Privacy Policy
Last updated: December 1, 2025
Owner/Operator: aiinvite.me (“aiinvite.me”, “we”, “us”, or “our”)
This Privacy Policy explains how we collect, use, disclose, and protect information when you use the aiinvite.me website, application, and related services (collectively, the “Service”).
By accessing or using the Service, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree, you must not use the Service.
This policy is provided as a general template and should be reviewed by qualified legal counsel to ensure compliance with all laws applicable to your specific circumstances.
1. Overview of the Service
aiinvite.me is a tool that, with your permission, connects to your Gmail account to:
- Analyze email content and metadata to understand the context of your communications.
- Identify whether a LinkedIn connection exists with certain contacts.
- If a connection does not exist, generate a personalized LinkedIn connection invite draft based on the content and context of your email communications.
We do not sell your data or share it with third parties for advertising or unrelated commercial purposes.
2. Information We Collect
2.1 Information You Provide Directly
We may collect information you provide when you use the Service, including:
Account Information
- Name
- Email address
- Password or authentication data (if applicable; you may also sign in using OAuth-based mechanisms like Google Sign-In)
Profile and Settings
- User preferences (e.g., language, notification preferences, invitation templates)
- Any optional profile information you choose to provide
Communications with Us
- Support requests, feedback, or other communications sent via email, contact forms, or chat
2.2 Information We Collect from Gmail (With Your Explicit Permission)
When you connect your Gmail account, we access your Google data via Google APIs, subject to your explicit consent and the permissions (scopes) you grant. Depending on those scopes, this may include:
Email Metadata
- Sender and recipient email addresses
- Subject lines
- Timestamps
- Thread identifiers and basic message headers
Email Content
- The text/body of emails necessary to understand the context of the relationship and communication style
- Limited portions of prior email conversations, as needed to generate a personalized invitation message
Contact Information
- Names and email addresses extracted from your emails as necessary to identify whether a LinkedIn relationship may exist and to draft an invite
We aim to limit the data we process to what is reasonably necessary to provide the Service’s core functionality.
2.3 Information from LinkedIn or Other Sources
To determine whether a LinkedIn connection exists (or can be established), we may:
- Use publicly available data or user-supplied LinkedIn information (such as your LinkedIn profile URL if you provide it).
- Use third-party services or APIs, where applicable, strictly to check the existence of a connection or to help generate a suggested invite.
We do not store or collect your LinkedIn password. Where possible, we use OAuth, access tokens, or other secure mechanisms provided by LinkedIn or third-party services.
2.4 Automatically Collected Technical Information
When you use the Service, we may automatically collect certain technical information, including:
Usage Data
- Pages or screens visited
- Features used
- Actions performed and timestamps
Device and Log Data
- IP address
- Browser type and version
- Operating system
- Referring pages/URLs
- Error logs and diagnostic information
Cookies and Similar Technologies
- Session cookies to keep you logged in
- Preference cookies to remember settings
- Analytics cookies (if used) to understand usage patterns, where permitted by law
You can control cookies through your browser settings, but disabling certain cookies may affect the functionality of the Service.
3. How We Use Your Information
We use the information we collect for the following purposes:
To Provide and Operate the Service
- Analyzing your Gmail content and metadata to identify contacts with whom you are not connected on LinkedIn.
- Generating personalized LinkedIn connection invite drafts based on the context and content of your email communications.
- Presenting suggested invitation content for your review and manual submission.
To Manage Your Account
- Creating and managing your user account.
- Authenticating you when you log in.
- Communicating with you about your account, security issues, or changes to our terms or policies.
To Improve and Secure the Service
- Monitoring usage, performance, and reliability.
- Detecting, preventing, and addressing security incidents, fraud, or abuse.
- Conducting internal research and analysis to improve our features and user experience, where possible using aggregated and/or de-identified data.
To Comply with Legal Obligations and Enforce Rights
- Complying with applicable laws, regulations, legal processes, or enforceable governmental requests.
- Enforcing our Terms of Service and protecting the rights, property, or safety of aiinvite.me, our users, or others.
We do not use your Gmail content or email data for advertising or to build advertising profiles.
4. Legal Bases for Processing (GDPR / UK GDPR)
Where the EU General Data Protection Regulation (“GDPR”) or the UK GDPR applies, aiinvite.me acts as a Data Controller with respect to your personal data. We rely on the following legal bases:
Consent (Art. 6(1)(a))
- Accessing and processing your Gmail data via Google APIs to analyze email context and draft LinkedIn invitations.
