Privacy Policy
Last updated: July 2026 (rev. 5)
MarketIQ is a relationship intelligence platform for students and professionals. This policy explains what data we collect, why we collect it, and how you can control it. Questions? support@marketiq.ai
1. Information We Collect
We collect only what's needed to run the product:
- Account data — your email address and hashed password, stored via Supabase Auth.
- Usage data — prospects, notes, pipeline stages, and outreach history you explicitly enter.
- Content you upload — resumes and other documents you choose to add to your profile.
- Billing data — subscription status only. Full payment details are handled by Stripe and never touch our servers.
- Gmail data — only if you choose to connect Gmail. See Section 2.
- Google Calendar data — only if you choose to connect Google Calendar. See Section 2A.
- Outlook / Microsoft 365 data — only if you choose to connect Outlook. See Section 3.
2. Gmail Integration
Gmail access is used only to send emails you explicitly approve — outreach emails you compose inside MarketIQ. MarketIQ also retrieves your connected Gmail address to display connection status in the app. MarketIQ does not read, modify, delete, or access your inbox, sent folder, drafts, labels, or any mailbox contents. You can revoke Gmail access at any time from your Google Account security settings.
Google user data obtained through Gmail APIs is used solely to provide or improve the email-sending functionality you request — and for no other purpose. It is:
— never sold or rented to third parties;
— never used for advertising, marketing, or any other commercial purpose beyond delivering the specific email-sending feature you initiated;
— never used to train, fine-tune, or improve any AI or machine-learning model, whether operated by MarketIQ, Anthropic, or any other party;
— never transferred to Anthropic or any other third party except as strictly necessary to deliver the specific email you initiate inside MarketIQ.
MarketIQ staff and contractors do not access your Gmail data. The only exception is if you explicitly report a technical issue and grant permission for us to inspect the relevant data to diagnose it, or where required by law.
When you connect Gmail, MarketIQ requests only gmail.send — the minimum scope required to send email on your behalf. No inbox, contacts, calendar, or other Gmail data is accessed.
MarketIQ's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
2A. Google Calendar Integration
Google Calendar access is used only to suggest available meeting times when you reply to a contact inside MarketIQ. MarketIQ reads only your free/busy time blocks on your primary Google Calendar for the next several days — start and end times only. MarketIQ does not read event titles, descriptions, attendees, or locations, and does not create, modify, or delete any calendar events. You can revoke Calendar access at any time from your Google Account security settings.
Google user data obtained through the Calendar API is used solely to provide the meeting-time-suggestion functionality you request — and for no other purpose. It is:
— never sold or rented to third parties;
— never used for advertising, marketing, or any other commercial purpose;
— never used to train, fine-tune, or improve any AI or machine-learning model, whether operated by MarketIQ, Anthropic, or any other party — free/busy data is not sent to any AI provider under any circumstance; meeting-time suggestions are computed directly from Google's calendar data;
— never transferred to Anthropic or any other third party.
When you connect Google Calendar, MarketIQ requests only calendar.freebusy — the minimum scope required to check your availability. No event content, contacts, or other Calendar data is accessed.
MarketIQ's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
3. Outlook / Microsoft 365 Integration
Outlook access is used only to send emails you explicitly approve — outreach emails you compose inside MarketIQ. MarketIQ also retrieves your connected Outlook address to display connection status in the app. MarketIQ does not read, modify, delete, or access your inbox, sent folder, drafts, calendar, contacts, or any mailbox contents. You can revoke Outlook access at any time from your Microsoft Account security settings.
Microsoft user data obtained through the Microsoft Graph API is used solely to provide the email-sending functionality you request — and for no other purpose. It is:
— never sold or rented to third parties;
— never used for advertising, marketing, or any other commercial purpose beyond delivering the specific email-sending feature you initiated;
— never used to train, fine-tune, or improve any AI or machine-learning model, whether operated by MarketIQ, Anthropic, or any other party;
— never transferred to Anthropic or any other third party except as strictly necessary to deliver the specific email you initiate inside MarketIQ.
When you connect Outlook, MarketIQ requests only the Mail.Send and offline_access delegated permissions via Microsoft Graph — the minimum required to send email and refresh your token. No inbox, contacts, calendar, or other mailbox data is accessed.
4. Prospect Discovery
When you use Prospect Discovery, MarketIQ searches publicly available web sources — company websites, public directories, and news articles — to surface contact and company information. We do not scrape private data, bypass authentication walls, or access any system without authorization.
Prospect data you save is stored privately in your account and is not shared with other users.
5. AI-Generated Content
MarketIQ currently uses Anthropic's Claude API, and may use other AI providers over time, to generate intelligence briefs, email drafts, and signal summaries. AI-generated content is clearly labeled and may be inaccurate — always review before acting on it.
Only your MarketIQ prospect and CRM data (names, companies, notes, pipeline stages, and outreach history you enter into MarketIQ) is sent to our AI providers to generate responses. Google user data obtained through Gmail or Calendar — including your email address, message content, and calendar data — is never sent to Anthropic or any other AI provider, and is never used as input to any AI or machine-learning model. See Sections 2 and 2A for MarketIQ's full Google data commitments.
Anthropic's handling of data submitted to their API is governed by their Privacy Policy.
6. Payments
Subscriptions are processed by Stripe. MarketIQ never stores your full card number. Stripe holds payment method data under their own PCI-DSS compliance.
Subscriptions renew automatically each billing period. You can cancel anytime from your account settings.
