Legal
Privacy Policy
Respons is an outreach-operations platform built around tenant isolation, human review, and controlled access to connected services.
Effective July 28, 2026
Information we collect
We process account details, workspace and campaign configuration, contact records imported by customers, outreach drafts and delivery events, reply classifications, audit records, and basic technical information needed to operate and secure Respons.
Google user data
A workspace manager may choose to connect a Gmail account. Respons then uses the authorized Gmail access to identify replies to outreach, display reply context, and create or replace Gmail reply drafts when an authorized user explicitly requests a draft. Respons does not automatically send Gmail reply drafts.
Respons stores the connected account address, authorization token, message identifiers, selected message metadata and reply snippets needed for synchronization and audit. Full message content is retrieved when required to match a forwarded reply or when an authorized user asks Respons to prepare a reply draft.
How we use information
- Provide lead review, campaign preparation, controlled sending, and reply workflows.
- Enforce tenant boundaries, permissions, suppression rules, limits, and audit controls.
- Generate an optional reply draft after an authorized user requests that feature.
- Maintain, troubleshoot, secure, and improve the service.
- Comply with legal obligations and protect users, Respons, and the public.
AI-assisted drafting
When a user requests an AI-assisted reply draft, the relevant message content and limited campaign context are sent to our configured AI processing provider solely to generate that draft. The result is created as a Gmail draft for human review. Respons does not use Google user data for advertising or to build advertising profiles.
Google API Limited Use
Respons's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Service providers and disclosure
We use contracted infrastructure, database, email-delivery, monitoring, and AI processing providers to operate Respons. They receive only the information needed to perform services for us. We do not sell Google user data or customer contact data. We may disclose information when required by law, to protect rights and safety, or in a business transaction subject to appropriate safeguards.
Retention, deletion, and your controls
We retain information only as long as needed to provide the service, meet contractual and legal obligations, resolve disputes, and maintain security and audit records. Workspace managers can disconnect Gmail access, and users can also revoke access from their Google Account permissions. To request access, correction, export, or deletion, contact us at the address below. We will verify the request and act as required by applicable law and our customer agreements.
Security
We apply access controls, tenant-scoped authorization, encrypted transport, restricted administrative access, provider-secret protection, and audit logging. No system is completely secure, but we work to prevent unauthorized access, alteration, disclosure, or destruction.
Changes and contact
We may update this policy as Respons changes. We will post the revised version here and update its effective date. Questions or privacy requests can be sent to tgl@respons.xyz.