Privacy Policy
AlertOwl ("we," "us," or "our") operates the AlertOwl platform, an AI-powered email monitoring and alert service. This Privacy Policy explains how we collect, use, store, and protect your information when you use our service.
1. Information We Collect
1.1 Account Information
When you register for AlertOwl, we collect:
- Email address (used for login and system communications)
- Account name / business name
- WhatsApp phone number (for alert delivery)
- Timezone preference
1.2 Email Data (via OAuth Connection)
When you connect your Gmail or Outlook account, we access:
- Email metadata: sender address, recipient address, subject line, timestamps
- Email body content: message text used for AI classification (not stored long-term — see Section 4)
- Attachments: we do not download, process, or store email attachments
We access your email via industry-standard OAuth 2.0 tokens. We never see or store your email password.
1.3 Payment Information
Payment processing is handled entirely by Stripe. We do not store credit card numbers, CVVs, or bank account details on our servers. We store only your Stripe customer ID and subscription status.
1.4 Usage Data
We collect aggregate platform usage data such as the number of messages processed, alert delivery rates, and classification accuracy metrics. This data is used to improve the service and is not shared externally.
2. How We Use Your Information
We use your information exclusively to:
- Classify messages: AI analysis of email content to determine category (Urgent, Complaint, Payment, Legal, VIP) and priority level
- Deliver alerts: Send WhatsApp notifications and daily digest emails to you
- Maintain your account: Authentication, subscription management, customer support
- Improve classification accuracy: Aggregate, anonymized analysis of classification patterns (never individual message content)
- Communicate with you: Service updates, security notices, billing information
3. Third-Party Services
We use the following third-party services to operate AlertOwl:
| Service | Purpose | Data Shared |
|---|---|---|
| Anthropic (Claude API) | AI message classification | Message content (processed in real-time, not stored by Anthropic per their data policy) |
| Twilio | WhatsApp alert delivery | Your WhatsApp number, alert message text |
| Stripe | Payment processing | Email, payment method details (handled by Stripe) |
| Supabase | Database hosting | All application data (encrypted at rest and in transit) |
| Resend | Transactional emails | Email address, email content for system notifications |
| Sentry | Error monitoring | Technical error data only (no message content) |
Each third-party provider is bound by their own privacy policy and data processing agreements.
4. Data Retention
4.1 Two-Tier Retention Model
AlertOwl applies a two-tier data lifecycle to your email messages:
| Stage | Default | What Happens |
|---|---|---|
| Tier 1: Content Masking | 7 days | Email body content is irreversibly replaced with a masked placeholder. Metadata (sender, subject, classification, timestamps) is preserved. |
| Tier 2: Permanent Deletion | 30 days | The entire message record — including metadata — is permanently deleted from our database. |
4.2 What Is Preserved After Masking
After content masking (Tier 1), the following metadata is retained until deletion (Tier 2) for reporting and audit purposes:
- Sender email address
- Email subject line
- AI classification result (category, priority, confidence)
- Alert delivery status and timestamps
- Message source (Gmail/Outlook) and received timestamp
The email body text itself is permanently and irreversibly replaced and cannot be recovered.
4.3 Account Data
Account information is retained for the duration of your subscription. If you cancel your subscription, your account data is retained for 90 days (to allow reactivation), after which it is permanently deleted upon request.
4.4 OAuth Tokens
Gmail and Outlook OAuth tokens are stored encrypted in our database and are revoked and deleted when you disconnect your email account or cancel your subscription.
4.5 Backups
Automated database backups are retained for 7 days and are encrypted. Backups older than 7 days are permanently deleted.
5. Data Security
We implement the following security measures:
- Encryption in transit: All data transmitted between your browser, our servers, and third-party APIs uses TLS 1.2+ encryption (HTTPS)
- Encryption at rest: Database storage is encrypted using Supabase's managed encryption (AES-256)
- Access control: Row-Level Security (RLS) policies ensure each customer can only access their own data
- OAuth 2.0: We use token-based authentication for email access — we never see your email password
- Secret management: API keys and tokens are stored in encrypted environment variables, never in source code
- Monitoring: Automated error tracking and system health monitoring with real-time alerts
6. Your Rights
Depending on your jurisdiction, you have the following rights regarding your personal data:
6.1 For All Users
- Access: Request a copy of the personal data we hold about you
- Correction: Request correction of inaccurate data
- Deletion: Request deletion of your data (subject to legal retention requirements)
- Disconnect: Revoke email access at any time from your dashboard or directly from your Google/Microsoft account
- Export: Request an export of your data in a machine-readable format
- Retention control: Adjust your message content retention period
6.2 For EU/EEA Residents (GDPR)
In addition to the above rights, EU/EEA residents have the right to:
- Object to processing based on legitimate interest
- Restrict processing under certain conditions
- Data portability
- Lodge a complaint with a supervisory authority
Our legal basis for processing is: (a) contractual necessity (providing the service you subscribed to), (b) legitimate interest (improving service quality), and (c) consent (where applicable, such as marketing communications).
6.3 For California Residents (CCPA)
California residents have the right to know what personal information is collected, request deletion, and opt out of the sale of personal information. We do not sell personal information.
6.4 For UAE Residents
We comply with the UAE Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data. Your data is processed within the scope of our service agreement and you retain all rights granted under applicable UAE data protection law.
7. Data Breach Notification
In the event of a data breach that affects your personal data, we will notify you via email within 72 hours of becoming aware of the breach, consistent with GDPR requirements and industry best practices.
8. International Data Transfers
Your data may be processed in data centers located in the United States and European Union (via our infrastructure providers). We ensure appropriate safeguards are in place for international transfers in compliance with applicable data protection laws.
9. Children's Privacy
AlertOwl is a business service and is not directed at individuals under the age of 18. We do not knowingly collect personal data from minors.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email at least 14 days before they take effect. Continued use of the service after changes take effect constitutes acceptance of the updated policy.
11. Contact Us
For privacy-related inquiries, data access requests, or concerns:
- Email: innova8any@gmail.com
- Response time: We aim to respond to all privacy requests within 30 days
Terms of Service
These Terms of Service ("Terms") govern your use of the AlertOwl platform and services ("Service") operated by AlertOwl ("we," "us," or "our"). By creating an account or using the Service, you agree to these Terms.
1. Service Description
AlertOwl is an AI-powered email monitoring and alert platform that:
- Connects to your email accounts (Gmail, Outlook) via secure OAuth
- Classifies incoming messages using artificial intelligence
- Delivers priority alerts via WhatsApp and email digests
- Provides daily business briefs summarizing important communications
The Service consists of modular AI agents that may be subscribed to individually or as bundled packages.
2. Account Registration
2.1 Eligibility
You must be at least 18 years old and have the legal authority to bind yourself (or your organization) to these Terms. The Service is designed for business use.
2.2 Account Security
You are responsible for maintaining the confidentiality of your account credentials and for all activity that occurs under your account. You must notify us immediately at innova8any@gmail.com if you become aware of any unauthorized access.
2.3 Accurate Information
You agree to provide accurate, current, and complete registration information and to update it as necessary.
3. Subscriptions & Billing
3.1 Free Trial
New customers may receive a free trial period. Trial duration and terms are displayed at the time of registration. We reserve the right to modify or discontinue trial offers at any time. One trial per customer (determined by email address normalization).
3.2 Subscription Plans
AlertOwl offers the following subscription options:
- Individual modules: Subscribe to specific AI agents at their listed monthly price
- Bundle packages: Discounted packages combining multiple modules (e.g., Founder Peace Pack, Reputation & Control Pack)
Current pricing is displayed on our pricing page. Prices are in USD and exclude applicable taxes.
3.3 Billing
Subscriptions are billed monthly in advance via Stripe. By subscribing, you authorize us to charge your payment method on a recurring monthly basis. You can manage your subscription and payment methods through the Stripe Customer Portal accessible from your dashboard.
3.4 Cancellation
You may cancel your subscription at any time from your dashboard or the Stripe Customer Portal. Cancellation takes effect at the end of your current billing period. No refunds are issued for partial months. Your access continues until the end of the paid period.
3.5 Price Changes
We may change subscription prices with at least 30 days' notice. Price changes apply at the start of your next billing cycle after the notice period. Continued use constitutes acceptance of the new pricing.