- Using certain cookies and similar technologies where required by law.
Performance of a Contract (Art. 6(1)(b))
- Providing and operating the Service you sign up for, including account creation, authentication, and delivery of core features.
Legitimate Interests (Art. 6(1)(f))
- Maintaining and improving the security, performance, and reliability of the Service.
- Preventing abuse, fraud, or misuse of the Service.
- Conducting limited analytics and internal research to improve our features and user experience, provided such interests are not overridden by your rights and interests.
Legal Obligations (Art. 6(1)(c))
- Complying with our legal and regulatory obligations, such as responding to lawful requests from authorities.
Where we rely on consent, you may withdraw your consent at any time (for example, by revoking Gmail access or contacting us). This will not affect the lawfulness of processing based on consent before its withdrawal.
5. Google API Services and Gmail Data (Limited Use)
When you connect your Gmail account, aiinvite.me accesses your Google data via Google API Services. Our use of data obtained via Google APIs complies with Google’s API Services User Data Policy, including the Limited Use requirements.
In particular:
Limited Use of Gmail Data
We only access and use Gmail data to:
- Analyze your email communications to identify contacts where a LinkedIn connection might be appropriate.
- Generate personalized LinkedIn connection invitation drafts based on the context and content of your emails.
We do not use Gmail data to develop or improve generalized advertising models for us or for third parties.
No Selling of Gmail Data
We do not sell your Gmail data to any third parties.
No Use for Advertising
We do not use Gmail data for:
- Targeted advertising.
- Ad personalization.
- Creating marketing audiences.
Limited Human Access
We do not allow humans to read your Gmail content except:
- With your explicit consent.
- When reasonably necessary for security purposes (such as investigating abuse, fraud, or technical issues).
- When required to comply with applicable law or a valid legal process.
- When the data has been aggregated and/or anonymized and is used for internal operations (for example, to improve system performance).
Data Protection and Security
We apply technical and organizational measures designed to protect Gmail data at least as strongly as we protect other personal data described in this Privacy Policy.
You can revoke aiinvite.me’s access to your Gmail account at any time through your Google Account permissions settings.
6. Data Sharing and Disclosure
We take your privacy seriously. Specifically:
- We do not sell your personal data.
- We do not share your Gmail content or user data with third parties for advertising or unrelated commercial purposes.
We may share your information in the following limited circumstances:
Service Providers (Processors)
We may engage trusted third-party service providers to perform services on our behalf, such as:
- Cloud hosting and data storage
- Error monitoring and logging
- Analytics and usage monitoring
These providers are contractually required to:
- Use the data only to provide services to us.
- Implement appropriate technical and organizational security measures.
- Not sell or disclose your data for other purposes.
Legal Obligations and Protection
We may disclose information if required to do so by law or in response to valid legal processes, such as:
- A subpoena, court order, or government request.
We may also disclose information if we believe in good faith that it is necessary to:
- Detect, prevent, or address fraud, security, or technical issues.
- Protect the rights, property, or safety of aiinvite.me, our users, or the public, as required or permitted by law.
Business Transfers
If aiinvite.me is involved in a merger, acquisition, asset sale, financing, or similar transaction, your information may be transferred as part of that transaction.
We will take reasonable steps to ensure that any successor entity continues to handle your information in accordance with this Privacy Policy or will provide notice of material changes.
Aggregated or De-Identified Data
We may use and share aggregated, anonymized, or de-identified data that cannot reasonably be used to identify you.
For example, generalized statistics about feature usage, performance metrics, or error rates.
7. Data Retention
We retain your information only for as long as reasonably necessary to fulfill the purposes described in this Privacy Policy, including:
- While your account is active.
- For as long as necessary to:
- Provide the Service.
- Comply with legal obligations.
- Resolve disputes.
- Enforce our agreements.
We aim to:
- Minimize the storage of full email content or sensitive communication data.
- Prefer real-time or short-term processing where feasible, retaining primarily:
- Metadata and minimal context strictly needed for ongoing functionality; or
- Aggregated or derived data that does not re-expose raw email content.
When information is no longer needed, we will take reasonable steps to delete, anonymize, or de-identify it, subject to any legal or regulatory retention requirements.
8. Data Security
We implement technical and organizational measures designed to protect your information from unauthorized access, disclosure, alteration, or destruction, including:
- Encryption in transit (e.g., HTTPS/TLS).