7. Data Storage & Security
Your data is stored on Supabase (PostgreSQL) with row-level security — your data is isolated from other users at the database level. Data is stored in the US.
All data transmitted between your browser and MarketIQ's servers is encrypted in transit via HTTPS/TLS. Sensitive credentials, including OAuth access tokens for Gmail and Outlook, are protected using industry-standard security measures and secured at rest by the controls provided by our infrastructure providers (Supabase and Render).
We do not sell, rent, or share your data with advertisers or data brokers. We share data only with service providers necessary to run the product, under their own data processing agreements. These currently include Supabase (database), Stripe (payments), Render (hosting), Vercel (frontend hosting), and Resend (transactional email) — this list may change as our infrastructure evolves, and we will update this policy to reflect material changes. Our AI providers, currently Anthropic and potentially others over time, receive only MarketIQ CRM data you have saved in the app, solely to generate AI responses you explicitly request. Google user data is never shared with Anthropic or any other AI provider.
Google user data — Limited Use commitment. MarketIQ uses Google user data solely to provide the Gmail sending and Calendar availability functionality you explicitly request. Specifically, MarketIQ:
— does not sell or rent Google user data to any party;
— does not use Google user data for advertising or marketing of any kind;
— does not use Google user data to train, fine-tune, or improve any AI or machine-learning model, whether operated by MarketIQ, Anthropic, or any other party;
— does not read, modify, or delete Gmail messages — the gmail.send scope is used only to send emails you compose, review, and approve inside MarketIQ;
— does not transfer Google user data to Anthropic or any other third party except as strictly necessary to deliver the specific email-sending action you initiate.
MarketIQ's handling of Google user data complies with the Google API Services User Data Policy, including its Limited Use requirements.
8. Data Retention
MarketIQ is built around long-term storage of your recruiting pipeline — your prospects, notes, contacts, outreach history, AI-generated drafts, and analytics remain stored for as long as your account stays open, because persistent access to that history is a core feature of the Service.
When you submit a verified account-deletion request, we delete or de-identify the personal data associated with your account within a reasonable operational period. We may retain limited records beyond that point where necessary for legal compliance, accounting or tax obligations, fraud prevention, security, dispute resolution, or enforcement of our agreements. Encrypted backup copies may also persist temporarily until they are overwritten through our normal backup rotation. Information that has been properly anonymized or aggregated so that it no longer identifies you may be retained indefinitely for analytics and product improvement.
Google API data is handled separately from ordinary account data, consistent with Google's Limited Use requirements. When you disconnect a Google integration (Gmail or Calendar) or delete your MarketIQ account, we revoke or render inaccessible the associated Google OAuth credentials as part of our account-disconnection or deletion process, and the related Google API data is deleted or rendered inaccessible promptly in accordance with our documented deletion procedures and applicable Google requirements — independent of the backup or anonymized-retention handling described above for ordinary account data.
You can revoke Google access at any time from your Google Account security settings, which immediately prevents MarketIQ from accessing Gmail or Calendar on your behalf going forward.
9. Your Rights & Controls
- Export your data — email support@marketiq.ai.
- Delete your account — email support@marketiq.ai. We'll delete or de-identify your data within a reasonable operational period, subject to the retention exceptions described in Section 8.
- Revoke Gmail access — in your Google Account settings at any time; this immediately stops MarketIQ from accessing Gmail on your behalf.
- Revoke Calendar access — in your Google Account settings at any time; this immediately stops MarketIQ from accessing your Calendar availability on your behalf.
- Revoke Outlook access — in your Microsoft Account security settings at any time.
- Cancel your subscription — in account settings; access continues until the end of the billing period.
10. Cookies
We use a single essential session cookie, currently set by our authentication provider, to keep you signed in. We do not use advertising or tracking cookies.
11. Changes
We'll update this page when our practices change. If we make material changes to how we collect, use, or share personal data — including Google user data obtained through Gmail — we will notify you by email before the changes take effect.
For non-material updates, continued use of MarketIQ after changes constitutes acceptance.
12. Contact
13. LinkedIn Extension
The optional MarketIQ Chrome Extension accesses LinkedIn pages you navigate to in order to assist with outreach preparation. Here is what the extension does and does not do with your data:
- What it reads. When you visit a LinkedIn profile, the extension reads the page structure (button labels, compose fields) to detect whether a Message or Connect button is present. It does not scrape or store profile content, connection lists, or personal data from LinkedIn.
- What it inserts. The extension inserts AI-generated draft text into LinkedIn's message compose field or connection note textarea — only when triggered by you from the MarketIQ dashboard.
- Status signals. After you manually send a message or connection request, the extension sends a minimal status signal (prospect ID and action type) to MarketIQ's backend so your pipeline can be updated. No message content is sent at that point.
- What it does not do. The extension never auto-sends messages, connection requests, or follow button clicks. It does not read your LinkedIn inbox, contacts list, or any data beyond the current page's action buttons and compose fields.
- Storage. Your MarketIQ auth token is stored locally in Chrome's extension storage on your device, not transmitted to third parties.
You may disconnect the extension (via the extension popup) or remove it entirely (via Chrome's extension manager) at any time. Removal stops all data access immediately.
14. Eligibility
MarketIQ is not directed to children or minors. You must be at least 18 years old to create an account, purchase a subscription, or use the Service. We do not knowingly collect personal information from anyone under 18. If we learn that someone under 18 has provided personal information to MarketIQ, we will take reasonable steps to delete it.