legal

Privacy Policy

Last updated: May 21, 2026

Who we are

Salience Solutions (“Salience,” “we,” “us”) operates salience.solutions and the limited-access cockpit tools at /friends/{slug}. Questions: sales@salience.solutions.

What this policy covers

This policy covers data we process when you use any part of the Salience site, including the AI email cockpit at /friends/{slug} (the “Cockpit”), which accesses Gmail data on your behalf via Google OAuth.

Gmail data — what we access, why, and what we never do

The Cockpit requests the Google OAuth scope https://www.googleapis.com/auth/gmail.readonly. This scope lets us read the metadata and bodies of your recent email threads.

We access:

  • Up to ~100 of your most recent inbox threads (subject, participants, message bodies, timestamps).
  • Your connected Google account email address, so we can label the cockpit and show who’s signed in.

We use that data only to:

  • Summarize each thread and identify what needs a reply.
  • Draft reply suggestions in your voice, shown only to you.
  • Surface relationship context (who someone is, what the thread is about).
  • Store those summaries, drafts, and interpretations in our database so the Cockpit persists across sessions.

We will never:

  • Send email on your behalf. Drafts go only to your own Gmail Drafts folder if you explicitly click “Put in Gmail Drafts.”
  • Share, sell, or transfer your Gmail data to third parties.
  • Use your Gmail data to train AI/ML models for anyone other than you.
  • Read emails for advertising purposes.
  • Let humans at Salience read your emails, except (a) with your explicit permission for a specific support issue you raise, or (b) as required by law.

Our use of information received from Google APIs adheres to Google’s API Services User Data Policy, including the Limited Use requirements.

Third-party processors

We share the minimum data necessary with these processors to run the Cockpit:

  • OpenAI— email thread contents are sent to OpenAI’s Chat Completions API to generate summaries and reply drafts. OpenAI’s API-tier terms state that API data is not used to train their models.
  • Supabase — stores your Cockpit data (threads, summaries, drafts, OAuth tokens) in an encrypted Postgres database.
  • Railway — hosts the Salience site and handles request routing.

Tokens and retention

  • Google OAuth access and refresh tokens are stored server-side and used only to re-fetch your mail on your behalf.
  • You can disconnect Salience at any time from your Google Account’s third-party app permissions page. Revoking there immediately prevents us from fetching new data.
  • To delete your stored Cockpit data (threads, summaries, drafts), email sales@salience.solutionsfrom the address you signed in with. We’ll confirm and delete within 7 days.
  • We retain Cockpit data until you ask us to delete it or the Cockpit link is retired.

Cookies and analytics

The public site uses PostHog, a product analytics service, to understand how visitors use the site. We collect pageview counts and custom interaction events (button clicks, form submissions, completions of automated form-fill jobs); these custom events carry only metadata about the action — never the contents of a document, message, or form field — and where we link related events together we use a salted hash of an identifier rather than the identifier itself. We also capture page-performance metrics and JavaScript errors to keep the site healthy. Separately, we record session replays— video-like recordings of a visit, including the pages where you use our interactive tools (such as the PDF form-fill workspace and the live demos). On those tools the replay may capture what you type and the contents of the forms or documents you work with, so we can see exactly how the tools behave and fix problems; do not enter information into them that you would not want recorded. When you give us your email address in a form on the site (for example, to have a demo document emailed to you), we associate that email — and your name and company if you provide them — with your analytics profile, which links your past and future visits and session recordings to you as a known individual. If you arrive through a partner link, we record the partner code so we know who referred you. The /friends Cockpit uses first-party cookies only for your Supabase authentication session. We do not use ad tracking or sell data to advertisers.

Security

All traffic runs over HTTPS. Database rows are accessed only by server-side code using a service-role credential held in our hosting provider’s environment variables. OAuth tokens are never sent to the browser after the initial callback.

Your rights

You can request access to, correction of, or deletion of any data we hold about you by emailing sales@salience.solutions. If you’re in the EU/UK, you have additional rights under GDPR including the right to lodge a complaint with your supervisory authority.

Changes to this policy

If we change this policy in a material way, we’ll update the date at the top and, for existing Cockpit users, notify you at the email address connected to your Google account before the change takes effect.

Contact

Aqeel Ali · Salience Solutions · sales@salience.solutions