Last updated: 18 April 2026
Prospectr (“we”, “us”, “our”) operates the platform at prospectr.app. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our service.
By using Prospectr, you agree to the collection and use of information as described in this policy. If you do not agree, please do not use our service.
When you create an account, we collect your name, email address, and password. Authentication is handled securely through Supabase Auth.
You may optionally provide additional profile information including your company name, website URL, phone number, and avatar image.
We collect information about how you use the service, including searches performed, audits run, emails sent through the platform, and features used. This helps us improve the product and provide usage-based analytics within your account.
Payments are processed by Stripe. We do not store your credit card number or full payment details on our servers. Stripe handles all payment processing in accordance with their own privacy policy and PCI-DSS compliance requirements.
If you choose to connect your Gmail account, we collect and store the following:
Prospectr's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
We request two Gmail OAuth scopes:
gmail.send -- to send emails that you explicitly compose and initiate through the Prospectr interface.gmail.readonly -- to read replies to emails you sent through Prospectr, so you can view and respond to conversations within the app.We only read message threads that originated from emails sent via Prospectr. We do not scan, index, or access any other emails in your inbox.
When you connect Gmail with reply tracking enabled, Prospectr periodically checks for replies to emails you sent through our platform. We store:
Reply data is retained for 90 days from the date received, then automatically and permanently deleted. We do not store full email bodies, attachments, or any data from emails you did not send through Prospectr.
Gmail OAuth tokens are encrypted using AES-256-GCM before being stored in our database. Tokens are only decrypted at the moment an email send or inbox read request is processed, and are never logged or exposed in plaintext.
You can disconnect your Gmail account at any time from the Settings page within Prospectr. When you disconnect:
You may also revoke access directly from your Google Account permissions page.
We use the information we collect to:
We do not sell your personal data. We share data only with the following service providers, solely to operate the platform:
Each third-party provider processes data in accordance with their own privacy policy and applicable data protection laws.
We take reasonable technical and organisational measures to protect your data, including:
No method of electronic storage or transmission is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
You have the right to:
To exercise any of these rights, contact us at tombeenham@gmail.com. We will respond to data requests within 30 days.
Prospectr is not intended for use by anyone under the age of 18. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable laws. When we make material changes, we will notify you via email at the address associated with your account. The “Last updated” date at the top of this page indicates when the policy was most recently revised.
If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us: