Offshore Jurisdiction Storage
Every finalized PDF is stored on servers physically located outside the United States, operated by an independent company with no US parent and no US data sharing agreements. Your documents are governed by one of the strongest data protection frameworks in the world.
Why This Matters
Most SaaS tools store your data on US cloud infrastructure — AWS, Google Cloud, Azure. All of these are subject to the CLOUD Act, which allows US federal agencies to compel access to data stored by US companies, even if the servers are overseas, and even without notifying you.
Your LLC governance records contain sensitive business information: officer names, banking authorizations, ownership changes, financial distributions. These documents deserve jurisdiction-level protection — not just an encryption checkbox.
Our storage provider operates under one of the strongest data protection frameworks in the world. As a non-US company with no US parent, it is not subject to the CLOUD Act, FISA, or any US data access legislation.
We chose the jurisdiction before we wrote the privacy policy. The jurisdiction is the architecture. The policy just describes what we already built.
What We Collect
Only the data necessary to operate the service:
- Account information: Your email address, used for authentication and account recovery.
- Company details: Legal name, state of formation, management type, entity type, fiscal year end — used to generate your documents.
- Document session data: Your selections, inputs, and signature within the document wizard. Required to assemble and render documents.
- Audit events: Every system action (creation, edit, render, signature, finalization, export) is logged with a timestamp. This is part of the defensibility architecture, not data collection.
Where Your Data Lives
Application data (account info, session data, audit events) is stored on Heroku-managed PostgreSQL infrastructure.
Finalized PDF documents are stored in a private offshore jurisdiction. These files are governed by strict data protection law outside US jurisdiction.
Every finalized document is hashed with SHA-256 at the moment of creation. The hash is stored alongside the document, providing mathematical proof that the record has not been altered since finalization.
What We Do Not Do
- We do not sell your data. To anyone. For any reason.
- We do not share data for advertising or cross-app tracking.
- We do not use your documents or data to train machine learning models.
- We do not provide third-party access without your explicit consent or valid legal process in the storage jurisdiction.
Security
All data in transit is encrypted over HTTPS/TLS. Document uploads to offshore storage use encrypted connections. Authentication uses secure, HttpOnly session cookies with no client-side token exposure.
Data Retention
Account data and documents are retained while your account is active. Operational backups are maintained for disaster recovery.
Upon account closure, application data is deleted. Offshore-stored documents can be deleted upon request.
Your Rights
- Access and download your documents at any time.
- Request correction of inaccurate account information.
- Request deletion of your account and all associated data.
- Receive a copy of your data in a portable format.
Contact
Privacy inquiries, data access requests, or deletion requests: support@minutes.llc
Serious owners choose jurisdiction-level protection for their records.
60 seconds. Defensible. Stored offshore.
Protect My LLC Now →Last updated: April 2026