Your Data. Your Control.

We can't see your financials. By design.

ProLens connects to your tools with read-only access. Your financial data is viewed live and never saved. Anything we hold to keep the page fast is erased automatically every 15 minutes. No database. No backups. No admin access. Close the page and it's gone.

0 bytes

permanently stored

Financial data never hits our database

15 min

then it's gone

Your data appears on your screen, then disappears. Nothing is saved. Nothing to hack. Nothing to leak.

0 admins

can see your data

No backdoor. No impersonation. No exceptions.

Scroll down to see exactly how it works, step by step.

Nothing stored, nothing to steal

We read. We compute. We forget.

Source

Your project management tool

Productive · BQE · Deltek

↓ Read-only API

Viewed live, never saved

ProLens compute

15 min TTL

expires → discarded

↓ Computed insights

Your view

Dashboard

Invoices, time entries, and financial data are fetched on demand from your project management tool.

Your data is viewed live, never saved. It stays on the page just long enough to show you what you need.

Erased automatically every 15 minutes. The next view pulls fresh data straight from your project management tool.

No financial data is ever written to our database. There is no warehouse to leak.

If you disconnect ProLens, there is nothing to delete — because nothing was stored.

Cost rate protection

Your cost rates are invisible to us.

Cost rates, salary data, and hourly rates never leave your project management tool. ProLens computes profit margins server-side in real time. The raw cost data exists only in memory during the calculation and is discarded immediately. It is never persisted, retained, transmitted to any third party, or written to any log.

What your project management tool has

  • employee_name: Sarah Chen
  • hourly_rate: $185
  • cost_rate: $82
  • salary_band: L4

What ProLens sees (in memory only)

  • employee_name: Sarah Chen
  • utilization: 87%
  • project_margin: 34%
  • ↳ discarded after compute

What ProLens stores

nothing.

AI anonymization

AI that never knows your name.

Every AI analysis runs on anonymized data. Before any information reaches our AI models, all client names, project names, and employee names are replaced with pseudonyms. The AI sees “Client Alpha” and “Project Bravo,” never your real names. De-anonymization happens server-side after the AI responds, so the named insights you see on your dashboard were never sent to any AI provider with identifying details.

Sent to AI provider

Client Alpha invoice #A1 for $18,729 is 94 days outstanding.

Dollar amounts, percentages, and dates are sent as-is so the analysis is accurate. Names are pseudonyms.

What you see on your dashboard

Novak Properties invoice #1847 for $18,729 is 94 days outstanding.

De-anonymized server-side, in your tenant. Never round-tripped through the AI provider with real names.

Your keys. Your control.

Connect with OAuth. Disconnect with one click.

ProLens connects to your project management tool using OAuth — the same standard your bank uses. You authorize read-only access from your own project management account. Your credentials never pass through our servers. You can revoke access anytime from your project management settings or from ProLens with one click. When you disconnect, everything is erased within 15 minutes. There is nothing left to delete.

For platforms without OAuth

API keys are encrypted at rest using AES-256-GCM envelope encryption. Even ProLens administrators cannot read your API credentials from the database.

Audit trail

Every access, logged and visible to you.

ProLens logs every data access event: every sync, every AI analysis, every live view. This log is visible to you in your Settings > Security tab. You can see exactly when ProLens accessed your data, what it accessed, and whether it was an automated sync or a human-initiated action. Logs are retained for 90 days.

Settings > Security > Access Log

Last 24 hours

TimestampEventResourceInitiated by
2026-05-16 09:14:02Project syncinvoices, time_entriesautomated · hourly
2026-05-16 09:14:08Live viewmargin_metricsautomated
2026-05-16 08:47:31AI analysisrevenue_pulse (anonymized)sarah.chen@firm.com
2026-05-16 08:12:09Dashboard loadproject_summaryj.principal@firm.com
2026-05-16 07:00:01Project syncprojects, dealsautomated · daily

No backdoor. By design.

We cannot see your data. That's the point.

ProLens has no “view as tenant” feature. No admin backdoor. No impersonation mode. Our architecture enforces tenant isolation at every layer: authentication, database row-level security, API routing, and strict per-firm boundaries. A ProLens engineer debugging an issue sees anonymized metadata and error logs — never your financial data.

If we ever need direct access for support, we require your explicit written permission, generate a time-limited token, and provide you a full access report when it ends.

No view-as-tenant

There is no UI or API path that lets a ProLens employee see your data as you see it.

Row-level isolation

Every query is scoped to your tenant at the PostgreSQL level, not by application logic.

Strict firm boundaries

Data from your firm can never appear in another firm's view. The boundary is enforced before any data is read.

Time-limited support tokens

Any direct access for support requires your written approval and produces a full access report.

Compliance

Where we stand.

GDPR Compliant

Nothing stored on our servers. Data processing agreement available on request.

SOC 2 Type I

In progress. Target: Q4 2026

Encryption at Rest

AES-256-GCM envelope encryption for all credentials

Read-Only Access

ProLens never writes to your project management tool

Ready to see it in action?

Have an IT questionnaire? security@prolens.io