Trust
Security and trust
Last updated: 7 October 2026
Financial and tax records are sensitive. The beta uses authenticated, Clerk-scoped workspaces so application queries and changes are tied to the signed-in user's workspace.
Infrastructure
Vercel hosts the application, Clerk provides authentication, and Neon hosts PostgreSQL data in AWS Europe (London). Connections use HTTPS. Provider and database controls protect the hosted systems, but we do not claim that every database field is separately encrypted by the application.
HMRC secrets
Where HMRC development access is enabled, OAuth tokens and the separately supplied HMRC National Insurance number use application-level authenticated encryption. The general account profile does not store a National Insurance number.
Your account
Use a secure sign-in method, protect your device and contact support@simpleselfemployed.co.uk if you suspect unauthorised access. Multi-factor options and sign-in policy are managed through Clerk.
Sharing and HMRC
Accountant files are generated only when you request them and are not sent automatically. Production HMRC filing is not available to beta users; separately enabled sandbox or development calls may communicate with HMRC.
Closure and incidents
Account closure is a coordinated manual process requested through privacy@simpleselfemployed.co.uk. A Clerk self-delete alone is not represented as complete application erasure. We assess security incidents individually; not every incident is automatically a reportable personal-data breach.
Limitations
No online service can guarantee absolute security. We keep controls and procedures under review as the beta develops.