Privacy Policy
Last updated: August 18, 2026
Recap ("we", "us", "the Service") is a personal networking and contact management tool. It helps you keep track of the people in your network, prepare for conversations, and write and send outreach email. This Privacy Policy explains what information we collect, how we use it, and the choices you have — including exactly what Recap does with your Google Calendar and Gmail data. By using Recap you agree to the practices described here.
1. Information we collect
a. Account information
When you sign up we collect your name, email address, phone number, and the profile information you choose to provide (school, employer, role, graduation year, LinkedIn URL, location, interests). We store a hashed, non-reversible version of your password.
b. Contacts you upload
You may import contact records via Excel spreadsheets, LinkedIn Connections exports, and Word documents. We store these records — names, employers, roles, emails, phone numbers, schools, notes — in your private account. They are visible only to you.
c. Google Calendar data
With your explicit consent, Recap uses the calendar.readonly
scope to read events from your primary Google Calendar. We use this data to:
- Display your upcoming meetings inside Recap's calendar view so you have one place to see networking-relevant events without switching to Google Calendar.
- Match calendar events to contacts in your database, so you can open an event, log it as an internal interaction in Recap, or draft a follow-up email pre-populated with meeting context — all with one click.
- Surface real-time reminders when a networking event is about to start (1:1s, coffees, intros, interviews), with one-click options to start recording the conversation or log a new interaction.
We do not write to your calendar. We do not delete or modify events. We do not access calendars other than your primary calendar. All actions taken from calendar events (logging interactions, drafting emails) write only to Recap's own database, never to Google Calendar.
d. Gmail data (sending email)
With your explicit consent, Recap uses a single Gmail scope:
https://www.googleapis.com/auth/gmail.send. It permits
sending only. It grants Recap no ability to read, search,
download, label, archive, or delete anything in your mailbox,
and no access to your Google contacts or settings.
- Sending email you approved. An email that you have composed, reviewed, and explicitly approved by pressing Send in Recap's draft panel is delivered from your own address, with any files you attached, and appears in your Gmail Sent folder. Recap never sends automatically, on a schedule, or in the background, and never to recipients you did not enter.
What we store. We store the drafts you create (subject, body, recipient, attachments) in your private account, visible only to you. We do not store, and cannot obtain, a copy of your mailbox.
e. Files you upload
You may upload a resume or other documents to attach to outgoing emails. We store these files so they can be attached to messages you send and so you can reuse them later. You can delete them at any time from Settings or from the email draft panel.
f. Usage data
We use first-party product analytics for debugging and product improvement. These records are associated with your Recap account and may include a stable screen template (for example, a contact-detail screen without the contact ID), static control identifiers or anonymous on-screen positions, button, tab, form, and select interactions, session timestamps, and time when the page was visible, focused, and recently active.
Product analytics do not record text you type, form or selected values, contact names, notes, search terms, email or calendar content, raw record URLs, or third-party destination URLs. These analytics are stored in Recap's own database rather than sent to a third-party analytics service.
2. Google API Services User Data Policy
Recap's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
- We only use Google user data to provide and improve the user-facing features in Recap — specifically, showing your calendar events and sending email that you have written and approved.
- We do not use Gmail data, or any Google user data, to train generalized artificial intelligence or machine learning models. Recap learns your writing style only from the drafts you create inside Recap, and that learning is scoped to your own account.
- When you request an AI feature that needs email content — drafting a reply in an existing thread, or summarizing your history with a contact — that content is processed by our AI provider (Anthropic) solely to produce the result you asked for. Under the API terms we use, Anthropic does not train models on this data. Email content is never sent to any other third party.
- We do not transfer Google user data to third parties except as necessary to provide the Service, or as required by law.
- We do not use Google user data for serving advertisements.
- We do not allow humans to read your Google user data unless we have your explicit consent, it is necessary for security purposes (e.g. investigating abuse), to comply with applicable law, or for internal operations where the data has been aggregated and anonymized.
3. How we store and protect your data
- Your data is stored in a managed PostgreSQL database. OAuth refresh tokens are stored per-user and are never shared between accounts. Your Calendar and Gmail authorizations are stored separately, so connecting one does not grant access to the other, and revoking one does not affect the other.
- All traffic between your browser and Recap is encrypted over HTTPS.
- Access to production data is limited to the developer(s) responsible for operating the Service.
4. How we share your data
We do not sell your data, ever. We do not share your data with third parties for marketing or analytics. The only third-party services we use are infrastructure providers necessary to run Recap — for example, our hosting provider (Render) and our database provider. These vendors operate under their own privacy policies and only process your data on our behalf.
We may disclose your data if required to do so by law, subpoena, or other valid legal process.
5. Your choices
- Disconnect Google Calendar at any time from the Calendar page or via your Google Account permissions page. We delete your refresh token immediately on disconnect.
- Disconnect Gmail at any time from Settings → Email Account, or via your Google Account permissions page. We delete your stored Gmail authorization immediately; Recap then falls back to opening a pre-filled compose window instead of sending for you. Emails already sent remain in your Gmail Sent folder, as with any email you send.
- Delete your account from Settings → Account, or by emailing robert.zhang555@gmail.com. We permanently remove your contacts, notes, email drafts, uploaded attachments, calendar and Gmail tokens, and profile within 30 days.
- Export your data by emailing robert.zhang555@gmail.com and we will provide a copy of your records.
6. Data retention
We retain your data for as long as your account is active. When you delete your account, we remove all personal data within 30 days, except for information we are required to retain by law.
7. Children
Recap is not directed to children under 13, and we do not knowingly collect data from anyone under 13.
8. Changes to this policy
We may update this Privacy Policy. Material changes will be communicated by email to the address on file. Continued use of Recap after a change constitutes acceptance.
9. Contact
Questions, requests, or complaints about this policy? Email robert.zhang555@gmail.com.