No Errands Sign connector: privacy
Effective 2026-09-21. This page covers the electronic signature connector run by Maren Technologies LLC, a company organised in Missouri, United States. The general policy is at /privacy; where the two differ, this page governs the sign connector.
In one sentence: to get a document signed we have to hold the document, the signers' names and emails, and a record of who signed what and when; we keep it for the period you choose, then delete it.
There are two kinds of people on this page: the sender, who is our customer, and the signers, whom the sender asks to sign. A signer can also be the sender, when you sign something yourself.
What this connector stores
| What | Why we need it |
|---|---|
| The document you send, as a PDF | It is what gets signed |
| The title and the optional message to signers | Shown on the signing page |
| Each signer's name and email address | Shown on the signing page and the certificate, so everyone can see who was asked to sign |
| Signature images, typed names and initials | They are the signatures, stamped into the finished PDF |
| Values typed into text fields | They become part of the finished document |
| IP address and browser user agent of every view, consent, signature and decline | The audit trail that shows a signature was the act of the person who held the link |
| Timestamps of every step | Same |
| A decline reason, if a signer gives one | So you know why |
| The finished PDF and SHA-256 fingerprints of the original and finished files | So anyone can prove a copy is unaltered |
| Your email address | From when you created your API key; shown to signers as the sender, and used for receipts and support |
The signing links themselves are never stored. We keep only a one-way hash of each, which is why a lost link cannot be shown again, only replaced.
Why we have it
Only to get your document signed, show you its progress, give every party the finished copy, and charge the right amount. We do not read documents, we do not use any of this to train models, and we do not use it for marketing.
This is how we meet the data rules in Meta's Muse Connector Terms (section 4.3): we process data from a Muse user only to fulfil that user's request, we keep it only as long as that request needs, and we delete it on request.
We send no email
We never email your signers. Each signing link is returned to you, and you, or your agent after your approval, send it from your own email account. So we do not hold a mailing list, and a signer's email address is used only to show on the signing page and the certificate who the link was meant for.
Where it is kept
- Documents and signature images are stored in Cloudflare R2 object storage.
- Envelope records, signer details and the audit trail are stored in a Cloudflare D1 database.
- Both are run for us by Cloudflare, our hosting provider, which processes them under contract and may not use them for its own purposes.
Who we share it with
- Your signers. Each signer sees the document, the title, your message, your email as the sender, and their own name. When everyone has signed, each signer can download the finished PDF, whose certificate page lists every signer's name, email, IP address, browser and timestamps. That is what makes the certificate evidence, and every signer is told on the signing page.
- Cloudflare, which hosts the service and stores the data, as above.
- cdnjs, the public code library the signing page loads its PDF viewer from. The signer's browser fetches the viewer directly; the page sends no referrer, so the signing link never reaches it.
- Stripe, if you buy credits. Stripe receives your email address and the amount. Card details go to Stripe directly, never to us.
- Law enforcement or a court, if legally required.
We do not sell your data or share it for advertising. No outside e-signature company is involved.
Agents only act with your approval
If you reach this connector through an AI agent such as Meta's Muse, the agent uses an API key you created and stored in the agent's secure credential store. The connector brief the agent reads requires it to:
- send only documents you provided or approved, to the people you named, and confirm every signer's name and email with you;
- show you the quote and send the envelope only after your explicit approval;
- deliver each signing link only to its own signer, from your own email, after you approve the message, and never post a link anywhere public;
- never use the service for the documents our terms exclude.
Our responses to the agent contain data only, never instructions. The agent is never shown a signer's IP address or browser.
How long we keep it
You choose how long a completed envelope is kept when it is created: 30, 90, 365 or 1,095 days. The default is 365.
| What | Kept until |
|---|---|
| A draft that was never sent | 24 hours after it was created |
| A sent envelope nobody finished | Its expiry date (1 to 90 days after sending, 30 by default), then it is treated as expired |
| A completed envelope | Your chosen retention period after completion: 30, 90, 365 (default) or 1,095 days |
| A declined, voided or expired envelope | The shorter of your chosen retention period and 30 days after it ended |
| Billing ledger and receipts | 7 years, because tax rules require it |
When the period ends, a daily job deletes the documents and signature images from storage and erases the names, emails, IP addresses, user agents, typed names, field values, title, message and every audit event. What stays is only what identifies nobody: the envelope id, its status and dates, the page count, the amount charged and the two fingerprints.
Signing law puts the duty to keep a signed record on the parties to it, not on us. Save the finished PDF when you get it; ours is a convenience copy.
Deleting your data
- Ask your agent to delete an envelope and it calls
delete_envelope, which erases that envelope's documents, signatures, personal details and audit trail immediately, whatever its age. A live envelope is voided first. - Ask your agent to delete your data and it calls
delete_my_data, which does the same for every envelope on your account. - You can also email support@noerrands.com from the address on your account; we will revoke your keys and delete your records within 30 days, keeping only what tax and legal rules require in the billing ledger.
You can also ask for a copy of what we hold, or ask us to correct it.
A signer who wants their details removed can email support@noerrands.com. We will tell the sender, because a signed document is theirs as much as the signer's, and delete what the law allows us to.
Other people's details
When you send a document for signature, you are giving us your signers' names and email addresses. Only send to people who expect to hear from you about that document.
Where this applies
For use in the United States. The service is run from the United States.
Contact
Maren Technologies LLC, support@noerrands.com. General policy: /privacy. Connector terms: /connectors/sign/terms.