What we collect, why, and who sees it.
We audit other people's operations for a living, so we hold ourselves to the standard we grade against. Plain words, no legal fog.
Effective September 3, 2026. If this page changes, the date changes with it.
What we collect
The working call form. Your name, your email, and whatever you type in the note field. That is all the form asks for because that is all a first conversation needs.
The Role Check. Your answers stay in your browser while you take it and clear when you close the tab. We never see them unless you press the send button, and then we receive your email address and a summary of your answers and results. If you never press send, nothing reaches us.
Workbench Sessions and audit work. Whatever you choose to send to hi@cooperage.works or show us on a call, such as documents, examples, and screenshots. You share it because you hired us to work with it.
Assistant interview answers. If you set up an Email Assistant or another Cooperage Assistant, we collect your business name, contact info, and the answers you give in that short interview (which inbox to watch, how you want it to sound, what it should leave alone). This is what tells the Assistant how to behave for you specifically.
We do not use analytics trackers, advertising pixels, or cookies. The Role Check uses your browser's own short-term storage so your answers survive a refresh; that storage lives on your device and erases itself when the tab closes.
Gmail and Microsoft 365 access, specifically
If you connect a Gmail or Microsoft 365 inbox to an Email Assistant, here is exactly what that means, no fog:
What we ask for. Read and modify access to the one inbox you choose (Gmail: gmail.readonly, gmail.modify; Microsoft: Mail.Read, Mail.ReadWrite). This lets the Assistant see messages and save draft replies. It does not include your password; you grant access the same way you would for any app, directly through Google's or Microsoft's own consent screen, and you can revoke it anytime from your own account settings.
What the Assistant can do with that access. It reads your inbox on a schedule, drafts replies to messages that have gone unanswered, and saves those drafts to your Drafts folder. It never sends an email. There is no send capability built into it at all, not a setting you have to turn off, it genuinely is not there. Every reply waits for you to read it, edit it if you want, and hit send yourself, or delete it.
Where it runs. On a server we manage (not shared with any other client's data, not on your device), solely to perform the actions above. We do not read your inbox ourselves, sell or share its contents, or use it to train any model.
How long we keep it. Your access token is kept only as long as the Assistant is active for you. The moment you revoke access (from your Google or Microsoft account settings, or by asking us to turn it off) or end the engagement, we delete the stored token and stop accessing your inbox entirely. We do not retain a copy of your email content beyond what a draft reply itself needs while it is waiting for your review.
This use of your data complies with the Google API Services User Data Policy, including the Limited Use requirements.
Why we collect it
To reply to you, to prepare for a call, and to do the work you asked for, including running the Assistant you set up. Nothing else. No newsletter unless you ask for one. No selling or renting your information to anyone, ever. No ads.
Who sees it
A small team, the partners who do the work. No junior staff, no subcontractors, no offshore processing. Assistant drafts are visible only in your own inbox; we do not read them as a routine matter.
A few services carry the data on the way to us. Form and Role Check submissions are delivered by Formspree, a form delivery service, and our email and file storage run on Google Workspace. Client materials are filed in a private folder in our Workspace and nowhere else. Assistant access tokens and drafting activity run on infrastructure we operate directly. None of these act on your data for their own purposes on our behalf.
How long we keep it
Inquiries and Role Check reports are kept while the conversation is live and cleaned out when it is not. Client engagement materials are kept for the engagement and a reasonable record-keeping period after, then deleted. Assistant access tokens are deleted immediately on revocation or engagement end, per the section above.
Your choices
Email hi@cooperage.works and ask what we hold about you, ask us to correct it, or ask us to delete it. We will do it and confirm, usually within a few days. You can also revoke Gmail or Microsoft 365 access yourself, anytime, directly from your Google or Microsoft account settings, no email needed. If you are in a place whose privacy law gives you additional rights, such as the EU or California, those rights apply and the same email is how you use them.
One more thing
If we ever add a tool that changes any of the above, such as analytics, this page gets updated before the tool goes live, not after.