Legal
Privacy policy
Effective October 9, 2026
This policy explains what personal data PixelPulse Media LLC (“SendPath”, “we”) handles when you use SendPath, why, and what you can do about it. It covers two groups of people: our customers and their team members, and the people our customers email.
1. Our role
- For your account and billing, we are the controller: we decide how that data is used.
- For the contacts, emails and replies in your workspace, you are the controller and we are your processor: we handle that data only to run SendPath for you, following your instructions and these terms.
2. What we collect
- Account: your email address and sign-in details. You sign in with Google, Microsoft, a passkey or a one-time email link, so SendPath holds no password for you.
- Workspace: its name, timezone and the postal address you add for your emails, plus members, their roles and invitations.
- Connected mailboxes: the address, sender name, server settings and credentials. Credentials are encrypted in Google Secret Manager with our own encryption keys; they are used only to send, test connections, and read replies and bounces, and our staff cannot read them.
- Google Workspace connections: when your Workspace admin connects Google Workspace, we store no password or key. Access is the domain-wide delegation your admin grants SendPath in the Google Admin console, which they can remove at any time. We use it only to send from, read replies and bounces in, and run warm-up in the mailboxes you add, and to list your Workspace's users so you can choose them. If your admin also grants the optional Gmail settings permission, we use it only to create the filter that files warm-up replies away from your inbox. SendPath's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
- Microsoft mailboxes: when you connect a Microsoft 365 or Outlook.com mailbox with Microsoft sign-in, we store an encrypted sign-in token, never the password. We use it only to send from, read replies and bounces in, and run warm-up in that mailbox, and you can revoke it at any time in your Microsoft account. If you allow warm-up replies, a second Microsoft sign-in lets us read your folder names and create the one Outlook rule that files warm-up replies away from your inbox.
- Sending services: when you connect your own account at Resend, Mailgun, Brevo, SendGrid, Amazon SES or Mailjet by API key, we store the key encrypted in the same way and use it only to send for you, check that your From address may send there, and read the bounces and spam complaints of the addresses you mailed. If you also give that address's mailbox password, we read its replies as for any connected mailbox.
- Contact lists you import: email addresses and the columns you choose to keep. The file you upload (or the Google Sheet we read) is kept, encrypted, with its list until you delete the list or the workspace; a file you upload but never import is deleted within 2 days.
- Verification: to check that an address can receive mail, our verification server asks the recipient's mail server whether the mailbox exists - no email is sent. The result is remembered for 90 days so the same address isn't checked again, stored only as a one-way hash of the address, never the address itself.
- Sending activity: which campaign sent what to whom and when, bounces, unsubscribes, verification results and the pre-send checks' decisions.
- Replies: messages in your connected mailbox from people you emailed through SendPath, so we can show and label them. We read your inbox only to find those replies and bounce reports (and warm-up emails, below); other mail is skipped and not stored.
- Warm-up, only for mailboxes you turn it on for: your mailbox sends short warm-up emails only to SendPath's own seed mailboxes - never to other customers' mailboxes - and no other customer's mailbox ever receives mail from yours. Where you allow replies, our seeds reply to a private address of your mailbox, and a filter we create in your mailbox (a Gmail filter or an Outlook rule) files them, read, in a folder shown on your Warm-up page, so they never appear in your inbox. In your mailbox we find only those warm-up emails, by their message ID (or, when your email provider replaced that ID, by their sender, subject and time), to keep them out of your inbox and spam and to answer our seeds. We keep who sent which warm-up email and where it landed for 30 days.
- Billing: your plan and subscription status. Card details are collected and held by Stripe, never by us.
- Technical logs: requests to our servers (addresses, paths and timing, not the content you submit), kept for about 30 days to run and secure the service.
3. How we use it
To provide SendPath (sending, verification, the pre-send checks, reply handling, billing), to keep it secure and prevent abuse, to support you, and to meet legal obligations. Our legal bases are performing our contract with you, our legitimate interest in running a secure and lawful service, and legal obligation.
We do not sell personal data, we do not use it for advertising, and we do not use your contact lists for anything except running your workspace.
4. AI processing
To label replies and review templates, we send the text of the reply or template (not your contact lists) to Google’s Vertex AI in the United States. Under Google’s terms this content is not used to train Google’s models. AI results are stored as labels you can change.
7. International transfers
SendPath stores data in the United States. Where we transfer personal data from the EU, UK or Switzerland, we rely on appropriate safeguards such as the European Commission’s Standard Contractual Clauses.
8. How long we keep it
- Workspace data is kept while the workspace exists. When its owner deletes it, its data is deleted and its stored credentials are destroyed at once.
- A read-only workspace (trial ended or payment lapsed) keeps its data so you can pick up where you left off; ask us to delete it at any time.
- Technical logs are kept for about 30 days.
- Billing records are kept as long as tax and accounting law requires.
9. Security
Data is encrypted in transit and at rest. Mailbox credentials are encrypted with keys we control and are readable only by the service that sends for you. Staff access to workspaces goes through a separate, audited admin system that is blocked from reading credentials. No system is perfectly secure, and we will notify you and any authority as the law requires if a breach affects your data.
10. Your rights
Depending on where you live (for example under the GDPR, UK GDPR or California law), you may have the right to access, correct, delete or export your personal data, and to object to or restrict its use. To exercise them, email privacy@sendpath.ai. We answer within 30 days. You can also complain to your local data protection authority.
11. If you received an email sent with SendPath
The email came from one of our customers, using their own mailbox. That customer decides who they email and is responsible for having a lawful basis to contact you; we process your address on their behalf.
- To stop their emails, use the unsubscribe link in the message. It works in one click and stops all further campaign emails from that customer through SendPath.
- Replying and asking to be removed also works: SendPath recognises the request and suppresses your address.
- For anything else, including where the customer got your address, contact them directly, or write to privacy@sendpath.ai and we will pass your request on and help.
12. Children
SendPath is a business service and is not meant for anyone under 18.
13. Changes to this policy
We will post any update here with a new effective date, and tell customers about material changes by email or in the app.
14. Contact
Privacy questions and requests: privacy@sendpath.ai. Post: PixelPulse Media LLC, 30 N Gould St Ste R, Sheridan, WY 82801, United States.