Privacy Policy
How MONACOPS collects, uses, secures and retains personal data.
Controller
MONACOPS, 6 Boulevard de Belgique, Monaco. Contact: contact@monacops.com.
What we collect
- Contact form: name, company, email, phone, message.
- MONACOPS AI (website): conversation messages and an anonymous visitor id.
- MONACOPS ONE: account, preferences, memory, chat history, billed usage.
- Optional Gmail connector: encrypted OAuth tokens, email metadata (subject, sender, snippet, labels), temporary body text.
- Payment: Stripe identifiers. MONACOPS does not store card numbers.
Purposes
Answer enquiries, run MONACOPS ONE, execute mail agents under human approval, bill the subscription, secure the service. MONACOPS does not sell personal data and does not operate a mail data lake.
Retention
- Cookie consent: 12 months.
- Contact leads: while handling the request, then 24 months maximum.
- ONE account: until account deletion.
- Cached Gmail bodies: 24 hours, then automatic purge.
- Mail metadata: while Gmail stays connected, then deleted on disconnect or account deletion.
- OAuth tokens: until Gmail / Calendar disconnect or account deletion.
- Action audit logs: without email bodies, until account deletion.
Gmail and messaging
Gmail connection is optional. Tokens are encrypted server-side (AES-256-GCM). They are never sent to the browser, LLM prompts or logs. A received email is untrusted data: it cannot change policy, authorise a send or invoke a tool. Sending always goes through the action engine and, when required, human approval.
Cookies
Necessary cookies run the site and the ONE session. Analytics and marketing stay optional via the banner or the Cookies page.
Your rights
Access, rectification, deletion, objection, restriction and portability, within applicable law. ONE account deletion: from account settings. Other requests: contact page or contact@monacops.com.