- Access controls and authentication for internal systems.
- Principle of least privilege for internal access.
- Logging and monitoring for unusual or suspicious activity.
However, no method of transmission or storage is completely secure. While we strive to protect your information, we cannot guarantee absolute security.
9. Your Rights and Choices (GDPR / UK GDPR)
If you are located in the EU/EEA, the UK, or in a jurisdiction with similar laws, you may have the following rights with respect to your personal data:
Right of Access
Request confirmation of whether we process your personal data and obtain a copy of that data.
Right to Rectification
Request correction of inaccurate or incomplete personal data.
Right to Erasure (“Right to be Forgotten”)
Request deletion of your personal data, subject to certain exceptions (for example, where we are legally required to retain it).
Right to Restriction of Processing
Request that we limit processing of your personal data in certain circumstances.
Right to Object
Object to certain processing activities, particularly where we rely on legitimate interests.
Right to Data Portability
Request a copy of your personal data in a structured, commonly used, and machine-readable format, and request that we transmit it to another controller where technically feasible.
Right to Withdraw Consent
Where processing is based on your consent, you may withdraw that consent at any time, without affecting the lawfulness of processing before withdrawal.
To exercise any of these rights, please contact us using the details in the Contact Us section below. We may need to verify your identity before fulfilling your request.
You also have the right to lodge a complaint with your local data protection authority if you believe we have not handled your personal data in accordance with applicable law.
10. Your Rights Under CCPA/CPRA (California Residents)
If you are a resident of California, you may have the following rights under the California Consumer Privacy Act (“CCPA”) and the California Privacy Rights Act (“CPRA”), subject to certain exceptions:
Right to Know / Access
You may request that we disclose:
- The categories of personal information we have collected about you.
- The categories of sources from which the personal information is collected.
- The business or commercial purpose for collecting personal information.
- The categories of third parties with whom we share personal information.
- The specific pieces of personal information we have collected about you.
Right to Deletion
You may request that we delete personal information we have collected from you, subject to certain exceptions (for example, to comply with legal obligations).
Right to Correct
You may request that we correct inaccurate personal information that we maintain about you.
Right to Non-Discrimination
We will not discriminate against you for exercising any of your CCPA/CPRA rights. This means we will not:
- Deny you goods or services.
- Charge you different prices or rates.
- Provide you a different level or quality of goods or services,
except where a difference is reasonably related to the value provided by your data or permitted by law.
No Sale or Sharing of Personal Information
We do not “sell” or “share” your personal information as those terms are defined under CCPA/CPRA, including your Gmail data.
To exercise your rights under CCPA/CPRA, please contact us using the details in the Contact Us section below and specify that you are making a “CCPA/CPRA request.” We may need to verify your identity before fulfilling your request.
If you use an authorized agent to submit a request, we may require proof that you have given the agent signed permission to act on your behalf, and we may require you to verify your identity directly with us.
11. International Data Transfers
We may process and store your information on servers located in various countries, which may have data protection laws different from those in your country of residence.
Where required by law (for example, under GDPR/UK GDPR), we implement appropriate safeguards for international data transfers, such as:
- Standard Contractual Clauses (SCCs) approved by the European Commission or UK authorities; or
- Other legally recognized transfer mechanisms.
By using the Service, you understand that your information may be transferred to and processed in countries outside your country of residence.
12. Children’s Privacy
The Service is not intended for use by individuals under the age of 16 (or a higher age where required by local law). We do not knowingly collect personal information from children.
If we become aware that we have collected personal information from a child without appropriate consent, we will take reasonable steps to delete such information. If you believe a child has provided us with personal data, please contact us using the details below.
13. Third-Party Services and Links
The Service may contain links to or integrate with third-party websites or services, such as Google and LinkedIn. This Privacy Policy does not apply to those third-party services.
Your use of third-party services is subject to their own terms and privacy policies. We encourage you to review the privacy policies of any third-party services you use.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make changes, we will:
- Update the “Last updated” date at the top of this policy; and
- Where required by law, provide additional notice (for example, via email or in-app notifications).
Your continued use of the Service after the effective date of any changes constitutes your acceptance of the revised Privacy Policy. If you do not agree to the changes, you must stop using the Service.
15. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, you can contact:
Compliance Officer
Email: compliance@aiinvite.me
We will do our best to respond to your request in a timely and appropriate manner, consistent with applicable law.