1Who we are
Honest Codes provides a tenant-facing Business OS for customer communications. Our public website is https://www.honest.codes. You can contact us at admin@honest.codes.
2What the service does
Honest Codes provides a unified inbox and business operating layer for customer communications. It connects channels such as Gmail and Google Workspace, Outlook and Microsoft 365, Instagram, WhatsApp Business, Facebook Messenger, webchat, Telegram, and future channels. We use internal connector infrastructure to operate connected channels.
3Information we collect
Depending on the features you use, we may collect and process:
- Account and profile information, such as name, email address, organization, and user role.
- Tenant and administrator settings.
- Connected channel metadata.
- Customer messages and conversation metadata.
- Email content, headers, and thread metadata when a tenant connects Gmail or Google Workspace.
- Drafts, approvals, reports, audit logs, and configuration data.
- Usage, operational, and security logs.
4Google user data
If a user connects Gmail or Google Workspace, Honest Codes may access Gmail message data needed to provide the unified inbox, AI-assisted drafting, approval workflows, sending approved replies, reporting, customer memory, and conversation management features. The app may access the connected Google email identity and Gmail mailbox data according to the scopes granted by the user.
Google user data is used only to provide and improve user-facing features that are visible in Honest Codes. Google user data is not sold. Google user data is not used for advertising. Google user data is not used for generalized AI/ML model training.
Humans do not read Google user data except when the customer or tenant explicitly authorizes access, when access is required for support, security, or debugging, when required to comply with applicable law, or when required to investigate abuse.
Our use and transfer of information received from Google APIs complies with the Google API Services User Data Policy, including the Limited Use requirements.
5Microsoft, Meta, and other connected providers
The same commitments described above for Google user data apply equally to data from every other connected provider — Microsoft (Outlook / Microsoft 365), Meta (Instagram, WhatsApp Business, and Facebook), Telegram, and any future channel. That data is used only to provide and improve the features you see in Honest Codes.
Connected-provider data is not sold. Connected-provider data is not used for advertising. Connected-provider data is not used for generalized AI/ML model training. Humans do not read connected-provider data except when the tenant or customer explicitly authorizes access, when access is required for support, security, or debugging, when required to comply with applicable law, or when required to investigate abuse.
Disconnect, revocation, and deletion steps for each provider are on the Microsoft data page, the Meta data page, and the Data deletion instructions page.
6How we use information
We use information to:
- Provide the unified inbox and conversation management features.
- Draft and recommend responses.
- Support approval workflows.
- Send messages only when authorized and configured.
- Maintain customer memory and reporting.
- Secure, monitor, and debug the service.
- Comply with applicable law.
7AI and automation
AI may assist with drafting, summarizing, classifying, and recommending actions. AI-assisted features do not mean unrestricted automatic sending. Risky or sensitive actions may require human approval according to tenant settings. Google user data is not used to train generalized models.
9Security
We use measures designed to protect information, including encryption in transit, encrypted credential storage or a vault where implemented, access controls, audit logging, and least-privilege practices.
10Data retention
We retain data while an account or tenant is active or as needed to provide the service. Logs may be retained for security and operations. Users or tenants may request deletion. Connected provider data can be removed or disconnected.
11User choices and revocation
Where available, users can disconnect Google access from Honest Codes. Users can also revoke access from their Google Account permissions page. After revocation, Honest Codes will not access new Gmail data through the revoked authorization. A tenant may request deletion by contacting admin@honest.codes. Detailed disconnect, revocation, and deletion instructions for each connected provider are available on the Google data page, the Microsoft data page, and the Meta data page, with a standardized summary on the Data deletion instructions page.
12International transfers
Data may be processed in locations where our infrastructure and service providers operate, subject to applicable safeguards.
13Children
The service is not directed to children under 13.
14Changes to this policy
We may update this policy. Updates will be posted on this page.
15Contact
For privacy questions or deletion requests, contact admin@honest.codes.