Privacy Policy

Last updated: 2026-07-16

1. What we collect

Account information (name, email, password hash, billing email), workspace data (account names, contact emails uploaded or synced from your CRM), and usage telemetry (pages visited, features used). CRM API tokens are encrypted at rest.

2. Why we collect it

To deliver the digest, authenticate you, process billing, and improve the service. We do not sell your data and we do not run third-party advertising trackers.

3. How we protect it

Encryption in transit (TLS 1.2+) and at rest (PostgreSQL with managed encryption). Access to production data is limited to a small operations team with audit logging.

4. Who we share it with

Subprocessors are listed in our subprocessor page, including hosting, transactional email, monitoring, and payment processing.

5. GDPR rights

You can export your personal data, request deletion, and object to processing. We respond to verified requests within 30 days. Use the endpoints in Settings or contact us.

6. Cookies

Authentication cookies are essential to the service and exempt from consent requirements. Analytics cookies are only set after you accept them on the cookie banner.

7. Your choices

You can update notification preferences, request export or deletion, or close your account at any time.

8. Contact

Reach out with any privacy question.