Privacy policy
WarmPath finds warm introductions: it works out who in your team actually knows the person you need to reach, from the pattern of your email and calendar — who you corresponded with, and when. This page says exactly what WarmPath reads, what it keeps, who can see it, and how to remove it. Nothing is hidden from you: the Your data page shows the same facts live for your own account.
What WarmPath reads
- Google. Two read-only permissions:
gmail.metadataandcalendar.events.readonly. The Gmail metadata scope returns message headers only — sender, recipients, date, thread — and by Google's design cannot return the body of a message or its attachments. Subject lines are visible to the scope but WarmPath does not keep them. From Calendar it reads event times and attendee addresses. - Microsoft.
Mail.ReadBasic,Calendars.ReadBasicandUser.Read. Mail.ReadBasic returns messages “except body, preview and attachments”, in Microsoft's words. WarmPath keeps sender, recipients and date only. - LinkedIn. Only what you upload yourself: the connections export (name, company, position, profile URL, and an email address where the contact has allowed it). WarmPath never signs in to LinkedIn.
- You. Your name, email address, title and company, and anything you type into your profile.
What WarmPath stores
- For each person you correspond with: name, email address, company, title and LinkedIn URL where known.
- For each person, per month: how many emails you sent them and received from them, how many meetings you shared, how many were one-to-one, how many were replies, and the typical reply time. Per-message records are folded into these monthly counts and then deleted — WarmPath does not keep a list of individual emails.
- A relationship score and label (strong, warm, known, weak) computed from those counts, and any rating you set yourself.
- Intro requests you make or receive, including the note you write.
- The OAuth tokens needed to refresh your mailbox, which you can revoke at any time by disconnecting.
Never stored: message text, attachments, subject lines, or anything from a message beyond who, when and whether it was a reply. Contacts at personal email providers (Gmail, Yahoo, iCloud, Outlook.com and similar) are dropped by default, as are newsletters, notifications and other automated senders.
Who can see it
- You see everything WarmPath holds about your network.
- Your workspace — people signing in with the same company email domain — can search through your network and see, for each person you know, your relationship label and, if you allow it, the monthly counts behind it. You choose between “labels only” and “full evidence”, and can pause sharing at any time.
- Guests you invite share their network with the workspace one-way, at the visibility they pick, and can pause or leave at any time.
- Nobody outside your workspace or your explicit one-to-one shares can see anything. There is no public directory.
Google API Services — limited use
WarmPath's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Google user data is used only to compute relationship scores and routes inside your workspace. It is never sold, never used for advertising, never used to train models, and never transferred to third parties except as needed to run the service (hosting) or as required by law.
Where it lives, and for how long
WarmPath runs on Render in the United States. Data is kept while your account exists. Monthly counts older than the lookback window you choose (two years by default) are dropped on each refresh. When you delete your account, everything tied to it — people, counts, scores, tokens, intro requests — is deleted immediately and is not recoverable.
Your controls
- Exclude any person, address or domain so they never enter your network (Your data).
- Disconnect a mailbox, which revokes WarmPath's access and stops refreshes.
- Pause or narrow sharing with your workspace or any individual (Workspace).
- Delete your account and all of its data in one click (Your data).
Contact
Questions or requests about your data: cael.tackett@uplabs.us.