Privacy Policy
Last Updated: August 2026
At Runable, we treat your data with the same care and intention as we build our product. This Privacy Policy explains what information we collect, how we use it, and the choices you have.
Runable collects only the information necessary to provide a secure, reliable, and continuously improving experience. We do not sell your personal data, and we are transparent about how information flows through our systems. This policy is designed to comply with applicable data protection regulations, including the EU General Data Protection Regulation (GDPR) and Brazil's Lei Geral de Proteção de Dados (LGPD).
This Privacy Policy applies whenever you use Runable's websites, applications, or services (collectively, the "Services"). By accessing or using Runable, you agree to this Privacy Policy and any updates we publish. If you have questions at any time, contact us at support@runable.com.
Information We Collect
We collect information that helps us operate Runable responsibly and effectively, including:
1. Personal Information - When you create an account or interact with our Services, we may collect: Name, Email address, Account credentials and profile details
2. Payment Information - When you make purchases, we collect information required to process payments securely, such as billing details. Payment information is handled through trusted third-party payment processors and is not stored directly on our servers except as required for compliance or records.
3. Usage Data - We collect information about how you use Runable, including: Features accessed, Actions taken within the platform, Device, browser, and log data. This helps us understand usage patterns and improve performance, reliability, and user experience.
4. Cookies and Similar Technologies - We use cookies and similar technologies to: Keep you signed in, Remember preferences, Improve functionality and performance. You can manage cookie settings through your browser preferences.
Legal Basis for Processing
We process personal data based on the following legal grounds, as applicable under the EU General Data Protection Regulation (GDPR), Brazil's Lei Geral de Proteção de Dados (LGPD), and other applicable data protection laws:
Contract performance: To provide the Services you have requested or subscribed to
Legitimate interest: To improve, secure, and operate the platform
Consent: Where you have provided explicit consent, such as for marketing communications
Legal obligation: To comply with applicable laws, regulations, and lawful requests
How We Use Your Information
We use the information we collect to:
Provide, operate, and maintain the Runable platform
Personalize and improve your experience
Process payments, invoices, and account-related notifications
Communicate important updates, security notices, and service messages
Provide customer support and respond to inquiries
Analyze usage trends to improve features, performance, and reliability
Comply with legal obligations and enforce our terms
Data Sharing
We do not sell your personal information. We may share data only in the following limited circumstances:
With trusted service providers who help us operate the platform (e.g., payment processing, analytics, infrastructure)
To comply with legal obligations, court orders, or lawful requests
To protect the rights, safety, and security of Runable, our users, or others
All third-party partners are required to maintain appropriate data protection standards.
Third-Party Integrations
Runable connects with chat and collaboration platforms such as Microsoft Teams, Slack, Discord, and Telegram. When you link Runable to one of these platforms, we receive only the data necessary to operate the integration:
Connected account information: We receive information that identifies your account and workspace on the service you connect. We use it to link and operate the integration
Messages and conversation context: When Runable is invoked through a messaging integration, we process the request and relevant context from that conversation. For example, when Runable is invoked in a Discord thread, preceding thread messages and attachments may be processed to understand the discussion and complete the requested task
Storage: Relevant messages may be converted into a transcript. Transcripts and attachments may be stored with the associated Runable conversation
AI processing: Integration data may be sent to Runable's sub-processors, including infrastructure and AI service providers, to generate the response or deliverable requested by the user
Authorization scopes: Some features require granting Runable specific permissions (for example, uploading deliverables to SharePoint when used in Microsoft Teams). We request only the minimum permissions necessary and never access data outside the scope you grant
Data sharing: We do not sell or share data received from integrations with third parties beyond the trusted service providers listed in 'Data Sharing'
Disconnecting an integration: Disconnecting stops future use through the connected Runable account but does not automatically delete information already stored in Runable
Deletion requests: You may request deletion of stored integration activity data, including messages, transcripts, and attachments, by emailing support@runable.com. We may verify your identity before processing the request and retain limited information when required for legal, security, fraud-prevention, or compliance purposes
Google User Data & Limited Use
When you connect a Google account to Runable — for Meet, through the Google Workspace connector (Gmail, Google Drive, Calendar, Docs, Sheets, Slides, and Forms), or by connecting your Google Ads account — we access only the data permitted by the scopes you grant. Runable's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements (see https://developers.google.com/terms/api-services-user-data-policy). For Google user data, the terms in this section control over any more general language elsewhere in this Privacy Policy. Specifically:
Scopes we request: Every Google connection includes basic identity scopes (openid, email, profile) to identify the connected account. Each Workspace service is optional, enabled by you individually, and requested incrementally at the access level you choose — read-only or full: Gmail (gmail.readonly, or gmail.modify for full access), Drive (drive.readonly for read-only access, or drive for full access including file management and sharing you request), Sheets (spreadsheets.readonly or spreadsheets), Docs (documents.readonly or documents), Calendar (calendar.readonly, plus calendar.events for full access), Slides (presentations.readonly or presentations), and Forms (forms.body.readonly or forms.body, plus forms.responses.readonly). Meet uses calendar.readonly to read upcoming events so it can display them and add the Runable notetaker to meetings you choose. We request only the minimum scopes necessary and never access Google data outside the scopes you grant
