Privacy policy
Effective October 3, 2026
Nuggo (nuggo.co) is a prospecting tool: you keep your contacts and companies in it, move them through workflows, and send them emails and texts. This policy explains what information Nuggo collects, how it’s used and shared, and the choices you have.
Information we collect
- Your account. Your name, email address and password, or your Google or Microsoft sign-in. Sign-in is handled by our authentication provider, Clerk; Nuggo never sees your Google or Microsoft password.
- Your settings. What you enter during onboarding and in Configuration and Profile, such as your business name, a description of your business, your email signature and your time zone.
- Your records. The contacts, companies, notes, tasks, lists, workflows and custom fields you create, import or add through a connected AI assistant, and the files you import.
- Your messages. The emails and texts Nuggo drafts and sends for you, their recipients, when they were sent and whether they were delivered.
- Connected services. When you connect Gmail or Outlook, an access token for that mailbox. When you add an Anthropic (Claude) or OpenAI API key, that key. Both are stored encrypted.
- Opt-outs. When someone you contact unsubscribes from your emails or replies STOP to your texts, we record that so they aren’t contacted on that channel again.
Nuggo uses only the cookies needed to keep you signed in. It doesn’t use advertising or analytics trackers.
How we use it
- To run Nuggo for you: show your records, run your workflows, draft and send your messages, and keep track of your tasks.
- To honor opt-outs: Nuggo won’t send an email or text to someone who has opted out of that channel.
- To keep the service secure and working, and to answer you when you contact us.
We don’t sell your information, and we don’t use it for advertising.
Google user data
When you connect Gmail, Nuggo asks Google for permission to:
- Send email on your behalf (gmail.send), so the emails you approve in Nuggo go out from your own address. Nuggo can’t read, search or delete the mail in your inbox.
- See your contacts (contacts.readonly), used only when you choose Import contacts, to add your saved Google contacts to Nuggo once. Nuggo doesn’t keep them in sync.
Nuggo’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Google user data is used only to provide these features; it isn’t sold, used for advertising, or used to train generalized AI models, and no person at Nuggo reads it unless you ask us to, it’s needed for security, or the law requires it.
Microsoft user data
When you connect Outlook, Nuggo asks Microsoft for permission to send email as you (Mail.Send) and to read your basic profile (User.Read) to show which address is connected. Nuggo can’t read your inbox.
AI drafting
When a workflow stage drafts a message, Nuggo sends the stage’s instructions, your sender details and the contact’s and company’s fields to the AI provider you chose, using your own API key. That provider handles the data under your agreement with them. Every draft waits for your review unless you’ve set the stage to send automatically.
Who we share it with
Nuggo shares information only with the services it needs to work:
- Clerk, for sign-in and account security.
- Amazon Web Services, which hosts Nuggo’s servers, database and file storage.
- Google or Microsoft, to send your emails through your connected mailbox.
- Twilio, to send your texts and receive STOP replies.
- Anthropic or OpenAI, with your key, to write drafts.
- AI assistants you connect to Nuggo, which can read and change your records on your behalf until you disconnect them.
To show company logos, Nuggo visits the public home page of each company’s web domain; only the domain is involved. We may also disclose information when the law requires it.
People you contact
You add the contacts in your account and decide what to send them. Each email includes an unsubscribe link, and texts accept STOP. If you’ve received a message sent with Nuggo and want your information removed, contact the sender, or write to us at privacy@nuggo.co.
Security
Information travels over encrypted connections. Mailbox tokens and API keys are encrypted at rest, and each account can see only its own records.
Keeping and deleting your information
We keep your information while your account is open. You can delete records in Nuggo at any time, and disconnecting your mailbox in Configuration deletes its stored token. You can also revoke Nuggo’s access from your Google or Microsoft account settings. To delete your account and its data, write to us at privacy@nuggo.co.
Your choices and rights
You can see and correct your information in Nuggo, export your contacts and companies, and ask us for a copy of your data or to delete it. Depending on where you live, you may have further rights under local law; write to us and we’ll help.
Changes
If we change this policy, we’ll update the date above, and tell you in Nuggo or by email before a significant change takes effect.
Contact
Questions about this policy or your data: privacy@nuggo.co.