Privacy Policy
Effective date: October 4, 2026
PipelinePilot is a sales and outreach productivity platform that helps users research contacts, build campaigns, send authorized email, and manage replies and opportunities. This Privacy Policy explains what information PipelinePilot collects, how it is used, and the choices available to users.
1. Information we collect
Depending on how you use PipelinePilot, we may collect:
- Account information, such as your name, email address, workspace membership, and authentication identifiers.
- Business data you provide, including contacts, companies, campaign content, attachments, notes, and settings.
- Usage and diagnostic data needed to operate, secure, troubleshoot, and improve the service.
- Google account and Gmail data only when you choose to connect a Google account and authorize access.
2. Google user data and Gmail access
When you connect Gmail, PipelinePilot requests only the Google permissions required for enabled email features. These permissions may allow PipelinePilot to identify the connected mailbox, send email from that mailbox, and process Gmail messages needed to detect campaign replies, delivery failures, and related thread activity.
PipelinePilot may store:
- The connected Gmail address and account identifier.
- An encrypted OAuth refresh token so the connection can continue without asking you to sign in for every send or sync.
- The scopes you granted and Gmail history identifiers used for incremental synchronization.
- Campaign-related sent and received message records, including sender, recipient, subject, message body, message identifiers, thread identifiers, timestamps, and reply classification where needed to provide Inbox and follow-up features.
PipelinePilot uses this information to provide user-facing email sending, reply tracking, bounce handling, campaign stopping, inbox organization, and related sales workflow features. Google user data is not used for advertising, sold to data brokers, or used to train generalized AI or machine-learning models.
PipelinePilot's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
3. How we use information
- Provide and maintain PipelinePilot features requested by the user.
- Authenticate users and protect accounts and workspaces.
- Send email and synchronize relevant replies when a connected mailbox is authorized.
- Generate, personalize, and organize campaign content based on user-provided business information and settings.
- Detect errors, abuse, delivery failures, and security incidents.
- Meet legal obligations and enforce our Terms of Service.
4. Sharing and disclosure
We do not sell personal information or Google user data. Information may be shared with service providers that process data on our behalf solely to operate PipelinePilot, such as hosting, database, authentication, email API, security, and infrastructure providers. We may also disclose information when required by law, to protect users or the service, or as part of a merger, acquisition, or sale of assets subject to applicable notice and consent requirements.
5. Human access to Google user data
Personnel do not read Google user data except when you give affirmative permission for support involving specific data, when access is necessary for security or abuse investigation, when required by law, or when data is aggregated for permitted internal operations in accordance with applicable law and Google's policies.
6. Data security
We use administrative, technical, and organizational safeguards designed to protect information. OAuth refresh tokens stored by PipelinePilot are encrypted. No system can guarantee absolute security, so users should also protect their account credentials and promptly report suspected unauthorized access.
7. Retention and deletion
We retain information only as long as reasonably necessary to provide the service, maintain business and security records, resolve disputes, and meet legal obligations. Users may disconnect a Google account at any time. Users may also request deletion of their PipelinePilot account or associated personal data by contacting us at marshalldevelopers@gmail.com.
8. Revoking Google access
You can revoke PipelinePilot's access to your Google account through your Google Account security settings. Revoking access stops future API access, although records already created in PipelinePilot may remain until deleted under the retention practices described above.
9. Children
PipelinePilot is intended for business users and is not directed to children under 13.
10. Changes to this policy
We may update this Privacy Policy as PipelinePilot changes. The effective date at the top of this page will be updated when material revisions are published.
11. Contact
Questions, privacy requests, or data deletion requests can be sent to marshalldevelopers@gmail.com.