Google Ads: If you ask Runable to manage advertising, you can connect your own Google Ads account. That connection requests a single scope, https://www.googleapis.com/auth/adwords, and no identity or other Google scopes. Runable uses it only on your instruction to read your accessible Ads accounts (account ID, name, currency, time zone, status), campaigns, budgets, ad groups, ads (including approval status, headlines, descriptions, and final URLs), keywords and negative keywords, location targeting, conversion-tracking configuration (including the site tag shown to you for installation), and performance metrics (impressions, clicks, cost, conversions); and to create, update, pause, resume, end, or remove the campaigns, budgets, ads, and keywords you request. Runable does not access Google Ads billing or payment information, audience or customer lists, or your Google profile through this connection, does not create or link Ads accounts, and never changes your account except to carry out an instruction you give
Providing user-facing features: We use Google user data only to provide the user-facing features you invoke — for example searching or sending your email, reading or creating files, documents, spreadsheets, presentations, and calendar events when you ask Runable to, or reviewing and managing your Google Ads campaigns when you ask Runable to. We do not use it for any other purpose
AI processing: Google user data retrieved to complete your request is processed by the infrastructure and AI model providers listed at runable.com/sub-processors, solely to generate the response or deliverable you asked for. These providers are bound by data processing terms that prohibit using your data to train their models. We do not retain or use Google user data, including data obtained through Google Workspace APIs, to develop, improve, or train generalized (non-personalized) machine learning or artificial intelligence models
No advertising: We do not use Google user data for personalized, targeted, or interest-based advertising, and we do not use it for marketing. When you connect Google Ads, Runable manages your own campaigns solely at your direction; we do not use any other Google user data for advertising purposes
No prohibited secondary uses: We do not transfer, sell, or use Google user data to determine credit-worthiness or for lending purposes
Limited transfers: We do not sell Google user data, and we transfer it only with your consent to service providers that operate Runable on our behalf under equivalent Limited Use obligations, to comply with applicable law, or as part of a merger or acquisition after obtaining your explicit prior consent
No human access: We do not allow humans to read your Google user data unless you give explicit consent to read specific data, it is necessary for security purposes (such as investigating abuse) or to comply with applicable law, or the data has been aggregated and anonymized for internal operations
Storage and deletion: Google authorization tokens are stored encrypted at rest (AES-256). Content retrieved from Google is processed to complete your request and stored only as part of the resulting conversation or deliverable. You can disconnect any service at any time; on disconnect, Runable revokes its authorization with Google and deletes the stored tokens. You may request deletion of stored content by emailing support@runable.com
Data Security
We implement industry-standard safeguards to protect your information, including:
Encryption of sensitive data in transit and at rest
Strict access controls and internal permissions
Ongoing monitoring and security reviews to detect and prevent threats
While no system can guarantee absolute security, we continuously work to protect your data.
International Data Transfers
Runable's infrastructure is hosted on Google Cloud Platform with servers located in Oregon, United States. If you access the Services from outside this region, your data may be transferred internationally. When this occurs, we ensure appropriate safeguards are in place, including encryption in transit and at rest, and contractual protections with our service providers, to maintain the security and privacy of your personal data in accordance with applicable laws, including the LGPD and GDPR.
Encryption in transit and at rest
Contractual protections with our service providers
Compliance with applicable laws, including the LGPD and GDPR, to maintain the security and privacy of your personal data
Incident Notification
In the event of a security incident that results in unauthorized access to, or loss of, personal data, Runable will notify affected users and relevant data protection authorities as required by applicable law, including the Brazilian ANPD and EU supervisory authorities, within the timeframes prescribed by those laws.
Data Retention
We retain personal information only for as long as necessary to:
Provide the Services
Fulfill legal, accounting, or compliance requirements
Resolve disputes and enforce agreements
When data is no longer needed, it is securely deleted or anonymized.
Your Rights & Choices
You remain in control of your data. Depending on your location and applicable laws, you may have the right to:
Access the personal data we hold about you
Update or correct your information
Request deletion of your account and associated data
Opt out of marketing communications
Withdraw consent where processing is based on consent
To exercise these rights, contact us at support@runable.com.
Request a copy of your personal data in a structured, commonly used, and machine-readable format (data portability)
Children's Privacy
Runable is not intended for use by individuals under the age of 13 (or the minimum legal age in your jurisdiction). We do not knowingly collect personal information from children.
Changes to This Policy
We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated "Last Updated" date. Continued use of Runable after changes means you accept the updated policy.
Contact Us
If you have questions, concerns, or requests related to privacy or data protection, reach out to us at:
We respond to all privacy-related inquiries and are happy to help you review or manage your data. support@runable.com.
