OAuth access and refresh tokens are encrypted at rest. Synced Gmail data is stored in our database scoped to the individual user and to their organization's tenant, and is visible only to people authorized within that organization. We use Google user data solely to provide the email features described above. We do not sell Google user data, use it for advertising, or use it to build profiles for purposes unrelated to the CRM features the user connected the account for.
If a user chooses to use Bonalta's optional AI writing assistant, the subject and plain-text body of recent messages exchanged with the contact being written to, which may include messages synced from Gmail, are sent to our AI subprocessors (currently OpenAI and Anthropic) so the assistant can draft or improve that specific message. This happens only when the user actively invokes the assistant, and the data is used only to produce that response. Google user data is never used to develop, improve, or train generalized artificial intelligence or machine learning models, whether ours or a third party's, and our AI subprocessors are contractually bound not to train on it.
Bonalta's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
A user can disconnect their Google account at any time from Settings → Email accounts in Bonalta, or revoke Bonalta's access directly from their Google Account at https://myaccount.google.com/connections. On disconnection we stop all Gmail API access and delete the stored tokens; synced message data is deleted on request to privacy@bonalta.com and on account deletion.