Privacy Policy
This policy explains what LinqDesk collects, how it is used, and how it is protected. LinqDesk is operated by the LinqDesk team ("we", "us"). If you have questions, contact us at the address at the end of this page.
What we collect
- Account data. Your name, email address and a hashed password. Passwords are hashed with bcrypt and are never stored or readable in plain text.
- Workspace data you enter. Client names, business details, prospect websites, contact names and email addresses, campaign notes, budgets, costs and link URLs.
- Mailbox credentials. For Gmail, an OAuth refresh token issued by Google. For other providers, the SMTP and IMAP host, port, username and password you supply. Both are encrypted at rest with AES-256-GCM.
- Email metadata. Message and thread identifiers, subjects sent, send timestamps, and whether a reply or bounce was detected.
How Google user data is used
When you connect a Gmail or Google Workspace mailbox, LinqDesk requests two scopes:
- gmail.send to send the outreach emails you have configured, from your own mailbox.
- gmail.modify to read replies in the threads LinqDesk itself started, so a prospect who answers is removed from the follow-up sequence.
LinqDesk reads only messages belonging to threads it created. It does not read, index, store or analyse the rest of your mailbox. Message bodies are not retained after a reply is detected; only the status change and thread identifier are stored.
LinqDesk's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Google user data is never sold, never used for advertising, never used to train machine learning models, and never transferred to third parties except as required to provide the service or to comply with law.
Third parties we use
- Anthropic to generate outreach email drafts and article drafts from the client and prospect details you have entered. Content sent for generation is not used to train models.
- DataForSEO to look up public SEO metrics for prospect domains.
- Hunter to look up publicly listed contact email addresses for prospect domains, when you use the email finder.
- Dodo Payments to process subscriptions. We never see or store card numbers.
Your mailbox contents are never sent to any of these providers.
How long we keep data
Workspace data is kept while your account is active. Disconnecting a mailbox deletes its stored credentials immediately and revokes the token where the provider supports it. If you delete your account, all workspace data is removed within 30 days.
Your rights
You can export or delete your data at any time from inside the application, or by contacting us. You can revoke LinqDesk's access to your Google account at any time at myaccount.google.com/permissions.
Security
Credentials are encrypted at rest. All traffic runs over HTTPS. Sessions use signed, HTTP-only cookies. Access to production data is limited to the operators of the service.
Children
LinqDesk is a business tool and is not directed at anyone under 16.
Changes
If this policy changes materially, we will notify account holders by email before the change takes effect.
Contact
Questions about this policy or your data: privacy@linqdesk.com