K
Keelhaus
OS

Privacy Policy

Last updated: September 3, 2026

1. Overview

Keelhaus, Inc. (“Keelhaus,” “we”) operates Keelhaus Recover, an AI revenue recovery platform. This policy explains what data we collect, how we use it, and the choices you have.

2. Data you connect

When you connect an email account such as Gmail, Keelhaus processes customer-authorized business email and estimate information. We access only business-relevant messages related to estimates, quotes, proposals, and follow-ups. We do not import your entire inbox, and we retain the minimum content required to identify and recover opportunities.

3. Tenant isolation

Every organization’s data — estimates, contacts, messages, analytics, and AI outputs — is strictly isolated. Users can only access records belonging to their own organization.

4. OAuth tokens

Authorization tokens are stored server-side and never exposed to frontend code. You may disconnect an integration at any time, which revokes our access.

5. AI processing

Customer message content is treated as untrusted input. AI outputs are validated and never execute privileged actions automatically. All outbound communications require human approval in the MVP.

6. Data retention

We retain data only as long as reasonably required to provide Recover functionality. Downgrades do not immediately delete your data; plans apply opportunity limits gracefully.

7. Contact

Questions about privacy? Contact us at privacy@keelhaus.com.