Propensa

Privacy Policy

Last updated: August 4, 2026

Propensa (the "App") is operated by Swifton Digital ("we," "us," or "our"). We respect your privacy and are committed to protecting your personal information.

This Privacy Policy explains how we collect, use, store, disclose, and protect your information when you use our App, including information obtained through Google or Microsoft OAuth authentication.

By using the App, you agree to the collection and use of information in accordance with this policy.

1. Information We Collect

We collect the following types of information:

Information from Google or Microsoft OAuth: When you connect your Google or Microsoft account to Propensa, you may authorize us to access/use:

  • Contacts: Read-only access to import contact information (name, address, email, phone, organization)
  • Email Sending: Permission to send emails on your behalf when you choose to send activity reports or other messages
  • Email Address: Your email address for account verification

We only request the minimum scopes necessary for the App's features. You can choose which integrations to enable, and you can disconnect them at any time from your profile settings.

We do NOT:

  • Read your emails or inbox
  • Access your email history
  • Modify or delete your emails
  • Collect sensitive personal information

2. How We Use Your Information

We use the information collected from Google or Microsoft in the following capacities:

  • Contacts: Import and populate contact information into your Propensa account
  • Email Sending: Send activity reports and communications through your email account when you choose to do so
  • Account Verification: Confirm your email address for account authentication

2.1. Google Limited Use Disclosure

All use of Google user data complies with the Google API Services User Data Policy, including the Limited Use requirements.

Propensa's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

2.2. Microsoft Limited Use Disclosure

All use of Microsoft user data complies with the Microsoft APIs Terms of Use, including the Limited Use requirements.

Propensa's use and transfer to any other app of information received from Microsoft APIs will adhere to the Microsoft APIs Terms of Use Policy, including the Limited Use requirements.

We do NOT:

  • Use user data for serving ads
  • Sell or share user data with third parties except as necessary to provide the requested features
  • Allow humans to read user data unless necessary for security, compliance, or with your explicit consent
  • Use data for any purpose other than providing features you have explicitly requested

3. Storage and Security

We take data security seriously and implement industry-standard measures to protect your information:

  • Encryption: All data is encrypted in transit (TLS/SSL) and at rest (AES-256)
  • OAuth Tokens: OAuth tokens are encrypted using AES-256-GCM before storage
  • Access Controls: Strict access controls limit who can view your data
  • Secure Infrastructure: Data is stored on encrypted servers hosted by Amazon Web Services (AWS)

We retain Google and Microsoft data only as long as necessary for the App's functionality or until you revoke access or delete your account. You can disconnect your account at any time from your profile settings.

4. Sharing and Disclosure

We do not share user data with third parties except:

  • With service providers who assist us in operating the App (e.g., cloud hosting providers), bound by confidentiality obligations.
  • If required by law, regulation, or legal process.
  • In the event of a merger, acquisition, or sale of assets.

5. Your Choices and Rights

  • You can revoke the App's access to your Google data at any time via myaccount.google.com/permissions.
  • You can revoke the App's access to your Microsoft data at any time via myapps.microsoft.com.
  • You can request access, correction, deletion, or export of your data by contacting us at support@propensa.com.

6. AI Assistants and Connected Applications

Propensa can be connected to third-party AI assistants (such as Claude or ChatGPT) through our Model Context Protocol (MCP) server, and includes an optional in-app AI assistant. Because these features can send your Propensa data to an AI provider, they are described here in detail.

6.1. Connecting an AI assistant

A connection is never automatic. You authorize it explicitly using OAuth 2.1, and you grant specific permissions — reading records, reading financial data, reading documents, adding comments, or writing deal, financial, and document data. You may grant only some of these.

A connected assistant can only reach data your own Propensa account can already reach. It operates as you, subject to the same participation rules that govern the properties and clients you work on. It cannot see records belonging to brokers you do not work with.

6.2. What the AI provider receives

This is the most important thing to understand about this feature. When you connect an AI assistant and ask it about your deals, the assistant retrieves data from Propensa and sends it to its own provider for processing. That data — which may include property and client records, deal terms, commissions, contacts, comments, and attachments — is then handled under that provider's privacy policy and terms, not ours. We do not control how a third-party AI provider processes, retains, or uses data once it leaves Propensa, including whether it is used to improve their models.

Review your AI provider's privacy terms before connecting, particularly if your firm handles client information under a confidentiality obligation. Because a connected assistant acts with your permissions, only connect assistants you trust.

6.3. The separate in-app assistant

The connection described above is available to every Propensa account and requires no AI provider key of any kind — it runs on your own Claude or ChatGPT subscription, and Propensa neither supplies nor pays for that.

Propensa also offers a separate, optional assistant inside the app. That one is distinct in how it is paid for and how data flows: it requires your firm to supply its own AI provider API key, so inference runs against your firm's own accountwith that provider, under your firm's agreement with them. We do not proxy those conversations through a shared Propensa account, and there is no fallback to our key if yours is unavailable. That assistant is also restricted from browsing the internet, so it answers from your Propensa data alone.

Those restrictions apply only to the in-app assistant. A third-party assistant you connect under 6.1 is governed entirely by its own provider's capabilities and terms.

6.4. Retention and revocation

  • Chat history: in-app assistant conversations are retained on a 30-day rolling basis and then automatically deleted.
  • Connection tokens: access tokens issued to a connected assistant are encrypted at rest and remain valid until you revoke them or they expire.
  • Revoking access: you can disconnect a connected AI assistant at any time from your Propensa settings, or from within the AI client itself. Revoking takes effect immediately and prevents further access to your data.

Revoking a connection does not retract data that a third-party AI provider has already received. Requests to that provider must be directed to them.

7. Children's Privacy

Our App is not directed to children under 13 (or the applicable age in your region). We do not knowingly collect personal information from children.

8. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new policy on our website or via in-app notification.

9. Contact Us

If you have questions about this Privacy Policy or our data practices, contact us at:

Swifton Digital
support@propensa.com