Privacy Policy
This page describes how Repliqo handles information when you use the product. It is meant to be read together with our Terms of Service.
What Repliqo is
Repliqo is a team inbox product offered at repliqo.app and related domains. If you have questions about this policy, contact us through the support or account channels available in the product.
Information we process
Depending on how you use Repliqo, we process categories such as:
- Account and profile: name, email address, password hash (if you use email sign-in), avatar image, session and authentication records.
- Workspace and collaboration: workspace name and settings, membership, roles, invitations, audit-style activity needed to operate the product.
- Connected email: when you connect Gmail or Google Workspace, we use Google OAuth and the Gmail API to sync mailboxes you authorize. That includes message metadata and content (subjects, bodies, recipients, headers), attachments, labels or mailbox placement signals, and send/receive/draft operations needed for the inbox.
- Email activity tracking: if enabled for sent email, Repliqo may add first-party tracking links or images to record opens, clicks, timestamps, recipient address, broad client family, and coarse country or region. We do not store raw IP addresses or raw user agent strings for this feature.
- Custom domains and delivery: when you connect a domain for sending or receiving through our email provider, we process domain names and DNS-related records needed to verify and operate mail for that domain.
- Billing: if you subscribe, our payment provider processes checkout, subscription, invoice, and customer identifiers needed for billing and entitlement.
- Support and security: messages you send us, logs, and technical data used to secure accounts and debug issues.
How we use information
We use the information above to:
- Provide, operate, and improve the service (sync, search, assignment, notifications, attachments, and collaboration features).
- Authenticate you, protect accounts, prevent abuse, and comply with law where required.
- Offer optional AI-assisted features (for example thread summaries and draft replies). When enabled, relevant message context and your instructions may be sent to our AI routing provider and the underlying model providers they use to generate output.
- Show sender-facing email activity such as opens and clicks when tracking is enabled.
- Process subscriptions and manage plan access.
- Send transactional email such as verification and password reset messages.
Google user data
When you connect Gmail or Google Workspace, Repliqo uses Google user data only to provide and improve the user-facing inbox features you choose to use, such as mailbox sync, search, labels, drafting, sending, replies, assignments, notifications, and optional AI-assisted summaries or draft suggestions.
We do not sell Google user data, use it for advertising, use it to determine creditworthiness, or transfer it except as needed to provide the Service with your consent, for security, to comply with law, or as otherwise permitted by the Google API Services User Data Policy, including its Limited Use requirements. The use of raw or derived user data received from Workspace APIs will adhere to the Google User Data Policy, including the Limited Use requirements.
Google user data (whether raw, aggregated, or derived) is never used to create, train, or improve generalized or foundational AI or machine-learning models, neither by us nor by the providers our optional AI features route to. AI requests are restricted to model endpoints that do not retain prompts and do not train on them.
Service providers (subprocessors)
We use third-party services that process data on our behalf or as part of providing the product. These include:
- Cloudflare: application hosting, edge networking, Workers, KV cache, R2 object storage, Durable Objects for realtime features, and scheduled tasks.
- PostgreSQL: primary application database, connected via Cloudflare Hyperdrive in production environments where configured.
- Better Auth: authentication framework; sessions are stored in our database with cookies issued according to our configuration.
- Google: sign-in with Google and Gmail / Google Workspace mailbox access via OAuth and the Gmail API (including the mailbox permission scope we request during connect).
- Resend: outbound transactional email, inbound and outbound email delivery for custom domains, domain provisioning, and email webhooks.
- Svix: used to verify authenticity of certain webhook payloads (for example from Resend).
- Polar: checkout, customer portal, subscriptions, and billing webhooks.
- OpenRouter: routes requests to large language models for optional AI features; model identifiers in our configuration may include providers such as Google and Anthropic depending on the model selected. Requests are configured to route only to endpoints that do not retain or train on prompts.
Those providers have their own privacy notices, which also describe how they handle data in their systems.
Retention
We keep information for as long as your account or workspace needs it to provide the service, as required by law, or as needed for legitimate business purposes such as security and dispute resolution. An owner can schedule a workspace for deletion, and a user can schedule their account for deletion after resolving every workspace they own. Access, syncing, scheduled sends, and normal processing stop immediately. The owner or account holder may restore the subject for seven days, until permanent deletion processing begins.
Permanent deletion removes live application data and stored objects, revokes supported provider access, and cancels subscriptions. Content a deleted account shared inside a surviving workspace remains available to that workspace with the author shown as “Deleted user”; personal-only content is removed. Invoices, payment records, anti-fraud records, security evidence, or other records may be kept where tax, legal, dispute, or safety obligations require it.
Encrypted backups and point-in-time recovery copies follow our infrastructure provider’s configured retention period and may outlast the seven-day live-data window. They are isolated from normal product access. If a backup is restored, deletion tombstones must be reapplied before the recovered system serves traffic.
Security
We use administrative and technical measures designed to protect information, including encryption for secrets such as mailbox tokens at rest. No method of transmission or storage is completely secure.
Your choices
You can:
- Disconnect Gmail or domain integrations from workspace settings where supported.
- Workspace owners can schedule and restore workspace deletion in General Settings during the seven-day recovery window.
- Delete your account from profile settings or the authenticated /account/delete page. Account deletion requires an emailed confirmation link and explicit transfer or deletion of every workspace you own.
- Adjust browser storage by clearing site data (this may sign you out or reset preferences).
For privacy questions or an erasure request that cannot be completed in the product, email hello@repliqo.app. We may need to verify your identity and may explain any legal exception that applies.
International processing
We and our providers may process data in the United States and other countries where they operate facilities. Those countries may have different data protection rules than where you live.
Children
Repliqo is not directed at children. We do not knowingly collect personal information from children.
Changes
We may update this page to reflect product or legal requirements. When we do, we will revise it here; material changes may also be surfaced in-product or by email where appropriate.