Privacy
Privacy
Last updated: today. Plain English version follows; legalese on request.
What we read
- Gmail (readonly + metadata): we list threads from the last 180 days. We extract the From/To/Cc, the subject, and the date. We do not store message bodies.
- Calendar (events.readonly): we list events for the same window. We extract the title, attendees, start/end. We do not store agendas, descriptions, or attachments.
- iMessage (Mac only, opt-in): our local helper queries
~/Library/Messages/chat.dbfor handle (phone/email), message count, and last-message timestamp per contact. The body of any message is never read by the helper, never sent over the network, and never written back to disk.
What we store
- Contacts (display name, emails, phones, your notes).
- Interactions (channel, direction, when, weight). No body. No preview.
- Reach-outs (the AI-drafted opener and your edits).
- Data-source refresh tokens, encrypted at rest with pgsodium.
What we do not store
- Email bodies, subjects of messages tagged sensitive, calendar agendas, iMessage content, attachments.
- Anything in incognito mode (toggle per contact).
How long we keep it
While your account is active. Delete your account and we hard-delete within 7 days; backups are rotated within 30 days.
Sub-processors
- Vercel — hosting
- Supabase — Postgres
- Clerk — auth
- Stripe — payments
- Resend — transactional email
- Anthropic via the Vercel AI Gateway — reach-out opener generation
Contact
privacy@vellaci.app