Privacy Policy
Last updated: June 23, 2026
OctoMail (“OctoMail,” “we,” “us”), a product of OctoAIverse, is an AI assistant that reads, qualifies, and replies to inbound email leads on your behalf. This Privacy Policy explains what we collect, how we use it, and your choices. Questions? Email [email protected].
1. Information we collect
- Account information — your name, email address, and basic profile from Google Sign-In when you create an account.
- Google account & Gmail data — with your permission, OctoMail connects to your Gmail to (a) read incoming messages so it can identify and qualify inbound inquiries, and (b) send email replies on your behalf. We request only the minimum Gmail permissions needed for these features.
- Lead & qualification data — the content of inbound inquiries you receive, the structured answers OctoMail extracts, the qualification questions you configure, and the replies it drafts or sends.
- Billing information — processed by our payment provider, Stripe. We do not store full payment-card numbers.
- Usage & device data — standard logs (IP address, browser, timestamps) for security and reliability.
2. How we use information
- To provide the service: read inbound emails, qualify leads, and draft or (with Autopilot) automatically send replies in your voice.
- To process payments and manage your subscription.
- To secure, maintain, and improve the service.
- To communicate with you — for example, an alert if your Gmail connection drops, or support responses.
We do not use your Gmail content or Google user data for advertising, and we do not sell it.
3. Google API Services — Limited Use
OctoMail’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
- We use Google user data only to provide and improve the user-facing features of OctoMail (reading, qualifying, and replying to your leads).
- We do not transfer Google user data to third parties except as necessary to provide or improve these features, to comply with applicable law, or as part of a merger or acquisition — and only with appropriate safeguards.
- We do not use Google user data for serving advertisements.
- We do not allow humans to read your Google user data unless (a) we have your explicit consent for specific messages, (b) it is necessary for security purposes such as investigating abuse, (c) it is required to comply with applicable law, or (d) the data has been aggregated and anonymized.
4. AI processing
To qualify leads and draft replies, the content of inbound inquiries is processed by AI models (Google’s Gemini API) solely to provide OctoMail’s features. Your data is not used to train third-party AI models, and this processing remains subject to the Limited Use commitments above.
5. Sharing & service providers
We share data only with service providers that help us operate OctoMail, under their terms and our instructions:
- Google Cloud / Firebase — hosting, database, and authentication.
- Google Gemini API — AI qualification and reply drafting.
- Stripe — payment processing.
- Resend — transactional email (e.g., reconnect alerts).
6. Data retention & deletion
We retain your data while your account is active. You can disconnect Gmail at any time in Settings, which immediately stops all access. To delete your account and associated data, email [email protected]; we will delete it within a reasonable period, except where retention is required by law.
7. Security
We use industry-standard safeguards, including encryption in transit, access controls, and encrypted storage of mailbox credentials. No system is perfectly secure, but we work continuously to protect your data.
8. Your rights
Depending on where you live, you may have the right to access, correct, delete, or restrict the processing of your personal data. Contact [email protected] to exercise these rights.
9. Children
OctoMail is intended for businesses and is not directed to individuals under 18. We do not knowingly collect data from children.
10. International
We operate in the United States and Canada, and your data may be processed in these countries.
11. Changes
We may update this policy. We will post the new “Last updated” date and, for material changes, notify you.
12. Contact
OctoAIverse — [email protected]