Anastasis is built to be reviewed, not just trusted. Every scope, timesheet, screen capture, approval, and payout is logged and reviewable — and sensitive payment and identity material stays with the regulated providers that own it.
What the platform stores
- Account, profile, and onboarding state for clients and contractors.
- Role scopes, applications, candidate decisions, and audit trails.
- Tracked work-time, weekly timesheets, evidence references, approvals, and weekly reports.
- Wallet balances and ledger entries for earned-work amounts in transit through Anastasis.
- Notifications, support tickets, and dispute records.
Application data is encrypted at rest in a managed database and accessed only through audited endpoints. Screen captures are read through short-lived signed URLs with a 15-minute expiry — they’re never embedded directly in the page.
What never touches Anastasis servers
- Raw card numbers or CVV. Card setup is hosted by a PCI-compliant payments provider; Anastasis keeps brand, last four digits, and readiness status only.
- Contractor bank account numbers (CLABE, SWIFT, IBAN). External withdrawals live with the payout provider; Anastasis stores only the connection state.
- Government-ID images. Identity documents are uploaded directly to the verification provider’s hosted flow.
- Personal device contents, file system access, or keystrokes. The desktop tracker captures application focus and periodic activity captures only.
What the desktop tracker captures
During a tracked session, the tracker records the active application name and rough category (browser, code editor, email), takes periodic screen activity captures attached to the timesheet for your review, and runs idle/break detection so non-work time isn’t billed.
It never captures keystrokes or page contents, microphone, webcam, or location — and it captures nothing when paused or stopped, including personal browser windows or applications outside the tracked session.
How long records are kept
- Active engagements — data is retained for the life of the engagement plus seven years for tax and audit obligations.
- Closed engagements — profile, timesheets, and audit trails are retained per contract; activity captures are pruned after 90 days unless a dispute is open.
- Deletion requests — client and contractor data can be redacted on request, subject to legal retention requirements.
Who can see what
Access is role-scoped end to end — there is no “admin sees everything” bucket.
- You (client) — the candidates applying to your roles and their packets, your own engagements, timesheets and approvals queue, and your billing status. No view into other clients’ data or a contractor’s other engagements.
- Contractor — their own profile, applications, engagements, timesheets, evidence, payouts, and notifications. No view into other contractors’ applications or rates, or your other contractors.
- Anastasis admin — the minimum needed for vetting, dispute adjudication, and payout reconciliation. Every admin action is audit-logged and surfaced in the affected user’s activity history.
When money moves
The weekly cycle is the same for every client: the contractor submits at the end of the week (Sunday), your named approver reviews by Monday 11:59 PM Pacific (anything not declined or disputed auto-approves), your card on file is charged Tuesday, and the contractor payout targets Friday for funded, approved hours. See the payment timeline for the full walkthrough.