Draft, pending Equitas review; not a final policy.

Polaris Privacy and Data Handling

Last updated: June 2026

Polaris is an internal Equitas tool for authorised users. This page explains what information Polaris collects, how it is processed and stored, and who can see it.

Information collected

  • Account details: the email address and password you sign in with. Passwords are stored only in hashed form, never as plain text. Accounts are created and managed by Equitas administrators.
  • Documents you provide: the files you upload, or the Google Docs you link, as Client Source Material and Supporting Context.
  • Project details you enter, such as project and client names.

How your documents are processed

When you submit a PRP, Polaris extracts the text from your documents and then deletes the original uploaded files straight away. Polaris does not retain your uploaded files. The extracted text is sent to Anthropic's Claude API, a third-party AI service, where it is analysed to produce your assessment. That processing is governed by Anthropic's API terms.

What is stored

  • Completed PRPs are stored in the Polaris database and kept as the system of record until an administrator deletes them.
  • Background processing records are kept for 60 days and then removed automatically.
  • Your assessment history is linked to your account.

Who can see your information

  • You can see the PRPs you create.
  • Equitas administrators can see all assessments.
  • If you create a share link, anyone holding both the link and its passphrase can view that PRP. Sharing is at your discretion, so pass links only to people who should see the contents.

Security

Polaris runs over HTTPS, stores passwords using one-way hashing, and limits access to authorised accounts.

Confidentiality

Information processed in Polaris is treated as confidential to Equitas and its clients.

Questions

For questions about how Polaris handles your data, contact [Equitas contact to be added].