Privacy
Privacy Policy
Last updated: April 25, 2026
This policy explains how ColdCraft collects, uses, and protects information when you use the ColdCraft web app, APIs, and the ColdCraft for Gmail Chrome extension.
Information We Collect
We collect account information such as your name, email address, password hash, subscription plan, credit usage, and saved preferences.
When you generate or save emails, we process the information you provide, such as prospect name, company name, product name, value proposition, selected framework, selected tone, generated subject lines, generated email bodies, and saved emails.
The Chrome extension stores your ColdCraft app URL and a revocable extension token in local Chrome extension storage so you can stay connected.
Chrome Extension Access
The ColdCraft for Gmail extension works inside Gmail compose windows. It may access compose content only when you actively use the extension to generate, copy, insert, or save an email draft.
The extension does not read your Gmail inbox in the background, scrape unrelated web pages, monitor browsing history, or send emails automatically.
How We Use Information
We use your information to authenticate your account, generate cold email drafts, show history and saved emails, manage credits and plans, provide support, secure the service, and improve product reliability.
We do not use your information to determine creditworthiness or for lending purposes.
Service Providers
ColdCraft uses trusted service providers to run the product, including hosting, database, authentication, AI generation, and payment infrastructure. These providers process information only as needed to provide their services to ColdCraft.
Payment details such as card numbers are handled by our payment processor. ColdCraft does not store full payment card numbers.
Data Sharing
We do not sell user data. We do not transfer user data to third parties for advertising, unrelated purposes, or creditworthiness/lending decisions.
We may disclose information if required by law, to protect the security of the service, or to prevent abuse.
Data Storage and Security
Extension tokens are stored locally in Chrome extension storage. On our servers, extension tokens are stored as hashes, can expire, and can be revoked from the ColdCraft dashboard.
We use reasonable administrative, technical, and organizational safeguards to protect information. No internet service can guarantee perfect security.
Your Choices
You can revoke Chrome extension tokens from the ColdCraft dashboard. You can also delete generated history and saved emails from your account where those controls are available.
You may contact us to request help with account data, privacy questions, or deletion requests.
Contact
If you have privacy questions, contact us at support@coldcraft.email.