Last Updated: May 2, 2026
Effective Date: May 2, 2026
━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━
This Privacy Policy explains how CaseScorer collects, uses, stores,
and protects information when you use the CaseScorer platform
(casescorer.com and app.casescorer.com).
We have written this policy in plain language. If you have questions,
contact us at support@casescorer.com.
1. WHO WE ARE AND HOW TO CONTACT US
CaseScorer (“we,” “us,” “our”) operates a SaaS platform that helps
personal injury attorneys evaluate and score legal cases.
Data Controller: CaseScorer
Email: support@casescorer.com
Website: casescorer.com
For data deletion requests: support@casescorer.com
Response time: Within 30 days of receiving your request.
2. WHAT DATA WE COLLECT AND WHY
2.1 Account Information (collected when you register)
Data Collected:
- Full name
- Email address
- Law firm or practice name
- Password (stored as an irreversible cryptographic hash — we
never store your actual password)
Why We Collect It:
To create and manage your account, authenticate your identity,
and communicate with you about your subscription.
Legal Basis (GDPR/DPDP): Contract performance.
2.2 Case Data (collected when you score cases)
Data Collected:
- Case type, jurisdiction, incident date
- Financial figures (estimated damages, medical bills, insurance
coverage, lost wages) - Evidence and liability indicators (yes/no fields)
- Risk factor indicators (yes/no fields)
- Contingency fee percentage
- Case notes you choose to add
IMPORTANT: We do not require or collect:
- Your client’s full identity documents
- Medical records or hospital files
- Legal documents or court filings
- Any document uploads of any kind
You enter structured data only. What you choose to type in the
“client name” field is entirely your decision — we recommend
using initials or a reference number if your bar rules require it.
Why We Collect It:
To calculate case scores, generate AI analysis, and display
results in your dashboard.
Legal Basis: Contract performance / legitimate interests.
2.3 Billing Information (collected when you subscribe)
Data Collected by Stripe (our payment processor):
- Credit/debit card details
- Billing address
Data We Store:
- Your Stripe Customer ID (a reference token, not your card details)
- Subscription status and billing dates
- Payment history (success/failure status only)
We never see, access, or store your full card number, CVV, or
banking credentials. Stripe is PCI DSS Level 1 certified.
Why We Collect It:
To process your subscription payments and manage your account status.
Legal Basis: Contract performance.
2.4 Usage and Technical Data (collected automatically)
Data Collected:
- Browser type and version
- Operating system
- Pages visited within the Platform and timestamps
- Session duration
- IP address (stored temporarily for security purposes)
- Login attempts (including failed attempts, for account protection)
Why We Collect It:
To maintain platform security, prevent unauthorised access, detect
fraud, and improve the performance of the Platform.
Legal Basis: Legitimate interests (security, fraud prevention).
2.5 Communications Data
Data Collected:
- Emails you send to our support team
- Any feedback you submit
Why We Collect It:
To respond to your enquiries and improve our service.
Legal Basis: Legitimate interests.
3. HOW WE USE YOUR DATA
3.1 To Provide the Platform
Authenticate your login, display your case dashboard, calculate
case scores, generate AI analysis, and save your case history.
3.2 To Manage Your Subscription
Process payments, send payment receipts, notify you of subscription
changes, trial expiry, and billing issues.
3.3 To Communicate With You
Send you important updates about the Platform, security notices,
and changes to these policies.
We will not send you marketing emails without your explicit consent.
You may opt out of any marketing communications at any time by
clicking “unsubscribe” in any email or contacting us directly.
3.4 To Maintain Security
Detect and prevent unauthorised access, monitor for abuse, maintain
audit logs, and protect all users on the Platform.
3.5 To Improve the Platform
We use fully anonymised, aggregated data (never individual user data)
to understand how the Platform is used and improve its features.
Example of what we DO: “The most commonly scored case type on the
platform is Car Accident — we should improve that scoring module.”
Example of what we DON’T DO: “Vishnu Kumar’s firm scored 12 cases
this month with an average viability of 68.”
4. WHAT WE DO NOT DO WITH YOUR DATA
We will never:
✗ Sell your personal data or case data to any third party
✗ Share your data with any third party for their own marketing purposes
✗ Use your case data to train AI or machine learning models
✗ Share any identifiable information about your clients, cases, or
firm with other CaseScorer users
✗ Use your data for any purpose beyond what is described in this policy
without your explicit consent
5. ANONYMOUS BENCHMARKING FEATURE
CaseScorer includes a benchmarking feature that shows how your case
compares to similar cases on the platform.
How it works:
- When you ask “How does this case compare to similar cases?”, the
Platform queries aggregated statistics across all cases of the same
type (e.g., average viability score for Rear-End Collision cases) - This query returns only mathematical averages (e.g., “avg: 58.3”)
with no identifying information attached - Your case data is never shown to another user
- Another user’s case data is never shown to you
- The comparison is purely statistical — like comparing your test
score to the class average, not to any individual student’s score
No attorney-client privilege is compromised by this feature.
6. DATA SHARING WITH THIRD PARTIES
We share your data only with the following categories of third parties,
only to the extent necessary to provide the Platform:
6.1 Stripe, Inc. (Payment Processing)
Purpose: Processing subscription payments
Data shared: Email address, billing details
Location: United States
Privacy Policy: stripe.com/privacy
6.2 Hosting Provider (Hostinger)
Purpose: Storing Platform data and serving the application
Data shared: All Platform data (encrypted at rest)
Location: [Your Hostinger server location]
6.3 Google (Fonts)
Purpose: Loading web fonts (Poppins)
Data shared: IP address (standard web request)
Privacy Policy: policies.google.com/privacy
6.4 Law Enforcement / Legal Requirements
We may disclose data if required by law, court order, or government
authority, or if necessary to protect rights or safety.
7. DATA STORAGE, SECURITY, AND RETENTION
7.1 Storage
Data is stored on secure servers provided by Hostinger.
7.2 Security Measures
- HTTPS encryption
- Secure password hashing
- Access controls
- Session protection
7.3 Retention
- Account & case data: During subscription + 90 days
- Payment records: As required by law
- Logs: Up to 12 months
7.4 Data Breach
We will notify users if required by applicable law.
8. YOUR RIGHTS
You may:
- Access your data
- Correct data
- Request deletion
- Request export
To exercise rights, contact: support@casescorer.com
9. COOKIES
We use only essential cookies for login and security.
10. CHILDREN’S PRIVACY
Not intended for users under 18.
11. THIRD-PARTY LINKS
We are not responsible for external sites.
12. CHANGES TO THIS POLICY
We may update this policy and notify users where required.
13. CONTACT US
CaseScorer
Email: support@casescorer.com
Website: casescorer.com