Privacy Policy

Last updated: 29 May 2026

1. Overview

Autonodal is a signal intelligence platform that builds proximity graphs from your professional network and surfaces market feeds so you can act on what matters. This policy explains how we collect, process, and protect your data.

2. Data We Collect

When you use Autonodal, we collect the following categories of information:

3. Gmail Data — Metadata Only

When you connect your Gmail account, Autonodal extracts proximity signals from message metadata. The OAuth scope we request (gmail.metadata) physically disallows the platform from reading message body content. Specifically, we read and store:

We NEVER read, store, or process the message content of any Gmail message. We NEVER download or store attachments. We extract only the metadata fields listed above.

4. Google Contacts Data

When you connect Google Contacts, we access:

Contacts are stored only within your own private Autonodal sandbox and are never shared with other Autonodal users or tenants.

5. Google Calendar Data

When you connect Google Calendar, we access:

We NEVER store event descriptions, attached documents, or meeting notes from Google Calendar. Only the metadata above is read.

6. The Proximity-Only Model

Autonodal operates on a proximity-only extraction model for Gmail and Calendar. We read structured metadata to build mathematical relationship scores. The output is a set of proximity_scores that represent the strength and recency of your professional connections — not the substance of your communications.

7. Huddle Collaboration

When you join a Huddle (collaborative workspace), the following applies:

8. Data Sharing and Processors

We do not sell your data. We do not use your data for advertising. We do not share your data with third parties for their marketing purposes.

We NEVER sell your data. We NEVER use it for advertising. Your data is yours.

We use the following infrastructure providers to operate the platform, each under a binding data processing agreement. This list is aligned with our published Data Processing Agreement Section 6 (Sub-processors).

9. How Autonodal Accesses, Uses, Stores, and Shares Google User Data

This section documents, in accordance with the Google API Services User Data Policy and the Limited Use requirements for Workspace APIs, how Autonodal interacts with data obtained from Google services.

Scopes Requested and Purpose of Access

Autonodal requests the following Google OAuth scopes, and each is used only for the purpose described:

Autonodal requests the minimum scope necessary for each described purpose and does not use any scope for a purpose other than the one stated above.

How Google User Data Is Used

Google user data is used exclusively to provide the user-facing features of the Autonodal platform that the user has explicitly enabled. Specifically:

Google user data is not used for:

How Google User Data Is Stored

Google user data is stored in Autonodal's infrastructure on Railway (United States, primary application database) and, for derived proximity scores only, on Qdrant Cloud (European Union, GCP Frankfurt). OAuth access and refresh tokens are additionally encrypted at the application layer using AES-256-GCM before being written to the database. Access to each user's Google-derived data is scoped to that user's tenant sandbox and enforced by PostgreSQL row-level security policies; no other Autonodal user can access another user's Google-derived data.

Raw email message bodies are never stored, processed, or transmitted. Only the metadata and proximity metrics described above are retained.

How Google User Data Is Shared

Autonodal does not sell, transfer, or share Google user data with third parties except as strictly necessary to provide the Autonodal service to the user, and only with the following processors under binding data processing agreements:

Google user data is never shared with, or sold to, advertisers, data brokers, or AI model training programmes. Email subject lines and meeting titles are transmitted to OpenAI solely for the purpose of generating vector embeddings as described above. Message content, attachments, event descriptions, attached documents, and meeting notes are never transmitted to OpenAI or any other third-party AI or machine-learning service.

AI/ML Model Training Disclosure

Autonodal does not use Google user data to develop, improve, or train generalised AI or machine-learning models. No Google user data is used to train, fine-tune, or improve any AI or machine-learning model, internal or external, under any circumstances. The use of OpenAI to generate embeddings of email subject lines and meeting titles (disclosed above) is a stateless API call under OpenAI's no-training, no-retention API Data Usage Policy.

When Autonodal uses large language models for in-product features (such as dossier generation or chat assistance), those features operate only on non-Google data (such as public market signals and platform-generated content), and any such use is confined to serving the individual user's in-product requests within their own sandbox.

