security

private by default, shared on purpose

A household space only works if people trust it. Here's the plain-language version of how Conquish protects yours.

Household isolation

Every record belongs to a household. Database policies check your membership on every read and write — there is no shared pool of data.

Sensitive areas need a grant

Money, insurance and documents are gated. Owners and admins have access; anyone else needs an explicit grant per area, removable at any time.

Private document storage

Uploads go to a private bucket keyed by household. Files open through short-lived signed links, never public URLs.

An audit trail

Sensitive actions — household creation, joins, access grants — are recorded so owners and admins can see what changed.

How your data is handled.

Documents you uploadPrivate storage, scoped to your householdSigned links only
Extracted fieldsSuggested to you firstNothing saves without confirmation
Money and insuranceGated behind per-area grantsOwner and admin by default
Assistant answersOnly your household's authorised dataCited, read-only

on ai and your documents

When you upload a document, Conquish reads it to pull out useful fields like renewal dates, premiums and policy numbers. Nothing is saved to your household until you confirm it — every extracted field arrives as a suggestion, and high-impact fields are flagged for review. The original document is never overwritten.

More questions