Table of Contents
ToggleThis document describes the security controls Swift-E Recording Services LLC applies to the Swift-E electronic recording platform. It is intended for clients and prospective clients conducting vendor security review, particularly title agents, lenders, and law firms with their own regulatory obligations.
Documents submitted for recording are stored in Azure Blob Storage and transmitted to the destination County in the format that County requires. Where a client uses the optional automated extraction feature, document content is processed by Microsoft AI services operating within Swift-E’s own Azure tenant.
Document content is not sent to any public or consumer AI service, and is not used to train any model.
| Subprocessor | Purpose | Data Received |
| Microsoft Azure | Hosting, database, blob storage, secrets management | All platform data |
Azure AI Document Intelligence | Optical character recognition for optional extraction | Document images |
Azure OpenAI Service (Swift-E tenant) | Structured field extraction for client review | Document text |
| Stripe, Inc. | Payment processing | Payment credentials, transaction data |
| Email delivery provider [INSERT] | Transactional email | Email address, message content |
Data retention policies are currently under active development. Automated retention, deletion, pruning, and expiry processes for submitted documents, derived image files, extracted index data, session records, and logs have not yet been implemented or verified. Retention periods will be published once the retention system is fully implemented and validated.
Swift-E maintains an incident response process covering detection, containment, investigation, remediation, and notification. [CONFIRM — if no written plan exists, write a short one before making this statement. A two-page plan naming who does what is sufficient and is far better than an unsupported claim.]
If you believe you have found a security vulnerability in the Swift-E platform, report it to security@swifterecordingservices. Please include enough detail to reproduce the issue. We ask that you allow us a reasonable period to remediate before public disclosure, and that you do not access, modify, or delete data belonging to others, or degrade the service, while investigating. We will acknowledge reports promptly and will not pursue action against good-faith researchers who follow these guidelines.
Clients and prospective clients conducting vendor review may request a completed security questionnaire, a written service provider or confidentiality agreement, or additional detail about a specific control. Contact customersupport@swifterecordingservices.com . Detailed architectural and configuration information is provided under a mutual non-disclosure agreement.