Data Retention and Deletion

Google user data is retained only for as long as the user maintains an active Autonodal account and has not disconnected the relevant Google integration. Users may:

Limited Use Compliance

Autonodal's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically, Autonodal:

10. LinkedIn Sign-In

When you sign in to Autonodal with LinkedIn, we request the following OpenID Connect scopes from LinkedIn:

LinkedIn sign-in provides identity only. The data accessed via these scopes is limited to your public profile and verified email. Autonodal does not access your LinkedIn connections, messages, activity, or content through this sign-in method.

To import your LinkedIn professional network into Autonodal you have two paths, both requiring explicit additional consent beyond sign-in:

When you authorise the DMA Portability path, Autonodal requests the r_dma_portability_3rd_party scope. The version of this integration available at the date of this Policy fetches the following data (the “v1 scope”):

The v1 scope does not include your LinkedIn direct messages (DMs). DM ingestion (metadata-only, for relationship-warmth scoring consistent with the metadata-only Gmail processing described in Section 3) is a planned future capability and, when added, will require a separate explicit consent step and a Policy update.

Autonodal does not fetch your LinkedIn search history, your connections’ private profile details beyond what you can see in LinkedIn, or LinkedIn Recruiter / Talent Solutions data.

LinkedIn-sourced data and third-party AI providers. LinkedIn data obtained via the DMA Portability path is held within your tenant sandbox for use by the platform’s in-tenant features only. Autonodal does not transmit LinkedIn-sourced data to OpenAI, Anthropic, Google’s generative AI products, or any other third-party AI or machine-learning provider for embedding generation, model training, or inference. Topic-interest and proximity analysis on LinkedIn-derived content is performed within the tenant’s own data plane.

All DMA-Portability-sourced data is stored within your tenant-scoped database with Row-Level Security enforced; OAuth tokens are encrypted at rest with AES-256-GCM. Application data is hosted by Railway (United States) under the EU Standard Contractual Clauses (Module 3) plus supplementary measures; vector representations used for in-tenant semantic search are hosted by Qdrant Cloud in Frankfurt, EU. See our Data Processing Agreement Sections 6–7 for the complete international-transfer disclosure. Per LinkedIn’s DMA terms, your consent expires after 12 months and you will be prompted to re-authorise. You can revoke consent at any time from Autonodal Settings → Integrations → Disconnect LinkedIn, or from LinkedIn directly. On revocation, all LinkedIn-sourced data is deleted from your tenant within 24 hours.

LinkedIn sign-in data (your LinkedIn identifier and the email address linked to it) is retained only while you maintain an active Autonodal account. To revoke LinkedIn access, visit linkedin.com/psettings/permitted-services.

11. Data Retention and Deletion

You may delete your account at any time from your account settings. Upon deletion:

You can also request deletion by emailing privacy@autonodal.com.

12. Contact

For any privacy-related questions or requests, including questions about this Google user data disclosure, contact:

privacy@autonodal.com

13. Recent Changes

This section records substantive changes to how the platform handles Google user data so users can see, in plain language, how the architectural posture has tightened over time.

29 May 2026 — Gmail scope narrowed to gmail.metadata

The platform’s Gmail OAuth scope was narrowed from gmail.readonly (which technically permits body access) to gmail.metadata (which physically disallows it). The platform has always been architecturally proximity-only for users — processing relationship metadata, never message bodies — but this change moves that constraint from a policy promise to a constraint enforced by Google’s OAuth layer itself.

Two paths that had previously fetched email body content for non-user-facing reasons were retired as part of this change:

If your existing Gmail connection was granted before 29 May 2026, you will be prompted to reapprove on next visit with a one-line notice (“We’ve narrowed what we ask for; please reapprove with the new metadata-only access”). Reapproval is a single click and returns you to where you were — no re-onboarding.

14. Last Updated

This policy was last updated on 29 May 2026.