Privacy Policy
Last updated: August 11, 2026
This Privacy Policy explains how Jasper Hawk LLC, a Delaware limited liability company ("Jasper Hawk," "we," "us," or "our"), collects, uses, stores, shares, and protects information in connection with Sendel, our personalized AI assistant available at sendel.ai and related applications and services (collectively, the "Service").
By using the Service, you agree to the practices described here. If you do not agree, do not use the Service.
1. Who we are
The Service is operated by Jasper Hawk LLC. If you have any questions about this policy or your data, contact us at privacy@sendel.ai or 240 26th St., Ste 2, Santa Monica, CA 90402.
2. The data we collect
Account and contact information. Your name, email address, authentication information, billing information, and anything you send us through support requests or feedback.
Connected-service data. With your authorization, the Service may connect to Google and other supported services. Depending on the service, features you enable, and permissions you grant, we may access:
- Communications and drafts, including their content, attachments, and related metadata;
- Contact and participant information associated with connected content;
- Calendar information;
- Files that you choose to make available to the Service; and
- Task information if you enable a connected task service.
Content you provide and personalization data. We collect instructions, answers, notes, preferences, profile or memory information, labels, feedback, and other content you choose to provide. The Service may also create and store account-specific drafts, analyses, suggestions, preferences, and other derived information to personalize your experience. These account-specific results are not used to train generalized AI models.
Usage and device data. Log data, IP address, browser and device type, pages viewed, features used, and similar diagnostics, collected through cookies and similar technologies.
Browser extension. If you install the optional Sendel browser extension, it may access the web address and identifiers for the active account, conversation, or draft on supported email services and on Sendel. This lets the extension display relevant information alongside the service you are using. When you invoke a feature that works with a draft, the extension may read or update draft fields, including its subject, body, and recipients, at your direction and may send that content to the Service for the processing described in Section 5. To keep you signed in, the extension stores a Sendel sign-in token in your browser's extension storage; the token is sent only to the Service to authenticate your requests and can be revoked from your Sendel settings. The extension does not collect your general browsing history, activity on unrelated websites, or unrelated keystrokes, and no data it handles is sold or used for advertising.
Read-receipt open events. If you turn on read receipts (an account setting that is off by default), replies you send through the Service include an invisible tracking pixel, and we record when that message is opened โ the timestamp, the requesting mail client, and a one-way hashed, truncated IP used only for rate-limiting and de-duplication. We do not derive or store any geolocation from these events, and recipients are not notified. These raw open events are automatically purged 90 days after they are recorded.
3. How we use Google user data โ Limited Use
The use of raw or derived user data received from Google Workspace APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
- We use Google user data only to provide or improve prominent user-facing features that you request or enable, such as organizing connected content, assisting with communications and scheduling, generating account-specific insights and outputs, handling files you make available, managing connected tasks, and carrying out actions you direct.
- We do not use Google user data to serve advertisements.
- We do not transfer Google user data to others except (a) with your consent as necessary to provide or improve those user-facing features, (b) for security purposes, (c) to comply with applicable law, or (d) as part of a merger, acquisition, or sale of assets after obtaining explicit prior consent.
- We do not allow humans to read Google user data unless (a) you give specific consent for particular content, (b) it is necessary for security purposes such as investigating abuse, (c) it is required to comply with applicable law, or (d) the data has been aggregated and anonymized so it can no longer identify you.
- We do not use Google user data to develop, improve, or train generalized or non-personalized AI or machine-learning models. AI processing of Google user data is performed solely to deliver user-facing features to you.
4. How we use your information
We use the information described above to:
- Provide, operate, and maintain the Service, including organizing and analyzing connected content, assisting with communications and scheduling, and carrying out actions you direct;
- Generate account-specific drafts, suggestions, insights, and other personalized outputs;
- Authenticate you and secure your account;
- Process payments and manage subscriptions;
- Respond to support requests and communicate with you about the Service;
- Monitor, debug, and improve the Service's performance and reliability;
- Detect, prevent, and investigate fraud, abuse, and security incidents;
- Comply with legal obligations and enforce our Terms of Service.
5. AI processing and subprocessors
The Service uses third-party artificial-intelligence providers to analyze information and generate content. When you use an AI-powered feature, relevant connected-service data, content you provide, and personalization data may be sent to these providers solely to produce output for you. We contract with these providers to prohibit them from using your content to train their general models and to require appropriate confidentiality and security protections.
We also rely on service providers for cloud hosting, data storage, payment processing, and analytics. These providers process data only on our instructions and under contractual confidentiality and security obligations. A current list of subprocessors is available on request at privacy@sendel.ai.
6. How we share information
We do not sell your personal information, and we do not share the contents of your connected services for anyone else's marketing.
We share information only:
- With service providers and subprocessors as described above;
- To comply with law, legal process, or enforceable governmental requests;
- To protect the rights, property, or safety of Jasper Hawk, our users, or the public, including to enforce our terms or address fraud or security issues;
- In connection with a merger, acquisition, or sale of assets, subject to this policy and with notice to you;
- With your consent or at your direction.
7. Data retention
We retain account information, connected-service data, content you provide, and derived information for as long as reasonably necessary to provide the Service, maintain your account, support features you use, and satisfy legal, security, and dispute-resolution obligations. The applicable period depends on the nature of the information and why we need it. Revoking a provider's authorization stops new access through that authorization but does not, by itself, delete information previously obtained or derived. When your Sendel account is deleted, we delete or de-identify associated personal information from active systems as soon as reasonably practicable, except where limited retention is necessary for the purposes above. Backups expire on a rolling schedule. The separate 90-day limit for raw read-receipt events is described in Section 2.
8. Your choices and rights
You can revoke access to a connected provider at any time through that provider and, where available, through Sendel settings. You can revoke the Service's access to your Google account at any time at myaccount.google.com/permissions.
California (CCPA/CPRA). California residents have the right to know what personal information we collect, to access and delete it, to correct inaccuracies, and to opt out of any "sale" or "sharing" of personal information (we do not sell or share it as those terms are defined). We will not discriminate against you for exercising these rights.
To exercise any right, contact privacy@sendel.ai. We may need to verify your identity before responding.
9. Security
We use technical and organizational measures designed to protect your information, including encryption in transit and at rest, access controls, and least-privilege handling of connected-service content. No system is perfectly secure, and we cannot guarantee absolute security.
10. U.S.-only service
The Service is intended for users located in the United States, and we process data in the United States. The Service is not directed to individuals in the European Economic Area or the United Kingdom. If you access the Service from outside the United States, you do so on your own initiative and are responsible for compliance with local law.
11. Children
The Service is not directed to anyone under 18, and we do not knowingly collect personal information from anyone under 18. If you believe a minor has provided us information, contact us and we will delete it.
12. Changes to this policy
We may update this policy from time to time. If we make material changes, we will notify you by email or through the Service and update the "Last updated" date above. If a change materially affects how we access or use Google user data, we will provide notice and obtain any consent required before using that data for a new purpose. Your continued use after changes take effect means you accept the revised policy, except where affirmative consent is required.
13. Contact us
Jasper Hawk LLC
240 26th St., Ste 2, Santa Monica, CA 90402
privacy@sendel.ai