---
title: "Privacy policy"
url: https://tryavocet.com/legal/privacy
site: "Avocet CRM (tryavocet.com)"
description: "What Avocet CRM collects, why, how long it is kept, who it is shared with, and how to have it deleted."
published: 2026-08-19
updated: 2026-08-19
---

# Privacy policy

**Avocet CRM processes the business communications you connect in order to produce deal insight for your organisation. We do not sell data, do not use your content to train models, and delete an organisation’s data on request.**

> This document is under legal review ahead of general availability. It states our actual practices; the wording may change before launch.

## What does Avocet CRM collect?

Account data you give us (name, work email, organisation), customer data you import or connect (companies, people, deals, and the content of connected mailboxes and calendars), and operational data generated by using the service (audit entries, job results, error reports).

We do not collect special category data deliberately and we ask you not to put it into Avocet CRM.

## Why do you process it?

To provide the service you bought: assembling account timelines and producing deal insight for your organisation. For business customers we are a processor acting on your instructions, and your DPA governs that relationship.

## Is my content sent to an AI provider?

Yes, narrowly. A specific task receives the minimum span of text it needs — a deal’s fields and the recent messages on one thread — under contractual terms that require zero retention and prohibit training on your content. Every provider is named in our subprocessor list.

## Do you sell or share data for advertising?

No. We do not sell personal data, do not share it with advertising networks, and run no third-party advertising or tracking scripts on tryavocet.com.

Marketing attribution uses a single first-party cookie holding the campaign parameters of your first visit. It is not readable by client-side JavaScript and is not shared with anyone.

## How long is data kept?

Customer data for as long as your organisation exists, then deleted within 30 days of deletion or account closure. Audit entries are retained for 24 months because they exist for incident response. Backups roll off within 35 days.

## How do I access, export or delete my data?

Export and deletion are self-service inside the product for an organisation owner. For an individual request, email privacy@tryavocet.com and we will respond within 30 days.

## Where is data stored?

In the United States, in our managed PostgreSQL and object storage. Subprocessors and their locations are listed on the subprocessor page.

## Related

- https://tryavocet.com/legal/dpa
- https://tryavocet.com/legal/subprocessors
- https://tryavocet.com/security
