legal

Privacy Policy

This describes how Looper HQ collects, uses, and protects your data. Last updated when this page was last edited — material changes are emailed to account owners with 14 days notice.

What we collect

  • Account info: email, name, organization (you provide).
  • Content you generate: chats, missions, leads, sites, sequences.
  • Operational data: API usage, credit charges, error logs.
  • Cookies for session auth and basic product analytics.

Subprocessors

We use Anthropic, OpenAI, Google (Gemini, Places), Perplexity, Resend, Supabase, Vercel, and Stripe to deliver the product. Your data may be processed by them under their respective DPAs.

Encryption + access

BYOK API keys (Anthropic, OpenAI, Apollo, etc.) are encrypted at rest with AES-256-GCM before being stored. Only the platform service role can decrypt them — your tenant's data is row-level isolated by RLS policies on every table.

Your rights

Email info@looperhq.com for data export, correction, or deletion. We respond within 7 days. GDPR/CCPA self-serve tooling is on the roadmap.

Working draft. We're finalizing attorney review for Q3 — material updates will be versioned and emailed.