Effective date: August 8, 2026 · Contact: privacy@storepilothq.com
This Privacy Policy explains how Zipf LLC ("Zipf," "we," "us"), operator of StorePilot (the "Service"), collects, uses, and protects information. By using the Service you agree to this Policy.
For information about you, our customer (account and billing data), we act as a data controller. For the store data we access on your behalf through your connected marketplace accounts, we act as a data processor, processing it only on your instructions under our Terms and Data Processing Agreement.
Connecting Google Drive or Gmail is optional. If you do, StorePilot requests read-only access and uses it only to operate the Service for you:
drive.readonly) — we read the documents in the folder you
nominate (Docs, Sheets, PDFs) so the agent can answer questions from your own operating documents, and so
an inventory spreadsheet you choose can be synced. We never create, modify or delete anything in your Drive.gmail.readonly) — we read recent messages from the mailbox you
connect, bounded to a recent time window, to produce your inbox digest and to prepare draft replies.gmail.send) — where you enable it, StorePilot prepares a
draft reply and sends it from your mailbox only after you have read that specific draft and
approved it. Nothing is ever sent automatically or in bulk, replies go back to the existing
conversation rather than to addresses we look up, and we do not modify, label or delete mail.Limited Use. StorePilot's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically: we do not use Google user data for advertising; we do not sell it; we do not use it to train generalized artificial intelligence or machine-learning models; and we do not allow humans to read it, except with your explicit consent for specific messages, where necessary for security purposes or to comply with applicable law, or where the data has been aggregated and anonymized.
Minimization. We request the narrowest access that supports the feature, and we fetch only a bounded, recent window rather than your whole account. For the inbox digest, only the sender, subject and a short snippet are sent to our AI sub-processor (Anthropic, under a data-processing agreement) — not full message bodies. Where StorePilot learns your reply style, it retains only a small non-identifying style profile; buyer text, identities and your exact replies are not retained.
Retention and deletion. In our hosted service, message content is processed in memory to produce the digest and is not stored at rest. You can disconnect Google Drive or Gmail at any time, which revokes our access and deletes the data we derived from it. See Data deletion for step-by-step instructions, including how to revoke access from your Google Account directly.
Where GDPR applies, we rely on: performance of a contract (to provide the Service), legitimate interests (to secure and improve it), consent (where required), and legal obligations.
We share data only with vetted sub-processors under data-processing agreements — including Anthropic (the Claude model that powers the agent), our cloud host, and our encrypted secrets provider. A current list is on our Security page. We may disclose information if required by law.
We retain account data for as long as your account is active and as needed for legal and operational purposes. Operational store data is retained only as needed to provide the Service; buyer PII is not retained at rest. When you disconnect a store or close your account, we revoke access and delete or anonymize associated data within a commercially reasonable period.
We encrypt data in transit and at rest, store credentials in an encrypted vault, apply least-privilege access, and gate every write behind your approval. See our Security page.
Depending on where you live, you may have rights to access, correct, delete, or port your personal data, to object to or restrict processing, and to withdraw consent. Under the CCPA/CPRA, California residents may request access and deletion and may opt out of "sale" or "sharing" of personal information — we do not sell or share personal information as those terms are defined. To exercise any right, email privacy@storepilothq.com. For data we process on a customer's behalf, we will refer requests to that customer (the controller) and assist them.
We operate in the United States. Where data is transferred internationally, we use appropriate safeguards such as Standard Contractual Clauses.
The Service is for businesses and is not directed to children under 16.
We may update this Policy; we will post the new effective date and, for material changes, notify you.
Zipf LLC, 344 Maple Ave W, PMB 221, Vienna, VA 22180 — privacy@storepilothq.com.