Privacy Policy
Policy version: 2026-08-12
Last updated and effective: August 12, 2026
This Privacy Policy explains how ScaledRev, LLC, doing business as FoundryOps, collects, uses, processes and shares information when you use the FoundryOps website, APIs, g-gremlin CLI, Google Sheets apps or add-ons, and related services (collectively, the “Services”).
The data handled by a particular workflow depends on the features and connected services you choose. This policy avoids absolute claims because product data can exist in your spreadsheet, connected services, FoundryOps processing systems, operational records and service-provider systems as described below.
1. Information we collect and process
- Account and authentication information: name, email address, organization, authentication identifiers and legal-acceptance records.
- Google Workspace data: spreadsheet content, file references and related metadata selected or made available for a requested Sheets workflow.
- Salesforce data: connection metadata and report, query or refresh results requested through a connected Salesforce account.
- Workflow data: selected inputs and generated outputs for matching, standardization, transforms, models, webhook workflows and other features you invoke.
- AI workflow data: selected content, configuration and results needed to perform a user-requested AI workflow.
- Usage and technical data: feature events, timestamps, IP address, user agent, performance data, security events and error logs.
- Commercial and support information: billing account data handled through our payment provider and information you include in support communications.
2. How we use information
- Provide the workflows, integrations, authentication and account functions you request.
- Write requested results to your spreadsheet and maintain the state needed for connected workflows.
- Operate, secure, troubleshoot and improve user-facing product functions.
- Prevent abuse, investigate incidents and enforce applicable agreements.
- Provide support and service communications.
- Meet legal obligations and protect the rights, safety and integrity of users, FoundryOps and others.
We do not sell customer data or use it for advertising, credit decisions or training generalized models.
3. Google Workspace user data
FoundryOps does not sell Google Workspace user data or use it for advertising, credit decisions or training generalized models. Google Workspace data is used and transferred only as needed to provide or improve user-facing features, maintain security, comply with law, or as otherwise permitted by the Google User Data Policy and Limited Use requirements.
The use of information received from Google Workspace APIs will adhere to the Google User Data Policy, including the Limited Use requirements.
You control which spreadsheets and product workflows you use. Google access can be revoked through your Google account controls. Revoking access stops future API access but does not automatically remove information already processed or retained for the qualified purposes described in this policy.
Google Workspace API User Data Policy4. Salesforce and connected services
Salesforce report, query and refresh workflows are read-only. Separately labeled write-capable workflows, if offered, are disclosed and qualified independently.
When you connect another service, FoundryOps receives and uses the authorization and data needed for the functions you select. You can revoke provider access at that provider. Revocation does not itself delete prior outputs, logs or operational records held elsewhere.
5. AI-powered workflows
FoundryOps does not sell customer data or use it for advertising, credit decisions or training generalized models. When a user chooses an AI-powered workflow, selected data may be sent to the configured provider solely to perform that requested workflow. Provider handling is disclosed in our security and data-handling documentation.
The provider, fields and purpose may differ by workflow. Relevant product or data-handling documentation identifies the configured provider and expected data path. Do not include information in an AI workflow unless you are authorized to process it in that way.
6. Service providers and disclosures
We disclose information to service providers only for roles needed to operate the Services or perform a workflow you request. Depending on your use, providers may include Google Cloud for application infrastructure and selected model services, Clerk for authentication, Stripe for billing, Resend for transactional email, Salesforce for connected CRM workflows, and the configured provider for a user-selected AI workflow.
A provider does not automatically receive every category of customer data. The information disclosed depends on its role and the features you use.
- Connected services: when you authorize or direct an integration.
- Legal and safety: when reasonably necessary to comply with law, protect rights and safety, or secure the Services.
- Business transactions: in connection with a financing, acquisition, restructuring or sale, subject to applicable safeguards.
7. Storage, processing and logging
Customer data may be stored or processed in Google Sheets, connected providers, FoundryOps application storage, databases, queues and worker systems. Webhook delivery state, selected payload context and generated artifacts may be retained where needed to operate the selected workflow.
Logs may include account, request, error, performance and security context. We design logs to support reliability and security, but they may contain limited customer or workflow data when needed to diagnose a request or preserve an audit record.
8. Retention and deletion
Retention varies by data category, system and operational purpose. We retain data for as long as needed to provide and secure the Services, meet legal obligations, investigate abuse, maintain financial or audit records, or resolve disputes. We do not state a single retention period where the architecture does not support one.
You may request account or customer-data deletion through our support page. We evaluate requests against the data’s location, connected-provider controls, technical constraints and legal obligations. Deletion from an active system may not immediately remove protected backups, security records or records that must be retained for a permitted purpose.
9. Security
We use administrative, technical and organizational safeguards designed to protect information. No system can be guaranteed secure. Protect your accounts, credentials and connected-service authorizations, and report suspected problems through our support page. Our current practices and assurance boundaries are described on the Trust page.
10. Your choices
- Choose which connected services and workflows to authorize.
- Revoke provider access through the applicable provider’s controls.
- Update available account information and opt out of non-essential communications.
- Request access to or deletion of applicable data by contacting support.
11. International processing
Information may be processed in the United States and other locations where FoundryOps or its providers operate. Applicable protections depend on the service, provider and jurisdiction.
12. Changes to this policy
We may update this policy as the Services and applicable requirements change. The current version and effective date appear at the top of this page. A future change that materially expands data use may require a new acceptance rather than relying on compatibility with an earlier version.
13. Contact
For privacy questions or requests, use the FoundryOps support page. Do not include passwords, access tokens, API keys or customer spreadsheet rows in an initial request.