Security

Read-only. On your network. Nothing leaves.

That's not a policy statement — it's the architecture. EscrowIQ runs on a server you control, reads your SoftPro Select database with a permission level that can't write to it, and has no code path that transmits your operational data anywhere. Below is exactly what that means, in enough detail to verify it yourself.

01

Read

EscrowIQ connects to your SelectDb with a SQL account that only ever needs db_datareader. Every query the application issues is a SELECT — there is no code path anywhere in the app that writes, updates, or deletes SoftPro data. You can test this directly: grant the account read-only access and the app works exactly as intended.

02

Render

Every report page, chart, and export is generated on your own server, in your own memory, and served over your own IIS site to your own authenticated users. Nothing is pre-computed or cached in a system Hubmission operates.

03

Stop

That's the whole pipeline. There is no step 4 where a copy goes anywhere else — no analytics SDK, no crash/error-reporting service, no background sync, no cloud mirror of your reports. See the two exceptions below, both narrow and both something you explicitly turn on.

Not "minimal data" or "anonymized data" — this is the complete list. Everything else about your SoftPro data stays exactly where it is.

Always on · every installation
License check-in
A few times a day, the app sends its license key, a stable install ID, and its own version number to confirm the subscription is active and check for updates. That payload contains no SoftPro data, no report data, and no PII about your customers or staff.
Opt-in · off by default
Scheduled report emails
Only if an admin turns on the Report Subscriptions add-on and configures it: the specific report page they chose, on the schedule they set, is emailed to the recipients they listed. Nothing is sent unless all three of those are explicitly configured by your own admin.

If the license gateway is ever unreachable, the app keeps working on its last known-good status for 14 days before anything changes — it fails open toward "keep running," not toward "phone home more."

Does
  • ✓Issue read-only SELECT queries against SelectDb
  • ✓Authenticate users via Windows Auth / your existing AD groups
  • ✓Render and store reports only on your own server
  • ✓Send a small license check-in payload (key, install ID, version)
  • ✓Email a report you configured, only if you turn that add-on on
Does not
  • ✗Write, update, or delete anything in SelectDb
  • ✗Run any analytics, telemetry, or crash-reporting SDK
  • ✗Copy, sync, or cache your report data anywhere off your server
  • ✗Use customer, employee, or transaction data to train or improve anything
  • ✗Create its own separate login system — access rides entirely on your AD

Every claim on this page is meant to be checked, not taken on faith. A few ways to do that in an afternoon.

Grant read-only SQL access

Set up the SelectDb login with db_datareader only. If EscrowIQ needed write access anywhere, it would fail immediately at setup — it doesn't.

Watch outbound connections

Monitor the server's outbound network traffic after install. You'll see the license check-in a few times a day — no continuous or background traffic beyond that.

Review our documentation

We provide a detailed security architecture document and a completed vendor security questionnaire on request — built for exactly this kind of review, not a marketing summary of it.

Doing a formal security review?

We'll send our full security & data-architecture documentation and a completed vendor questionnaire — under NDA if your process requires it.

Request security documentation