Privacy Policy
Effective date: July 2026
Atlas Revenue ("Atlas Revenue", "we", "us") is a sales automation tool that helps you find prospects, write outreach emails, and manage follow-ups. This policy explains what data we collect, how we use it, and your rights.
1. Data We Collect
We collect the minimum data needed to run the product:
- Account information: your name, email address, and hashed password when you register.
- Sender profile: your company name, title, and email signature you configure in Settings.
- Prospect data: names, email addresses, companies, and notes you add manually or import.
- Email history: subjects, bodies, and timestamps of emails you send through the platform.
- Gmail OAuth token: an encrypted refresh token if you connect Gmail, used solely to send emails and scan for replies on your behalf. We never read, store, or analyze your entire inbox — only messages that appear to be replies to emails you sent through Atlas Revenue.
- Revenue Thesis: the business context you provide during onboarding, used to generate personalized outreach.
- Usage data: actions you take within the app (opportunity approvals, plan decisions) used to generate learning insights visible only to you.
2. How We Use Your Data
- To operate the platform — send emails, detect replies, schedule follow-ups.
- To generate AI-powered content (outreach emails, prospect research, account plans) using the Anthropic Claude API. Your data is sent to Anthropic solely to fulfill these requests; Anthropic's privacy policy applies to that processing.
- To surface learning insights — Atlas analyzes your own send/reply history to identify patterns. These insights are private to your account.
- We do not sell your data, share it with third parties for advertising, or use it to train AI models.
3. Gmail Access
If you connect Gmail, Atlas Revenue uses Google OAuth to obtain a refresh token with scopes limited to sending email and reading messages that are replies to emails you sent. We:
- Store your refresh token encrypted at rest.
- Only access Gmail on your explicit request (or on a schedule you configure for automated reply detection).
- Never read, index, or store emails unrelated to your Atlas Revenue outreach.
- Never share your Gmail credentials or token with any third party.
4. Data Storage and Security
Your data is stored in an SQLite database on a server you control (or on Railway, depending on your deployment). All sensitive credentials (Gmail tokens, CRM API keys) are encrypted before storage using AES-256-GCM. Passwords are stored as bcrypt hashes.
5. Data Retention
Your data persists as long as your account exists. You can delete your account at any time by contacting us. On deletion, all your data is permanently removed.
6. Third-Party Services
- Anthropic API: used to generate email content, research companies, and produce learning reports. Data submitted is subject to Anthropic's data handling policies.
- Hunter.io (optional): used to find contact email addresses. Your API key is stored encrypted; queries are sent on your request only.
- CRM integrations (optional): HubSpot, GoHighLevel, Pipedrive. Your API key is stored encrypted and used only to sync prospect data you explicitly initiate.
7. Your Rights
You may request access to, correction of, or deletion of your data at any time. Contact us at the email in your account settings or via GitHub issues.
8. Changes
We may update this policy. Material changes will be noted with an updated effective date.