Collecting signed engagement letters and ID from new law firm clients

To collect a signed engagement letter, photo ID, proof of address and the client's own records when a small law firm opens a matter, send the client a ShieldFive document request: one link with an upload slot for each intake document, which the client opens on a phone or computer without creating an account. Each file is encrypted in the client's browser before upload, so ShieldFive stores only ciphertext and never holds your keys.

Specs

Updated .

ShieldFive document request specs for law firm client intake
Client needs an account?No. No account, no sign-in, no app. The client needs the link and the PIN.
PINRequired, at least 4 characters, chosen by you and sent separately from the link.
Max file size5 GB per file.
Max per requestAbout 2 GB in total by default.
Files per request25 by default, adjustable from 1 to 100.
File typesAny type: signed PDFs, phone photos, scans, email exports.
ChecklistUp to 100 requested items per request. You write the intake list; reuse it for the next client with Send this checklist to another client.
Link expiryUp to 7 days on the free plan. 7, 30 or 90 days, or no expiry, on Firm seats and during the 14-day trial; 30 days by default.
Reminders to youAn email when files arrive, and a reminder to follow up if nothing has arrived after about 3 and 7 days. Every plan.
Reminders to the clientOn Firm seats and during the trial, if you add the client's email: at most 2, after about 3 and 7 days, while required items are missing. One click stops them.
Your brandingYour firm name and logo on the upload page and the client reminder, on Firm seats and during the trial.
Plans14-day trial with everything unlocked, no card. Then free with 1 open request at a time, or a Firm seat at €29 per month (€290 per year). Clients never pay and do not use a seat.
EncryptionClient-side, in the client's browser, to your firm's public keys. File names and the checklist are encrypted too. ShieldFive never holds the keys.

Steps

  1. Unlock your vault, open Requests and choose Request documents.
  2. List the intake documents, one per line: "Signed engagement letter", "Photo ID, front and back", "Proof of address", "Documents about the matter (contracts, letters, notices)". End a line with "(optional)" to mark it optional.

  3. Set a PIN and an expiry. Add the client's email if you want ShieldFive to remind them.

  4. Select Create secure link. Send the engagement letter the way you do today, with the link in the same email, and give the PIN by phone or text.

  5. The client signs the letter, then uploads the signed copy as a PDF or a phone photo, along with the other documents. They can send what they have and come back to the same link for the rest.

  6. When you are emailed that something arrived, open Requests and use Download & decrypt. Pick the matter's folder when you create the request so files land there. Revoke the link once intake is complete; received files stay in your vault.

  7. For the next new client, choose Send this checklist to another client to reuse the same intake list with a new link and PIN.

Compared with email, file-sharing links and client portals

Collecting law firm intake documents: email, file-sharing links, client portals and ShieldFive compared
Email attachmentsGeneric file request (Dropbox, OneDrive)Client portalShieldFive document request
Client needs an account?NoNoUsually a login; some portals also accept uploads by linkNo. A link and a PIN
List of what you needIn the email textOne upload box per requestVaries by portalOne upload slot per document, required or optional
Who can read stored filesBoth mail providers, and anyone with mailbox accessThe provider can decrypt by defaultUsually the vendor holds the keysOnly your firm. ShieldFive stores ciphertext
Turn it offCannot recall a sent attachmentClose the requestRemove accessRevoke the link, or let it expire
Also does billing, e-signature, workflowNoNoUsually yesNo. It only collects documents

Limits

  • ShieldFive does not send the link for you. Part of the decryption key is in the # fragment of the link and never reaches our servers, so you send the link yourself, and it has to arrive complete. The client-reminder email cannot contain the link for the same reason.

  • It does not e-sign. The client signs the engagement letter however you already ask them to, and uploads the signed copy.

  • It collects documents. It does not run conflict checks, verify identity documents or bill, and it is not practice-management software.

  • Clients choose files, not folders. The page has to stay open while files encrypt and upload.

  • Nothing identifies the uploader automatically. If you need to be certain who sent a document, confirm it with the client through a channel you already trust.

  • The upload page is code ShieldFive serves, so the client trusts that code at the moment of upload, as with every browser-based encryption product.

Full details of every limit are in Requesting documents from a client. For the workflow in short, see Document requests for law firms, and for what to look for in file sharing at a law firm, Secure file sharing for law firms.