Browser-local by default
Free saved deals, the two-deal board and current CSV Deal Room processing remain in the browser unless the user intentionally begins a report or support workflow.
REAL ESTATE ANALYSISCapSharkCapShark is decision-support software. This page explains what runs locally, what may be sent to CapShark, how paid access should be verified, and where professional judgment is still required.
Free saved deals, the two-deal board and current CSV Deal Room processing remain in the browser unless the user intentionally begins a report or support workflow.
Stripe handles payment. A return URL, local record or email must never grant Pro access or mark a report paid. Webhook verification and account entitlement are required.
Results depend on user inputs and simplified models. Public sources, key formulas, limitations and review dates are documented and must be checked against current requirements.
| Area | Current control | Production requirement |
|---|---|---|
| Free calculators | Local inputs; visible assumptions and disclaimers | HTTPS, error monitoring and release tests |
| Analytics | Consent-first event layer; no deal or borrower values | Private owner role, server aggregation and retention rules |
| Pro | Paid UI never trusts browser/URL state | Account provider + verified Stripe webhooks + entitlement database |
| Paid reports | Unique local order reference and manual verification warning | Verified order state, private file storage, access log and delivery SLA |
| Deal Room | CSV files processed locally in the beta | Secure document service before enabling server-side Excel/PDF processing |
The analytics layer permits only approved event names and non-sensitive properties. It excludes property addresses, borrower/sponsor details, emails, report IDs, document contents and calculator input/output values.