Attorney Practice Guide
Designing a Client Portal That Reduces Work Without Withholding Information
A client-communication operating model for portal status, document requests, secure messages, response ownership, accessibility, and attorney-only work.
Reviewed
Resource record
A client-communication operating model for portal status, document requests, secure messages, response ownership, accessibility, and attorney-only work.
- Reviewed
- Aug 13, 2026
- Evidence
- Client communication and portal operating controls
- Useful artifact
- Client-visible status vocabulary
Review note: Rebuilt around ABA Model Rules 1.4 and 1.6 with a client-visible status vocabulary and escalation model.
A client portal does not solve communication merely by putting case data behind a login. It helps when the client can understand what happened, what the firm is doing, what the client needs to do, and when a human response is appropriate.
ABA Model Rule 1.4 provides a useful baseline: keep clients reasonably informed, respond promptly to reasonable information requests, consult about the means of the representation, and explain matters sufficiently for informed decisions. The comments note that regular communication can reduce the need for clients to request updates. Rule 1.6 also requires reasonable efforts to prevent unauthorized access or disclosure.
The portal is therefore a communication channel with controls, not a substitute for lawyer communication.
Define what the client can see
Create a display policy before connecting internal matter fields to the portal.
Client-visible information may include:
- Confirmed case or matter stage
- Filed, received, scheduled, sent, or completed events
- Client tasks and exact document requirements
- Appointments and confirmed deadlines the client needs to know
- Messages and files intentionally shared with the client
- Invoice, payment, and trust information the firm has approved for display
- Plain explanations of what happens next
Attorney-only information may include:
- Legal theories and strategy
- Conflict review
- Safety flags and protected contact details
- Mental impressions and work product
- Unverified facts or extracted fields
- Internal urgency, quality, or risk scores
- Settlement posture and authority
- Drafts not approved for client review
- Other parties' protected information
Do not infer visibility from the field name. Make every new matter field private by default until the firm deliberately assigns a client-facing use.
Use a status vocabulary a client can understand
Internal stages often make poor client updates. “Discovery,” “RFE,” “claims review,” or “confirmation” may mean something to staff but not tell the client what to expect.
A client-visible status should answer:
- What happened?
- What is the firm doing now?
- Does the client need to do anything?
- When will the next update occur?
Examples:
| Internal event | Client-visible status |
|---|---|
| Document review queue | We received your files and are checking them. We will tell you if anything needs replacement. |
| Waiting on court or agency | Your filing is pending. There is no client task right now. We will update this page when we receive a notice. |
| Missing source record | Please upload the July statement for the account ending in 3812. The file received covers June. |
| Attorney exception | Your attorney is reviewing a question in the file. No client action is requested yet. |
| Appointment notice | Your appointment is scheduled for the date shown below. Open the instructions and confirm you received them. |
Keep legal conclusions and predictions out of automated status text.
Make every request exact
Document collection is where portals either save work or create a prettier chase.
Each requirement should show:
- Item needed
- Person, account, employer, provider, agency, or period involved
- Accepted format
- Due date when one actually applies
- Example or explanation when useful
- Current state: not requested, requested, received, needs replacement, accepted, attorney review, or waived
- Exact reason a received file did not clear
When a replacement arrives, recheck it against the same requirement. Do not leave the old request open after the correct file is accepted.
Set response ownership and expectations
A secure inbox becomes another unmanaged inbox unless the firm defines:
- Who monitors new messages
- Which messages staff may answer
- Which messages require the attorney
- Target acknowledgment and response times
- After-hours and emergency instructions
- Escalation for deadlines, safety, detention, medical crisis, active collection, or other practice-specific urgency
- How phone, email, text, and portal communications enter the matter record
The portal should acknowledge receipt and state when the client can expect a response. It should not imply continuous monitoring if the firm does not provide it.
Design for the actual client population
Review the portal for:
- Mobile use and slow connections
- Plain language
- Language access and translation review
- Screen readers, keyboard navigation, text size, contrast, and file-upload accessibility
- Clients with limited digital access
- Safe contact preferences
- Authorized representatives, parents, fiduciaries, interpreters, or support persons
- A nonportal alternative when needed
Technology does not reduce the duty to communicate with a client who cannot use the selected channel. Record the client's approved method and any accommodation.
Protect access and sharing
Require controls proportionate to the information:
- Unique user accounts
- Multifactor authentication where available and appropriate
- Tenant and matter-level access boundaries
- Time-limited or revocable sharing
- Clear authorized-participant roles
- Audit history for messages, uploads, views, and downloads
- Staff offboarding and access review
- Secure notification links that do not expose matter content in ordinary email or text
- Retention, export, and deletion procedures
Do not make family members, joint clients, corporate contacts, or fiduciaries interchangeable. Define who the client is and what each participant may see.
Measure whether the portal is reducing work
Track operational outcomes rather than logins alone:
- Time from request to accepted document
- Number of correction cycles per requirement
- Percentage of messages acknowledged within the firm's target
- Routine status inquiries per open matter
- Portal tasks completed without staff intervention
- Abandoned uploads and accessibility failures
- Messages escalated to the attorney
- Client satisfaction with clarity and response time
If clients log in and still call because the status is vague, the portal is not reducing communication work. Improve the information, not the login count.
Operating artifact: client-visible status register
For every automatic or reusable status, retain:
| Internal trigger | Client wording | Client action | Human owner | Review condition | Private fields excluded |
|---|---|---|---|---|---|
| Matter event or requirement | Plain-language update | None or exact task | Staff or attorney | Event requiring approval or escalation | Strategy, work product, safety, risk, or third-party data |
Review the register by practice area. Send a synthetic message through every status and document path before using it with a client. Confirm the portal, email notification, mobile view, staff inbox, attorney escalation, and audit record all tell the same story.
Sources checked
- ABA Model Rule 1.4 – Communication
- ABA Model Rule 1.4 comments
- ABA Model Rule 1.6 – Confidentiality
- ABA cybersecurity and secure-communication resources
Sources were checked on August 13, 2026. The firm's jurisdiction, client population, matter, engagement terms, and professional judgment determine the communication protocol.
DocketBuddy provides client-specific status, exact document requests, secure messages, tasks, dates, and portal access controls. Firms configure what clients see and when messages escalate. The attorney remains responsible for substantive communication and advice.
Article feedback
Was this helpful?
What should we improve?
Thanks for telling us
We’ll use this to improve the guide.