Privacy Policy

Last updated: July 19, 2026

Atlas Prospector (“Atlas”, “we”, “our”, or “us”) provides prospecting and enrichment workspaces for business teams at app.atlasprospect.ai. This Privacy Policy explains what information we collect, how we use and store it, when we share it, and the choices you have.

Information we collect

  • Account information. When you sign in with Google or a magic link, we collect your email address and, where provided, your name. We use this to create and secure your account and to send service communications.
  • Workspace content. The sheets, prospect records, company records, and enrichment results you import into or generate within Atlas. We process this data solely to provide the service to you.
  • Usage and log data. Standard technical logs (request timestamps, IP addresses, error traces) used for security, debugging, and service reliability.

Google user data

Atlas connects to Google Sheets using the drive.file scope only. This is Google’s narrowest file-access scope: it does not grant access to your Google Drive as a whole.

  • What we access. Only spreadsheet files you explicitly select through the Google Picker, or spreadsheets Atlas creates on your behalf at your request. We never request broad access to your Drive, Gmail, or any other Google service.
  • How we use it. We read rows from a connected spreadsheet to import them into your Atlas sheet, and we write enrichment results back to spreadsheets you have connected for export. Google user data is used only to provide these user-facing features — never for advertising, profiling, or training generalized machine-learning models.
  • How we store it. We store the IDs of the spreadsheets you connect and the OAuth access and refresh tokens Google issues, encrypted at rest. Rows you choose to import are stored as part of your workspace content.
  • How we share it. We do not sell Google user data, and we do not share it with third parties. It is transferred only to the infrastructure providers that host the service (see “How we share information” below), and only as needed to operate Atlas. Our staff do not read your Google user data except with your permission, when necessary for security or abuse investigation, or where required by law.

Atlas Prospector’s use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

You can disconnect Google Sheets at any time from your Atlas settings, or revoke Atlas’s access from your Google account permissions page. On disconnect, we delete the stored OAuth tokens.

CRM data (HubSpot)

If you connect a HubSpot account, Atlas accesses the contacts and lists you direct it to import or export. This data is processed on your behalf and under your instructions to provide the sync features you configure. HubSpot OAuth tokens are stored encrypted at rest, and you can disconnect HubSpot at any time from your settings, which deletes the stored tokens.

Payment data

Payments are processed by Stripe. Your card details are collected and stored by Stripe — we never see or store your full card number. We retain records of your subscription status and billing history.

Cookies and sessions

Atlas uses essential cookies to keep you signed in and to secure authentication flows (for example, OAuth state cookies). We do not use third-party advertising or cross-site tracking cookies.

How we share information

We do not sell your personal data. We share data only with the service providers required to operate Atlas — cloud hosting, database and authentication infrastructure, background-job processing, and payment processing — each bound by confidentiality obligations and processing data only on our instructions. We may also disclose information where required by law or to protect the rights, safety, or security of Atlas and its users.

Data retention and deletion

We retain your data for as long as your account is active. You can request deletion of your account and associated data at any time by emailing support@atlasprospect.ai; we will complete the deletion within 30 days. OAuth tokens for connected services (Google, HubSpot) are deleted immediately when you disconnect the integration.

Security

All traffic to Atlas is encrypted in transit with TLS. OAuth tokens and other integration credentials are encrypted at rest. Access to production systems is restricted and logged.

Changes to this policy

We may update this policy from time to time. Material changes will be announced in the app or by email, and the “Last updated” date above always reflects the current version.

Contact

Questions about this policy or your data? Contact us at support@atlasprospect.ai.