Privacy commitments for members and public data.
GoLowKey is designed to show approved public business lead cards without exposing internal raw source material, raw mailbox data, raw CRM records, or customer AI conversations.
Private beta: $0, no payment method, 4 daily leads standard, 20 after an optional verified email or CRM connection.
- Member authentication uses company email and mailbox proof.
- Standard access is free during early access and does not require email or CRM connection.
- Provider connections are optional; members choose whether to connect email or CRM to raise daily access from 4 to 20.
- Optional provider connections are scoped to aggregated business signals such as domain activity, reply patterns, meeting intent, account stage, and industry tags.
- AI tool access through Claude, Codex, or ChatGPT sends GoLowKey only the tool request, signed-in member identity, selected filters, opened lead IDs, ratings, exports, and connection status needed to serve the request.
- GoLowKey does not ingest raw mailbox exports, raw CRM dumps, private cell lists, or unapproved people contacts.
- GoLowKey does not receive the customer's full AI conversation, private files, secrets, raw inbox, or raw CRM unless the customer explicitly connects a provider and sends approved business-signal summaries.
- Members can revoke provider access and request deletion of stored provider signal summaries.
- Data-rights, opt-out, DPA, and subprocessor review requests start at https://golowkey.app/trust-request.
- GoLowKey does not require a phone number or physical address to use the member flow.
- Support tickets are used to resolve customer issues and track service quality.
- Retention: support tickets and operational audit records are retained for up to 180 days; provider signal summaries are deleted on customer request or by the daily cleanup after a provider connection expires.
- Public-page analytics: Ahrefs Analytics may process public marketing and trust-page traffic after page load. Cloudflare processes edge request and delivery metadata; automatic Cloudflare browser analytics injection is disabled. Neither receives raw leads, mailbox data, CRM data, customer files, or private support details.
- Analytics scripts are not loaded on the member app, admin pages, private support links, authentication callbacks, or error pages. Public-page query strings and fragments are removed first, and Ahrefs is requested only after the page load lifecycle completes.
- Operator status: GoLowKey is currently a pre-incorporation service. No registered corporation or LLC is represented, and enterprise contracting remains unavailable until operator details are published.
- Incident notice: security events affecting customer data are assessed promptly and affected customers are notified through official account/contact channels when required by law or contract; no contractual breach-notice SLA is claimed yet.
- Data-broker posture: GoLowKey does not currently claim data-broker registration. Registration obligations are under review before paid public launch, and correction, opt-out, and suppression requests are accepted now.