What we collect
We collect exactly four kinds of information, and every one of them exists to serve you, not us.
- Your sign-in identity. When you sign in with Google, we receive your name, your email address, and a Google account identifier. That's how you get into your own account and nothing else.
- The contact files you deliberately upload. Your phone's contacts, a LinkedIn export, or both. You choose the file, you press upload, and only that file is read. The import receipt in the product tells you exactly what was read, every time.
- What you create inside SourcedOS. Your notes, your keep-and-set-aside decisions, your merge answers. The relationships you bring with you and the notes you add, stored for you.
- Ordinary server logs. The technical records any web server keeps to stay running and secure: request times, IP addresses, error messages. We keep them for 30 days and then they're gone.
That is the complete list. There are no analytics cookies, no tracking pixels, no fingerprinting, no advertising trackers, and no third-party analytics scripts anywhere on this site or in the product. The only cookies we set are the ones that keep you signed in.
What we never do
These aren't policies that could change with a business model. The product is built so that most of them are structurally impossible.
- We never sell your data. To anyone, for anything.
- We never share your contacts, your notes, or your decisions with anyone for their own use.
- We never use your data to train AI models, and neither do our providers.
- We never email, message, or contact the people in your imported contacts. Your imports are your private address book. Importing someone here is like writing their name in your own notebook: they will never know, and never be touched.
- We never show you ads, and we never let anyone pay us to influence what you see.
- We never judge your relationships or decide which ones matter to you. The product states facts from your own data. You make the meaning.
Where your data lives
Your information stays separate from everyone else's. That separation is enforced by the database itself.
SourcedOS runs on dedicated servers we operate, hosted by Hetzner in the European Union. Every user's data is separated from every other user's by row-level security inside the database, meaning the database itself refuses to show your rows to anyone else's session. This isn't an application setting someone could forget; it's enforced at the storage layer, and we test it continuously.
Our internal analytics are self-hosted on our own servers. They don't collect anything new about you. They're views built only from information already described on this page: things like timestamps and yes-or-no account states. No third-party analytics company ever sees your data, because none is involved.
The services we use
Four outside services touch some of your data, each for one narrow job. This is the complete list.
- Google signs you in. Google processes your sign-in identity when you use "Sign in with Google."
- Postmark delivers the emails we send you (your invitation, account emails). Postmark processes your email address and the contents of those messages.
- Anthropic provides the AI model we use to help make sense of your contacts. These requests run under our company's API key with training on your data disabled. We don't send Anthropic your name or email address, and your data is never used to train models.
- Hetzner provides the physical servers everything above runs on.
These services only process your data on our behalf, for the specific jobs described above. They can't use it for their own purposes.
If this list ever changes, we'll update this page and tell you before the change takes effect.
Google user data, specifically
SourcedOS connects to Google in two ways, so here is everything about Google data in one place.
- Signing in. When you sign in with Google, we receive your name, your email address, and a Google account identifier. That is the entire read.
- Sending email. If you choose to connect Gmail sending, you grant one permission: send email on your behalf (the gmail.send scope). It is the narrowest sending permission Google offers and the only Gmail permission we request. We cannot read your inbox, your sent mail, your drafts, or anything else in your Google account. The permission to read was never requested, so the capability does not exist.
- What we access: the sending authorization Google issues, and the outcome of each send.
- What we use it for: sending the individual emails you write, to the person you chose, when you press send. Nothing is automated, scheduled, or bulk, and the machinery for those things was never built.
- What we store: your authorization token, encrypted, in your row only, and the messages you wrote with their outcomes, which are your data like everything else here.
- What we share: nothing. Your Google user data is never transferred to any third party for any purpose. The AI provider described above never receives your Google data or the contents of your emails.
- How it is protected: the token is encrypted at rest and fenced by the same row-level security as everything else on this page.
- Retention and deletion: the authorization lasts until you revoke it or delete your account. You can revoke at any time at myaccount.google.com/permissions, and the product tells you plainly when a grant has ended rather than failing quietly. Deleting your account destroys the token along with everything else, on the same certified deletion described above.
The use of raw or derived user data received from Google Workspace APIs will adhere to the Google User Data Policy, including the Limited Use requirements.
Deletion is real
When you delete your account, your data is destroyed from every live system we operate immediately, including our own audit records of it.
Account deletion is self-serve in Settings. It removes your contacts, your notes, your decisions, your uploaded files, and your account itself from every live store we operate. We verify deletion regularly with an automated certification that checks every live storage system for any remaining trace. Encrypted backup copies age out completely within 30 days.
Leaving is allowed to be easy here. That's a design decision, not a legal concession.
Your rights
The same rights, for everyone, everywhere. We don't tier your rights by jurisdiction.
- Access and export. You can see everything you've put in by using the product, and you can ask for a complete copy of your data at any time. When self-service export is available in your account, you can download it directly. You can also email mike@sourcedos.com and we'll provide it for you.
- Correction. Your data is editable by you, in the product, directly.
- Deletion. Self-serve, total, certified, as described above.
- Questions. Ask, and a human answers. See the contact section, where the answer is actually the founder.
California, and everywhere else
California law gives its residents specific privacy rights. We give those rights to everyone, and in most cases we go further.
SourcedOS doesn't currently meet the thresholds that make the California Consumer Privacy Act apply to a business, but we honor its substance for every user regardless of where you live: the right to know what we collect (the complete answer is on this page), the right to access and delete (self-serve and total, as described above), and the right to never be treated worse for exercising any of them.
And the part most policies can't say: we do not sell or share personal information as California law defines those terms, and we never have. There's no "Do Not Sell or Share" link here because there is nothing to opt out of. If you send us a privacy request, we'll respond within 45 days, usually much faster, because the person answering is the founder.
How long we keep things
Your account data is kept for as long as your account exists, because that's the product. Server logs are kept for 30 days. Encrypted backups are kept for 30 days and then destroyed on rotation. When you delete your account, the deletion section above governs everything.
Age
SourcedOS is not directed at children and is for people 16 and older. If we learn an account belongs to someone younger, we'll delete it.
When this policy changes
If we change this policy in any way that matters, we'll email every account before the change takes effect and note the change plainly at the top of this page. We won't bury anything, because burying things is the industry habit this product exists to refuse.
Contact
Questions, requests, or concerns about your data: email mike@sourcedos.com. You'll be talking to the founder. I answer, usually within two business days.
TeamSourced Software, Inc., a Delaware corporation.