Privacy Policy
[Company legal name not yet configured] · Last updated 2026-08-20
This policy describes SENDA's current private-beta product. It is not a claim of any formal privacy certification.
1. Information you provide
When you use SENDA, you may provide: account information (name, email, password or Google sign-in); Business Knowledge (a description of your business, offering, ideal customers, and sales process); leads and prospect information; campaign configuration; and manually entered contact information.
2. Information SENDA processes on your behalf
To operate Discovery and outreach features, SENDA processes publicly available business/prospect information (such as business listings and public web data) relevant to the campaigns you configure, runs this information through AI models to score fit and draft messages, and records usage/operational information (such as which features you use and system logs) to run and maintain the Service.
3. Service providers and integrations we use
SENDA is built on Supabase (database, authentication, and storage) and OpenAI (AI processing of Business Knowledge, prospect data, and message drafting). Depending on what a workspace configures, SENDA may also use Google/Gmail (email sending and sync), Google Places, Bright Data, Apollo, and Ticketmaster (prospect discovery and enrichment data sources). Each provider processes data only as needed to perform its function for SENDA.
4. Google / Gmail integration
If you connect a Gmail account, SENDA requests only the Gmail permissions needed to send outreach messages you have approved and to read replies in order to synchronize conversations that SENDA manages for you. SENDA does not scan or read your full inbox — sync is limited to the SENDA-managed conversation threads. You can disconnect Gmail at any time from Integrations, which stops further access. SENDA's use and transfer of information received from Google APIs to any other app adheres to the Google API Services User Data Policy, including the Limited Use requirements.
5. Gmail token security
Gmail OAuth tokens are stored encrypted at rest and are used only by SENDA's server-side integration code to send and sync email on your behalf. Tokens are never exposed to the browser or returned in any API response.
6. Purposes of processing
We process the information above to provide and operate SENDA's core features: learning your business, finding and scoring prospects, drafting and sending approved outreach, and helping you manage conversations and follow-ups.
7. Data sharing with service providers
We share data with the service providers listed above only as needed for them to perform their function for SENDA (for example, sending your prospect data to OpenAI to generate a recommendation, or to Google to send an approved email). We do not sell your data.
8. Retention
We retain account, workspace, and conversation data for as long as your account is active, or as needed to provide the Service. You may request deletion as described below.
9. Security
Data is isolated per workspace at the database level (row-level security), and sensitive credentials such as Gmail tokens are encrypted at rest. No method of storage or transmission is fully secure, and we cannot guarantee absolute security.
10. Your choices
You can review and edit your Business Knowledge, leads, and campaign data from within the app, and you can disconnect the Gmail integration at any time from Integrations.
11. Deletion and access requests
To request access to, correction of, or deletion of your data, contact [support email not yet configured].
12. International processing
Our service providers (including Supabase, OpenAI, and Google) may process and store data in countries other than your own. By using SENDA, you acknowledge this cross-border processing as part of how the Service operates.
13. Certifications
SENDA does not currently claim SOC 2, GDPR certification, HIPAA compliance, ISO certification, or any similar formal certification. We will update this policy if that changes.
14. Changes to this policy
We may update this Privacy Policy as the product evolves. Material changes will be reflected by updating the "Last updated" date below.
15. Governing law and contact
This policy is governed by the laws of [jurisdiction not yet configured]. For privacy questions, contact [support email not yet configured].