4. Acceptable Use
You agree to use AlertOwl only for lawful business purposes. You shall not:
- Use the Service to monitor email accounts without the account holder's explicit consent
- Attempt to access another customer's data or accounts
- Use the Service for spam, phishing, or any illegal activity
- Reverse-engineer, decompile, or attempt to extract source code from the Service
- Overload the Service with excessive API requests or automated abuse
- Resell or redistribute the Service without written authorization
- Use the Service to process data that violates any applicable law or regulation
Violation of these terms may result in immediate suspension or termination of your account.
5. Email Access & OAuth Permissions
5.1 Scope of Access
When you connect an email account, you grant AlertOwl read-only access to your inbox messages. We use this access exclusively to classify messages and deliver alerts as described in our Privacy Policy.
5.2 Revoking Access
You may disconnect your email account at any time from your AlertOwl dashboard or directly from your Google/Microsoft account settings. Revoking access immediately stops email processing for that account.
5.3 Your Responsibility
You represent that you have the authority to grant AlertOwl access to the email accounts you connect. If you connect a shared or organizational mailbox, you confirm you have appropriate authorization from the account owner or organization.
6. AI Classification Disclaimer
AlertOwl uses artificial intelligence to classify messages. While we strive for high accuracy, you acknowledge that:
- AI classification may occasionally produce incorrect results (false positives or false negatives)
- The Service should supplement, not replace, your existing communication review processes
- We are not liable for business decisions made based solely on AI classifications
- Classification quality may vary based on message language, format, and context
7. Service Availability
7.1 Uptime
We aim for 99.5% uptime during business hours (Sunday–Thursday, 8:00–18:00 in your configured timezone). This is a target, not a guarantee. We do not offer formal Service Level Agreements (SLAs) at this time.
7.2 Scheduled Maintenance
We may perform scheduled maintenance with at least 24 hours' notice. Maintenance windows will be communicated via email and, where possible, scheduled during off-peak hours.
7.3 Third-Party Dependencies
The Service depends on third-party providers (Twilio, Google, Microsoft, Anthropic). Outages at these providers may affect Service availability. We are not liable for third-party service disruptions.
8. Intellectual Property
8.1 Our Property
The AlertOwl platform, including its software, workflows, AI models, branding, and documentation, is our intellectual property. You are granted a limited, non-exclusive, non-transferable license to use the Service for the duration of your subscription.
8.2 Your Data
You retain all ownership rights to your email data and content. We claim no ownership over your messages, classifications, or business data. Our license to process your data is limited to providing the Service as described.
9. Limitation of Liability
To the maximum extent permitted by law:
- AlertOwl is provided "as is" and "as available" without warranties of any kind, whether express or implied
- We disclaim all warranties including merchantability, fitness for a particular purpose, and non-infringement
- Our total liability to you for any claims arising from or related to the Service shall not exceed the amount you paid to us in the 3 months preceding the claim
- We are not liable for indirect, incidental, special, consequential, or punitive damages, including lost profits, lost data, or business interruption
10. Indemnification
You agree to indemnify and hold harmless AlertOwl and its affiliates from any claims, losses, or damages (including legal fees) arising from your use of the Service, your violation of these Terms, or your violation of any third-party rights.
11. Termination
11.1 By You
You may terminate your account at any time by cancelling your subscription and contacting us at innova8any@gmail.com.
11.2 By Us
We may suspend or terminate your account if you violate these Terms, engage in fraudulent activity, or if we are required to do so by law. We will provide notice where possible.
11.3 Effect of Termination
Upon termination, your access to the Service ceases immediately. Your data is retained for 90 days (as described in our Privacy Policy) and then permanently deleted unless you request earlier deletion.
12. Governing Law & Disputes
These Terms are governed by the laws of the United Arab Emirates. Any disputes shall be resolved through good-faith negotiation first. If negotiation fails, disputes shall be resolved through arbitration in Dubai, UAE, in accordance with the rules of the Dubai International Arbitration Centre (DIAC).
13. Changes to These Terms
We may update these Terms from time to time. Material changes will be communicated via email at least 30 days before they take effect. Continued use of the Service after changes take effect constitutes acceptance of the updated Terms.
14. Severability
If any provision of these Terms is found to be unenforceable, the remaining provisions continue in full force and effect.
15. Contact Us
For questions about these Terms:
- Email: innova8any@gmail.com