Privacy Policy
Effective Date: July 3, 2026
Introduction
This Privacy Policy explains how Plum It ("Plum," "we," "our," or "us") collects, uses, stores, and protects information from users of our website and Services, including data from third-party apps you choose to connect. By using Plum, you agree to this Privacy Policy.
1. Information We Collect
User-Provided Data: When you sign up for our beta list or create an account, we collect your email address and any profile details you provide, such as your name.
Connected App Data: When you connect a third-party app to build an automation, we access and process the data from that app needed to run the automation you configure. We only request the access needed for the automations you set up.
Workflow Data: We store the configuration of the automations you build, including any rules or preferences you set when reviewing a low-confidence decision, so Plum can apply your choice automatically going forward.
Technical & Account Data: We collect IP addresses, authentication tokens, and logs for security and troubleshooting purposes. This data is never shared or sold.
2. How Data Is Collected
Data is collected directly from you, through forms on our site, and through OAuth-based or webhook-based connections to the third-party apps you authorize. We use essential cookies for session security and site functionality.
3. Legal Basis & Purpose of Processing
We process your data to provide the Services you request, including running automations, sending beta and product updates, and providing support. Where applicable, processing is based on your consent or on the necessity to perform our agreement with you.
4. Data Retention
We retain your account and connected-app data for as long as your account is active or as needed to provide the Services, unless a longer retention period is required by law. You may request deletion of your data at any time.
When you delete your account, we permanently remove your profile, workflow configurations, and connected-app data from our systems, other than records we're required to keep for legal or accounting purposes.
5. Data Security
We host our infrastructure on Amazon Web Services (AWS) and protect data with encryption in transit and at rest, access controls, and logging.
6. Third-Party Services
We currently use the following third-party providers:
- AWS for hosting and infrastructure.
- AWS SES to send transactional emails (for example, confirming your beta signup).
- Sendy to manage our beta waitlist and send product update emails. If you signed up for early access, your email address is stored in Sendy for this purpose. You can unsubscribe at any time using the link in any email we send.
As we build out the product, we'll add third-party providers to support features like billing and analytics, and we'll update this section when we do.
7. Analytics & Tracking
We do not currently use any analytics or tracking tools on this site. If we add analytics in the future, we will request your consent via a cookie banner before loading any non-essential tracking, and we'll update this Policy to describe what we collect and why.
8. User Rights
You have the right to access, correct, or delete your data. You can revoke a connected app's access at any time from your account settings. You may also request deletion of your account and data by emailing support@plumit.io — we aim to respond within 30 days.
9. International Data Transfers
While we operate in the United States, your data may be processed on cloud infrastructure located in other regions. Any such transfers comply with applicable law.
10. Privacy by Design
We follow a "privacy by design" approach — we only request the access an automation actually needs, and we don't use your connected-app data for anything beyond providing the Services you configure.
11. Changes to This Policy
We may update this Policy from time to time. Material changes will be communicated by email, and the effective date above will be updated.
12. Contact
Questions about this Policy? Email support@plumit.io.