Legal

Privacy Policy

Last updated: February 1, 2026·Effective: February 1, 2026

1. Information We Collect

Account Information

When you create an account, we collect your name, email address, company name, and password. If you sign up through a third-party service (Google, Microsoft), we receive your profile information from that service.

Usage Data

We automatically collect information about how you use E-mailer, including pages visited, features used, campaign performance data, IP address, browser type, device type, and session duration. This data helps us improve the product and diagnose issues.

Email Content & Contact Data

We process the email content you create and the contact data you import into E-mailer. This includes names, email addresses, company information, and any custom fields you configure. We do not sell this data.

Payment Information

Payment processing is handled by Stripe. We do not store your full credit card number, CVV, or bank account details on our servers. Stripe's privacy policy governs payment data.

2. How We Use Your Information

Service Delivery

We use your information to provide, maintain, and improve E-mailer's services — including sending emails on your behalf, AI-powered personalization, deliverability monitoring, and analytics.

Communication

We send transactional emails (account confirmation, password resets, billing receipts) and, with your consent, marketing communications about new features and offers. You can unsubscribe from marketing emails at any time.

AI Processing

Your campaign data and contact information may be processed by our AI models to generate personalized email content, lead scoring, and send-time optimization. This processing occurs on secure, isolated infrastructure. We do not use your data to train general-purpose AI models.

Analytics & Improvement

We use aggregated, anonymized usage data to analyze trends, improve our product, and develop new features. Individual user data is not shared externally for this purpose.

3. Data Sharing & Third Parties

Service Providers

We share data with trusted service providers who assist in operating our platform: cloud hosting (AWS), email delivery infrastructure, payment processing (Stripe), analytics (PostHog), and customer support tools. These providers are bound by data processing agreements.

Legal Requirements

We may disclose your information if required by law, regulation, legal process, or governmental request. We will notify you of such requests unless legally prohibited from doing so.

Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity. We will notify you before your data is transferred and becomes subject to a different privacy policy.

No Selling of Data

We do not sell, rent, or trade your personal information or your contacts' information to third parties. Period.

4. Data Security

Encryption

All data is encrypted in transit using TLS 1.3 and at rest using AES-256 encryption. API keys and sensitive credentials are stored using industry-standard secret management systems.

Infrastructure

Our infrastructure is hosted on AWS with SOC 2 Type II certified data centers. We implement network isolation, intrusion detection, regular security audits, and automated vulnerability scanning.

Access Controls

Access to customer data is restricted to authorized employees who require it for their job function. All access is logged and reviewed. We enforce multi-factor authentication for all internal systems.

5. Your Rights

Access & Portability

You can request a copy of all personal data we hold about you in a machine-readable format. Contact privacy@e-mailer.io and we'll respond within 30 days.

Correction & Deletion

You can update your account information at any time through Settings. You can request deletion of your account and all associated data by contacting us. We will process deletion requests within 30 days.

Consent Withdrawal

You can withdraw consent for marketing communications at any time. You can also request that we stop processing your data for specific purposes while maintaining your account.

Complaint

If you believe we have violated your privacy rights, you have the right to lodge a complaint with your local data protection authority.

6. Data Retention

Active Accounts

We retain your data for as long as your account is active. Campaign analytics data is retained for 24 months after campaign completion.

Deleted Accounts

When you delete your account, we remove your personal data within 30 days. Some data may be retained in encrypted backups for up to 90 days. We are legally required to retain billing records for 7 years.

7. Cookies

We use essential cookies to maintain your session and preferences, and optional analytics cookies to understand how you use our product. See our Cookie Policy for details on specific cookies and how to manage your preferences.

8. Changes to This Policy

We may update this privacy policy from time to time. We will notify you of material changes via email or through a prominent notice in the product at least 30 days before the changes take effect. Your continued use of E-mailer after the effective date constitutes acceptance of the updated policy.

Questions about privacy?

Contact our Data Protection Officer at privacy@e-mailer.io