Privacy
What happens to what you share
Last updated 3 September 2026
This explains what LINX Snapshot collects, where it goes, who can see it, and how long we keep it. It describes what the software actually does today, not what we intend to build.
Snapshot is run by LINX Consulting LLC, Omaha, Nebraska. If anything here is unclear or you want something removed, email connect@linxconsulting.com and a person will answer.
What we collect
Everything we hold about you, you typed or uploaded. We do not buy data about your business, and nothing on this site tracks you across the web.
- Your name, work email, job title and company name.
- Your answers about the business: industry, size, revenue band, what you sell, what is getting in the way, what you want to change. Several of these are free-text boxes, so what they contain is whatever you chose to write.
- Financial figures you enter, including cash runway, payroll coverage and any back taxes owed.
- Documents you upload — profit and loss statements, balance sheets, bank statements, payroll registers, tax notices, loan agreements. These often contain other people’s information: employee names and pay, customer and vendor names, bank counterparties.
- Your conversation with the AI interviewer, stored turn by turn.
- If you run an Employee Pulse, your team’s ratings and written comments.
We do not ask for, and you should not send, government identification numbers, health information, or card and bank account numbers. If a document you upload happens to contain them, tell us and we will remove the file.
How your report is protected, plainly
There is no password on Snapshot, and we would rather say so than imply otherwise. When you start a diagnostic we email you a private link. That link is what proves it is you — it is how you return to an unfinished diagnostic and how you open your finished report.
That means anyone holding the link can read it. It does not expire, and we cannot currently revoke it. Forward it to your accountant or your business partner if you want them to see the report; do not post it anywhere public.
Documents you upload are different: those open only for a named LINX advisor signed in with an account we issued. When an advisor opens one, the file link they get works for fifteen minutes and then stops.
Who can see it
LINX advisors on our access list can see everything in your diagnostic. That list is a small number of named people, and someone who merely has a Microsoft account in our organisation is not on it.
We do not have a record of who opened what. Our audit trail records changes — a stage completed, a report released — not views. So we can tell you what happened to your diagnostic, but not who looked at it.
Nobody outside LINX sees your diagnostic. We do not sell it, rent it, share it with partners, or add you to a marketing list.
The AI, and exactly what reaches it
Snapshot uses Anthropic PBC, in the United States, to run the guided interview and to write parts of your report. This is worth being specific about, because "we use AI" can mean almost anything.
What goes to Anthropic: your whole interview conversation, your written answers about the business, and a few financial figures such as weeks of cash runway and any back taxes owed.
What does not: your name, your email address, your company name, the contents of any document you upload, and your employees’ Pulse comments. Those are structurally excluded — the parts of the report that quote them are assembled without the AI.
Anthropic is contractually prohibited from training its models on what we send. That is a term of our agreement with them, not something the software enforces, and we would rather you know which of the two it is.
If your team fills in an Employee Pulse
This one matters and it is easy to skim, so it gets its own section.
The Pulse asks your employees to rate parts of the business and to write two short comments. Ratings are always reported to you as averages, never individually.
Written comments work differently. If five or more people respond, their comments appear in your report word for word, without names attached. Below five, comments are withheld entirely and the report says so, because in a small team a quote can identify who wrote it.
Unattributed is not the same as unidentifiable. A comment about a specific incident can point to its author whatever the headcount. If you are an employee reading this, write with that in mind.
Where it is stored
On Microsoft Azure, in the central United States. Azure encrypts it in transit and at rest using Microsoft-managed keys.
Backups are geographically redundant, which means copies exist in a second US region. That is a resilience feature, and it also means your data is not confined to one datacentre.
Two things reach Microsoft as a side effect of running the service: a directory record is created for your email address when you first start a diagnostic — it grants no access to anything and sends you nothing, but it is a record, and it stays — and our advisors receive an email telling them your diagnostic is finished, which carries your name and company in the subject line and lives in their mailbox like any other email.
How long we keep it
Indefinitely, unless you ask us to delete it. We would rather write that sentence than a retention period we do not actually enforce.
Two exceptions, both automatic: operational logs are deleted after 30 days, and the records we use to prevent abuse of the sign-up form — which include your IP address — are deleted after 48 hours.
Our activity log is permanent and cannot be edited. That is deliberate: it is the record of what was done to your diagnostic and when.
Getting a copy, or getting it deleted
Email connect@linxconsulting.com. There is no self-service button, and we are not going to pretend there is one.
We will confirm it is really you before acting, usually by replying to the address on the account and asking something only you would know. This cuts both ways: the same lack of a password that lets you open your report with a link also means we cannot let someone delete a business’s diagnostic on the strength of a typed email address.
Deletion is done by hand across every system that holds your data — there is a script an operator runs, and we will confirm when it is finished. Some things are genuinely beyond reach and you should know which: backups age out on their own schedule, the copy of what was sent to our AI provider is governed by their retention terms, emails already delivered to advisor mailboxes are ordinary email, and the report link sitting in your own inbox stops working only once the report behind it is gone.
What we keep on your device
Snapshot sets no advertising or analytics cookies and runs no third-party trackers. There is no Google Analytics, no advertising pixel, no session recorder. Fonts and images are served from our own domain rather than a content network, so your browser is not making requests to anyone else while you use this.
One thing we do store, in your browser and nowhere else: the link to a diagnostic you have started, so that closing the tab does not mean going to find an email. It sits on that device for 30 days, it is never sent to us, and the banner offering to resume shows which email address it belongs to. There is a "Not you?" control next to it that erases it — worth using if you are on a shared or public computer, because anyone using that browser could otherwise reopen your diagnostic.
Our admin area, which only LINX advisors reach, uses a sign-in cookie from Microsoft. It plays no part in the diagnostic you fill in.
Children
Snapshot is for business owners. It is not intended for anyone under 18, and we do not knowingly collect anything from them.
Changes
If we change how any of this works, we change this page, and the date at the top tells you when. If a change is significant and we hold your email, we will tell you directly rather than leaving you to notice.
Questions about any of this go to connect@linxconsulting.com. A person answers.
