Clossara reads your sales emails, calls and CRM. This page states exactly how that data is protected — what is in place today, and what is still in progress. If something here is not specific enough for your review, write to [email protected].
| Data | Where it comes from | How it is stored |
|---|---|---|
| Deals, accounts, contacts | Your CRM (Salesforce or HubSpot), through a connection you authorise | Your instance's database |
| Emails | Mailboxes your users connect (Gmail or Outlook), read-only | Original text encrypted at rest; a redacted working copy is what the model reads |
| Call records | Your CRM's activity records, where connected | Your instance's database |
| Documents | Files your users upload (price lists, proposals) | Original file encrypted at rest; redacted text used to ground drafts |
| Connection credentials | CRM, mailbox and optional enrichment connections | Encrypted at rest, never stored in plain text |
gmail.readonly, Mail.Read), so it cannot send from your mailboxes. Drafts are suggestions a person copies and sends. The only emails Clossara itself sends are account emails: sign-up verification and team invitations.| Provider | Purpose | Data involved |
|---|---|---|
| EU cloud hosting provider | Hosts your dedicated instance | Your instance's data, encrypted as described above. Named in the DPA. |
| Cloudflare | This website and the waitlist | Waitlist email addresses only. No product data. |
| Email delivery provider | Account emails (sign-up verification, team invitations) | Your users' email addresses only. Named in the DPA. |
| Provider | When | Data sent |
|---|---|---|
| Apollo, People Data Labs, ZoomInfo | Only if you connect your own account with that provider, to fill in company details | Company website domains only — never conversations or contacts' messages |
Your CRM and mailbox providers are your own systems, which Clossara reads with your authorisation.
Security questions, questionnaires, DPA requests and incident reports all go to the same address.