Privacy Policy
This Privacy Policy explains how OUTREACHZ processes personal data when you use the OUTREACHZ Chrome extension and related services.
1. About OUTREACHZ
OUTREACHZ is a manual LinkedIn outreach drafting assistant. It helps users detect the LinkedIn profile currently open in their browser and generate editable message drafts.
OUTREACHZ does not send messages automatically, click LinkedIn buttons, connect, follow, scrape LinkedIn at scale, or automate LinkedIn actions.
2. Data Controller
The data controller is Outreachz, based in the European Union. For privacy requests, contact us at the.outreachz.ai@gmail.com.
3. Personal Data We Process
Account data
When you sign in, we may process your name, email address, user account ID, and authentication or session information.
Visible LinkedIn profile content
When you open OUTREACHZ on a LinkedIn profile page, the extension may read visible profile information from the current page, such as profile name, profile URL, headline, job title, company name where visible, location where visible, education where visible, and public profile text visible on the page.
Drafts, templates, and settings
OUTREACHZ may process message templates created by you, draft messages generated for you, draft edits, preferred draft language, sender name, and your own profile context. These are stored locally in your browser unless explicitly stated otherwise.
OpenRouter API key
If you add an OpenRouter API key, it is stored locally in your browser using Chrome local storage. We do not store your OpenRouter API key on our servers and we do not send it to Supabase, Stripe, Clerk, or our backend database.
Usage and plan data
To manage access and limits, we may store plan status, Founder Pass status, access expiration date, generation count, generation limits, Stripe customer ID, checkout/session status, and payment-related access metadata.
University analytics data
If you choose to provide your current university and consent to beta analytics, we may store your account email, account name, selected current university, consent status, and consent/update timestamp.
Payment data
Payments are handled by Stripe. We may receive limited payment metadata from Stripe, such as customer ID, payment status, checkout session ID, product purchased, and Founder Pass activation or expiration. We do not collect or store full payment card numbers or card security codes.
4. What We Do Not Do
- We do not sell user data.
- We do not use user data for advertising profiling.
- We do not use user data for creditworthiness or lending decisions.
- We do not store your OpenRouter API key on our servers.
- We do not store your generated LinkedIn drafts on our servers.
- We do not store your custom templates on our servers.
- We do not store your saved LinkedIn profiles on our servers.
- We do not automatically send LinkedIn messages.
- We do not auto-connect, auto-follow, or perform mass messaging.
- We do not monitor your general browsing history.
5. Purposes and Legal Bases
We process data to provide the extension, manage accounts and access, enforce usage limits, process payments, improve the beta where you consent, and protect the service from abuse.
The legal bases may include performance of a contract, legitimate interests, legal obligations, and consent where applicable.
6. Local Storage and Server Storage
OUTREACHZ is designed to keep sensitive drafting data local where possible.
Stored locally in your browser: OpenRouter API key, saved LinkedIn profiles, custom templates, generated drafts, draft preferences, and local extension settings.
Stored on our backend or database where needed: account information, plan/access status, usage count, Founder Pass expiration, Stripe-related payment metadata, and optional university analytics data if consented to.
7. Third-Party Services
OUTREACHZ uses third-party service providers to operate the product:
- Clerk: authentication and Google sign-in.
- Supabase: database storage for accounts, usage limits, access status, and optional university analytics.
- Stripe: payment processing and Founder Pass checkout.
- OpenRouter: AI message generation when you provide your own OpenRouter API key.
- Railway: backend hosting.
These providers may process data according to their own privacy policies and security practices.
8. International Transfers
Some service providers may process data outside your country or outside the European Economic Area. Where applicable, we rely on appropriate safeguards such as contractual protections, standard contractual clauses, or provider compliance mechanisms.
9. Retention
We keep personal data only as long as necessary for the purposes described in this Privacy Policy.
- Account data is kept while your account is active.
- Usage and plan data is kept while needed to manage access and payment history.
- Founder Pass records are kept while needed to verify access and payment status.
- Optional university analytics data is kept while useful for beta analysis, unless you request deletion.
- Local browser data remains until you delete it from the extension or browser storage.
10. Founder Pass and Beta Access
OUTREACHZ may offer a Founder Pass during its beta phase. The Founder Pass is a one-time payment, valid for 90 days, with no automatic renewal. It is intended for beta access and market validation.
Pricing, features, limits, and access structure may change after the beta period. Buying a Founder Pass does not guarantee that the same pricing, features, or access model will remain available after the 90-day period.
11. Your GDPR Rights
If you are in the European Union or another region with similar data protection rights, you may have the right to access, correct, delete, restrict, object to, or request portability of your personal data. You may also withdraw consent where processing is based on consent and lodge a complaint with a data protection authority.
To exercise these rights, contact the.outreachz.ai@gmail.com. We may need to verify your identity before completing your request.
12. Deleting Local Extension Data
You can delete locally stored extension data by opening OUTREACHZ settings and deleting saved data where available, removing the Chrome extension, or clearing Chrome extension storage from your browser settings.
Deleting local data may remove saved templates, drafts, settings, saved profiles, and your OpenRouter API key from the browser.
13. Security
We use reasonable technical and organizational measures to protect personal data. However, no online service or browser extension can guarantee absolute security. You are responsible for keeping your OpenRouter API key, Google account, and device secure.
14. Children
OUTREACHZ is not intended for children under 16. We do not knowingly collect personal data from children.
15. Changes to This Policy
We may update this Privacy Policy from time to time, especially as OUTREACHZ evolves during the beta phase. If we make material changes, we will update the “Last updated” date and, where appropriate, notify users through the extension or related channels.
16. Contact
For questions, privacy requests, or deletion requests, contact the.outreachz.ai@gmail.com.