Privacy Policy

Last updated: 2026-06-27 (draft — set the real publish date before going live)

This Privacy Policy explains how Creative Health Solutions LLC ("Clarity Commissions," "we," "us," or "our") collects, uses, stores, and protects information in connection with Clarity Commissions for Windows (the "App"), the commission software for door-to-door and window & home-services sales organizations.

The App installs from your CRM's app marketplace and connects to the CRM you already use to compute commissions, power dashboards, and run payouts for your organization. This policy describes our practices specific to that integration. It is written for the businesses that install the App ("Customers") and for the individuals whose records flow through it.

If you have questions about this policy or about data we process on your behalf, contact us at support@claritycommissions.ai.

1. Who is responsible for your data (controller / processor roles)

When your organization installs and uses the App, your organization is the data controller for the contact and opportunity records in your CRM. Clarity Commissions acts as a data processor, processing that data on your organization's instructions to provide the App's features (commission calculations, dashboards, and payouts).

For the account and identity information we use to operate the App itself (for example, the login identities of your administrators and reps), Clarity Commissions acts as a controller. This policy covers both roles.

Data controller contact: Creative Health Solutions LLC (Clarity Commissions) — support@claritycommissions.ai — claritycommissions.ai

2. What data the App accesses from your connected CRM

When an authorized administrator installs the App from your CRM marketplace, you grant the App access to read specific data from the CRM you already use, through an OAuth authorization. The App requests read-only access only, scoped to the following:

  • Contacts (read-only): contact records, which may include names, email addresses, phone numbers, and custom fields associated with each contact.
  • Opportunities / pipeline (read-only): opportunity and pipeline records, including deal stage, amount, dates, ownership/assignment, and related custom fields used to attribute and compute commissions.
  • Locations (read-only): the locations (sub-accounts/organizations) in your CRM, so the App can correctly scope each office or team and keep your data separated.

The App requests no write access to your CRM. It does not create, edit, or delete records in your CRM. It does not request access to messages, calls, calendars, or payment instruments stored in your CRM beyond the read-only scopes listed above.

We only request the scopes the App needs to do its job. You can review the exact scopes during installation, and you can revoke them at any time (see Section 7).

3. Other information we collect

  • Account & identity information: when administrators and reps sign in, we process the identity details provided through our authentication provider (such as name, email, organization membership, and role). This lets us enforce role-based access and ensure each organization sees only its own data.
  • Configuration you enter in the App: commission rates, setter/closer splits, redline/PAR settings, recruiter overrides, bonus rules, office and team structure, and similar self-serve comp configuration.
  • Payout information: the commission results and the payee information needed to disburse pay through our payroll partner, when your organization uses same-day pay.
  • Files you upload: documents or supporting files you choose to store in the App.
  • Usage and diagnostic data: basic logs (for example, sign-in events, errors, and request metadata) used to operate, secure, and troubleshoot the App.

4. How we use the data

We use the data described above to:

  • compute commissions, including setter/closer splits, redline/PAR pay, recruiter overrides, and collected-versus-sold revenue with clawback;
  • produce dashboards, office and team rollups, and reports for your organization;
  • run payouts (including W-2 and 1099 same-day pay) when your organization enables that feature;
  • power the in-App Q&A assistant so authorized users can ask questions about your organization's own commission data;
  • authenticate users and enforce role-based, organization-scoped access;
  • operate, secure, monitor, troubleshoot, and improve the App;
  • communicate with you about service, support, and billing.

We do not use your contacts or opportunity records for advertising, and we do not build cross-customer profiles from your data.

5. How we store and retain data (warehouse vs. transient reads)

  • Stored in our data warehouse: to compute commissions and render dashboards quickly, the App stores a synced copy of the CRM opportunity/pipeline data and the relevant contact details, along with the comp configuration, commission results, and payout records, in our secured data warehouse (Google BigQuery). This data is retained for the duration of your subscription so the App can show history, trends, and prior-period commissions.
  • Read transiently: some data is read on demand to fulfill a specific request (for example, resolving the latest state of a record at calculation time or answering an assistant query) and is not separately persisted beyond what is needed to complete and log that request.
  • Retention period: we retain your organization's data for as long as your subscription is active. After your organization uninstalls the App or terminates its account, we delete or de-identify your organization's stored data within 90 days, except where we must retain limited records to meet legal, tax, accounting, or payroll obligations (for example, payout records required for tax reporting). Backups are purged on a rolling schedule.

You may request earlier deletion as described in Section 7.

6. Sub-processors

We use a limited set of trusted service providers ("sub-processors") to deliver the App. Each processes data only as needed to perform its function and under contractual confidentiality and data-protection obligations. We do not sell personal information, and we do not share it with third parties or affiliates for their own marketing.

Sub-processorWhat it does for the App
ClerkAuthentication and identity — manages sign-in, organization membership, and user roles.
Google BigQueryData storage / warehouse — securely stores the synced CRM data, comp configuration, commission results, and payout records used to run the App.
StripeBilling and payments — processes your organization's subscription billing and payment information.
EvereePayroll / same-day pay — disburses commission payouts (W-2 and 1099) when your organization enables payouts.
Vercel BlobFile storage — stores files you upload to the App.

We may update this list as our services evolve. Material changes to our sub-processors will be reflected in an updated version of this policy.

7. Your choices: revoking access, uninstalling, and deletion

  • Revoke CRM access at any time: an administrator can disconnect or revoke the App's authorization from within your CRM's app/marketplace settings. Once revoked, the App stops syncing new data from your CRM.
  • Uninstall the App: uninstalling the App from your CRM marketplace removes the integration. Uninstalling does not by itself delete data already stored in our warehouse — to delete that, make a deletion request below.
  • Request deletion or export: an authorized administrator of your organization may request export or deletion of your organization's data by emailing support@claritycommissions.ai from a verified administrator address. We will verify the request and process it within a reasonable time, subject to the legal-retention exceptions noted in Section 5.
  • Individual requests: if you are an individual whose personal data appears in a Customer's account and you wish to exercise a privacy right, please contact that organization (the controller) directly; we will support them in responding. You may also contact us at the address above and we will route your request appropriately.

8. Security

We take reasonable and appropriate measures to protect data, including:

  • Encryption in transit (TLS) for data moving between the App, your CRM, and our sub-processors, and encryption at rest for stored data.
  • Strict tenant isolation: access to the App is organization-gated through our authentication provider, and our data warehouse enforces row-level security so each organization can access only its own data. We are a multi-tenant service and do not allow one organization to see another's records.
  • Role-based access control: users see and do only what their role (for example, owner, manager, setter, closer, recruiter) permits.
  • Least-privilege CRM access: the App requests only read-only scopes and never write access to your CRM.
  • Access logging and monitoring to detect and respond to unusual activity.

No method of transmission or storage is perfectly secure, but we work continuously to protect the data entrusted to us.

9. International data transfers

Our infrastructure and sub-processors may process data in the United States and other countries. Where data is transferred across borders, we rely on appropriate safeguards and on the contractual protections we maintain with our sub-processors.

10. Children's data

The App is a business tool not intended for use by individuals under 18, and it is not directed to children. We do not knowingly collect personal information from children.

11. Changes to this policy

We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last updated" date above and, where appropriate, notify your organization. Your continued use of the App after an update means you accept the revised policy.

12. Contact us

Questions, requests, or concerns about this policy or your data:

Creative Health Solutions LLC (Clarity Commissions)
Email: support@claritycommissions.ai
Web: claritycommissions.ai