ppl
Privacy Policy
Last updated: October 2, 2026
ppl is a personal CRM. It stores the details of your relationships: names, contact information, notes, interactions, and reminders. That data is yours. This policy explains what we collect, why, and what we never do with it.
What we collect
- Account data: your name, email address, and password (stored hashed). Needed to run your account.
- Your CRM data: contacts, notes, journal entries, tasks, reminders, gifts, and call logs you create or import. This is the product.
- Connected services: if you connect Gmail, Google Calendar, or Google Contacts, we sync messages, events, and contacts you choose to import. Tokens are stored encrypted and used only for the syncs you enable.
- Device signals: if you enable proximity features, we store hashed device identifiers to detect nearby contacts. Raw identifiers are never stored.
- Operational logs: standard server logs (IP address, request timestamps) for security and debugging, retained for 90 days.
What we never do
- We never sell your data. Not to advertisers, not to data brokers, not to anyone.
- We never use your contacts, notes, or journal entries to train machine learning models.
- We never share your CRM data with third parties except the infrastructure providers that host it, who are bound by their own data processing terms.
AI agents and your data
ppl is designed to be operated by AI agents you authorize. When you connect an agent, it receives an API token scoped to the permissions you approve. You can revoke any token at any time from Settings. An agent sees only what its token permits, and every write it makes is logged under your account.
Your controls
- Export: download your data at any time from Settings.
- Delete: delete individual contacts or your entire account. Account deletion removes your CRM data from our systems within 30 days.
- Revoke: disconnect Gmail, Calendar, or any agent token instantly; we stop syncing and delete stored tokens.
Data retention
Your CRM data is kept for as long as your account exists. Operational logs are pruned after 90 days. Proximity signal observations are pruned after 90 days. Backups rotate on a 30-day cycle.
Security
Traffic is encrypted in transit (TLS). Passwords are hashed. OAuth tokens are encrypted at rest. No system is perfectly secure, and we will notify you promptly if we discover a breach affecting your data.
Children
ppl is not intended for children under 13, and we do not knowingly collect their data.
Changes
If we change this policy in a way that affects your rights, we will notify you by email before the change takes effect.
Contact
Questions about this policy: [email protected].
Back to ppl.gift