Where your client documents are read
Carrier PDFs, scans, photographed pages and the overnight pass that reads client files all run on a model installed on the machine Briar runs on for your practice. That machine is dedicated to you — it is not a shared, multi-tenant AI service, and your documents are not queued alongside anybody else's.
There is deliberately no hosted fallback on that path. If the local model is busy or unavailable, the work waits — it does not quietly get sent somewhere else instead. That decision matters more than it sounds: a fallback fires at the worst possible moment, unattended, and it would send exactly the information the arrangement exists to protect.
The specific hardware and where it is operated are set out in your agreement and confirmed during onboarding, so you know what you are relying on before any client information reaches it.
What is never done with your information
- It is not used to train any AI model — not by Briar, and not by the providers Briar uses. The hosted accounts Briar runs on are configured with training disabled and prompt retention switched off, and those settings are re-checked whenever a provider changes.
- It is not sold, rented, or shared with data brokers, marketers or lead vendors.
- It is not shared with another agent or agency. Isolation is enforced by the database rather than by application code, so an application bug cannot leak across books.
- It is not used to build a shared industry dataset, a benchmark, or a public model of any kind.
- It is not read by us for product development. Where support genuinely requires someone to look at a record, we ask you first.
What does still leave, and where it goes
Briar routes each job to whichever model measures best at it, and two of those still run on hosted providers. Publishing the boundary is the point — you should be able to see where it falls rather than take our word for it. The specific providers, and the terms we hold them to, are named in your agreement and available on request.
| What Briar is doing | Where it runs | What is involved |
|---|---|---|
| Reading a carrier document, a scan or a photo | Your dedicated hardware | The whole page. It does not leave. |
| The overnight pass that reads client files for opportunities | Your dedicated hardware | Client details and policy values. They do not leave. |
| Working out what you meant when you type, and answering questions about your book | A hosted AI provider, under contract | Your own messages, and the records needed to answer them — which can name a client. |
| Deciding whether an incoming email needs you | A hosted AI provider, under contract | Sender name, sender address and subject line. Not the body. |
| Writing a client letter or building a proposal document | A hosted AI provider, under contract | The text being written, and the facts it is grounded in. |
| Your mailbox connection | Google, via OAuth you grant and can revoke | Briar holds a per-agent credential, encrypted at rest. You can withdraw access from your Google account at any time. |
How the information is protected inside Briar
- 01
One agent cannot see another's book, and it is not the application deciding that
Separation is enforced by PostgreSQL row-level security. Every tenant table carries a policy the database applies to every query — 52 tables, all of them forced, verified automatically rather than by review. A bug in the application code cannot leak across agents, because the application is not what is enforcing it.
- 02
Documents are encrypted at rest and stored once
Each file is stored a single time, keyed by its hash, so the same document arriving twice does not become two copies to secure.
- 03
Anything that arrives is treated as data, never as an instruction
Email bodies, attachments and web pages cannot tell Briar to do anything. Document reading returns typed fields only — there is no free-text field in the output — so an instruction hidden inside a PDF has nowhere to live even if a model reads it.
- 04
Nothing leaves without you releasing it
An inbound email can never cause an outbound one. No lane can send a document or an email on the first message: you are shown the exact wording and the exact recipient, and nothing moves until you reply.
- 05
Every automated decision is logged with its evidence
Where Briar filed something on its own judgement, it records what it filed and the data point that justified it, so "why did that end up there" is answerable months later rather than being a matter of opinion.
- 06
Some information is refused outright over chat
Social security numbers, bank details, medical information and applications are not sent over a chat channel — to anyone, including you. That is a rule about the channel, not about who is asking.
What Briar stores about you, as the customer
- Account details you provide during onboarding: your name, your agency, your licence details, the carriers you write with and how you sign off correspondence.
- The book you connect or import: clients, policies, documents, applications, and the correspondence Briar reads from the mailbox you connect.
- Operational records: which jobs ran, when, whether they succeeded, and what they cost — so you can see what Briar has been doing on your behalf.
- We do not run third-party advertising or analytics trackers on this website.
Keeping it, and getting it back
- Your data is retained while your account is active, because the whole product is a system of record and a system of record that forgets is not one.
- You can request an export of your book at any time, in a form you can load somewhere else.
- On termination, your data is deleted on request. Ask and we will confirm in writing when it is done.
- You can disconnect the mailbox yourself from your Google account without going through us.
Questions, and the honest caveats
If you want something on this page evidenced before you connect a mailbox, ask — the specifics above are stated precisely so they can be checked rather than admired. Write to hello@meetbriar.com.
This page is a description of how Briar works today and will be updated when that changes; the date at the top is when it was last checked against the running system. Briar prepares work for licensed insurance professionals and does not provide insurance advice.