Privacy Policy
Last updated: June 23, 2026
Vocalist Support ("the app", "we", "us") is an internal tool used by our support team to manage customer support email. It is available by invitation only and is not offered to the general public. This policy explains what data the app accesses, how it is used, and how it is protected.
1. Information we access
The app accesses data from two sources:
- Support mailbox (Google / Gmail). With explicit authorization, the app connects to a single dedicated support mailbox to read incoming support messages and send replies. This includes the sender address, subject, message body, and metadata of emails sent to that support address.
- Operator sign-in. Team members sign in with Google. During sign-in we receive basic profile information (name, email address) to confirm the operator is on our authorized allowlist. We do not retain a Google access or refresh token for operators.
2. How we use the information
- To group incoming support email into tickets and route them by topic.
- To help an operator draft, review, and send timely replies to customers.
- To authenticate authorized operators and secure access to the tool.
We do not use support mailbox content for advertising, and we do not sell it. Message content may be processed by a third-party AI model provider (see Section 4) strictly to classify messages and generate draft replies.
3. Limited Use disclosure (Google API data)
The app's use of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically, data obtained through Gmail APIs is used only to provide and improve the support-inbox features described in this policy, is not transferred to others except as necessary to provide those features (or for security, legal, or compliance reasons), is not used for advertising, and is not read by humans except as required for support operations, with the operator's authorization, or as required by law.
4. Sharing and service providers
We do not share support data except with the infrastructure providers needed to run the app:
- Google — provides the Gmail mailbox and sign-in we connect to.
- Cloudflare — hosts the app and its database, where tickets and messages are stored.
- OpenRouter / its model providers — receive message text to classify it and generate draft replies. Content is sent only for that purpose.
We may also disclose information if required by law or to protect the safety, rights, or property of our users or the public.
5. Data retention and deletion
Support tickets, messages, and drafts are retained only as long as needed to operate support and maintain reasonable history. You may request deletion of data associated with your support emails by contacting us at the address below, and we will remove it within a reasonable period unless retention is required by law.
6. Security
Access to the app is restricted to an explicit operator allowlist and protected by Google sign-in. Credentials and API keys are stored as encrypted secrets. Data is transmitted over encrypted (HTTPS) connections.
7. Children's privacy
The app is an internal business tool and is not directed to children. We do not knowingly collect personal information from children.
8. Changes to this policy
We may update this policy from time to time. Material changes will be reflected by updating the "Last updated" date at the top of this page.
9. Contact
Questions about this policy or your data? Contact us at lamarde.support@gmail.com.