custom roles with per-record-type permissions and hidden or read-only fields. The last administrator cannot be removed.
Audit trail and lineage
Changes are recorded, and each record keeps its lineage. Audit history is available on Business.
Retention controls
Administrators on Business choose how long audit history is kept.
Plan limits enforced by the database
Limits and feature access apply to every write path, including imports, not only the screens.
Safe sign-up and invitations
Email confirmation is required at sign-up, and invitation links are single use.
Private file storage
Attachments and import files are stored privately, with per-file and per-plan limits.
Encryption in transit
Traffic between your browser and the service is encrypted in transit, as provided by the hosting platform.
Data portability
Paid plans export to CSV and Excel, and administrators can create a full organization export.
Honest status
What we do not claim
Clientwright does not currently hold third-party security certifications, and we do not display badges for any. We will list one here only when it has been awarded.
Coming soon
- Coming soonTwo-step sign-in
- Coming soonSession controls
- Coming soonSign in with Google
- Coming soonSign in with Microsoft
- Coming soonSingle sign-on (SAML/OIDC), Business plan
- Coming soonPublic API keys and webhooks
Questions about security or privacy? Contact us or read the privacy policy.
Build client relationships right.
Try Clientwright free for 14 days. No card required.