Privacy Policy
Effective date: July 12, 2026
Last updated: July 12, 2026
This privacy policy applies to the Canary web application, Chrome/Edge browser extension, and iOS mobile app (collectively, "the Service"), operated by Canary.
1. Data We Collect
1.1 Account Data
When you register, we collect your name, email address, and a hashed password. If you sign in via a social login (Google, LinkedIn), we receive your name and email from that provider.
1.2 LinkedIn Profile Data (Chrome/Edge Extension)
The browser extension reads publicly visible LinkedIn profile information — name, headline, location, profile URL, and employment history — solely when you trigger an import action on a LinkedIn profile page. This data is transmitted to your Canary workspace and stored as a CRM contact record.
1.3 Connected Account Credentials
When you connect a social media account (Reddit, Twitter/X, LinkedIn, Facebook, Instagram, etc.) or an email account (Gmail, Outlook), we store encrypted OAuth access and refresh tokens. Raw credentials are never stored; all tokens are encrypted with AES-256 at rest.
1.4 Content You Create
Messages, scheduled posts, notes, and other content you draft or send through the Service are stored in your workspace database, encrypted at rest.
1.5 Usage Data
We collect standard server logs (IP address, browser type, pages visited, timestamps) for security monitoring and performance analysis. These logs are retained for 30 days.
2. How We Use Your Data
- To provide the Service: contact management, AI-assisted message composition, scheduled social posts, inbox aggregation.
- To authenticate you: session tokens, OAuth flows, SSO.
- To send notifications: transactional emails (password reset, billing receipts, delivery alerts). You may opt out of marketing emails at any time.
- To improve the Service: aggregated, anonymised usage analytics.
We do not sell your personal data to third parties. We do not use your data to train AI models.
3. AI and Your Data
Canary uses AI to help you draft messages, answer visitor questions, and surface insights from your knowledge base. Here is exactly how your data interacts with AI inference:
- No training on your data. Your content — messages, contacts, files, knowledge entries — is never used to train or fine-tune any AI model, by us or by our AI providers. Our contracts with AI providers (Google Gemini, OpenAI) explicitly prohibit the use of API inputs for model training.
- Zero-retention inference. Prompts sent to AI providers are processed in memory and are not stored by the provider after the request completes. We rely only on providers that offer a zero-data-retention API tier for enterprise use.
- RAG-only knowledge retrieval. When the assistant answers questions, it retrieves relevant excerpts from your private knowledge base via Retrieval-Augmented Generation (RAG). Those excerpts are included in the prompt for that single request only; they are never cached externally or shared with other workspaces.
- Owner export and deletion. You can export or permanently delete all knowledge entries, conversation history, and associated data from the Command Center at any time. Deleted data is purged from our databases within 30 days and is never recoverable by AI providers because it was never retained there.
4. Third-Party Services
| Service | Purpose | Data Shared |
|---|---|---|
| OpenAI | AI message drafting | Prompt text; no personal identifiers |
| Stripe | Payment processing | Billing name, email, card (handled entirely by Stripe) |
| Resend | Transactional email delivery | Recipient email address, message content |
| LinkedIn API | Profile import & posting | OAuth token, API responses |
| Reddit, Twitter/X, Facebook, Instagram APIs | Social posting | OAuth token, post content |
| Google Maps API | Location features | Query strings only |
Each third-party service has its own privacy policy. We share only the minimum data required to fulfil your request.
5. Data Storage & Security
- All data is stored in a PostgreSQL database hosted within Replit's infrastructure.
- OAuth tokens and API credentials are encrypted with AES-256 before storage.
- All data in transit is protected by TLS 1.2+.
- We perform regular security audits and dependency reviews.
For a plain-language explanation of our AI practices, see the AI and data FAQ.
6. Data Retention
- Active account data is retained for the lifetime of your account.
- After account deletion, personal data is purged within 30 days.
- Server logs are retained for 30 days.
- Deleted contacts are removed immediately.
7. Your Rights
Depending on your jurisdiction you may have the right to:
- Access a copy of your personal data.
- Rectify inaccurate data.
- Erase your data ("right to be forgotten").
- Port your data to another service.
- Withdraw consent at any time (this does not affect prior processing).
To exercise any of these rights, email privacy@assistantcanary.com.
8. Children
The Service is intended for users aged 18 and over. We do not knowingly collect data from children under 13.
9. Changes to This Policy
We will notify registered users by email at least 14 days before any material change takes effect. Continued use of the Service after the effective date constitutes acceptance.