← Back to Developer Platform
Legal

Privacy Policy

Effective date: August 15, 2026  ·  Ellari Ventures Development  ·  compliance@ellari.ai

Summary: ELLARI applications access only the minimum data required to perform their functions. We do not sell data, use it for advertising, or share it with third parties for commercial purposes. Google API data is used strictly per the Limited Use policy. Plaid data is read-only and never stored beyond the active session for display purposes. You can revoke access at any time.

1. Who We Are

This Privacy Policy applies to Ellari Ventures Development (EVD) and its associated products including FranchiseDash, Vault Protocol, the ELLARI-MCP integration platform, and other services deployed under the ellari.ai and ellari.dev domain infrastructure.

Privacy inquiries: compliance@ellari.ai  ·  Security: security@ellari.ai

2. Information We Collect

We collect information in the following categories depending on which integration is active:

  • OAuth tokens: Stored locally on your device. Never transmitted to ELLARI servers.
  • Email metadata: Subjects, senders, dates processed in working memory for the requested function. Not retained after session ends.
  • Email content: Message bodies accessed only when explicitly requested by the operator. Processed in memory, not stored.
  • Financial account metadata: Account names, types, and balances retrieved via Plaid Link for PFS completion. Not stored beyond display.
  • Operational logs: Action type and timestamp only. No message content or financial figures logged.
  • Account identifiers: Email addresses and Plaid Item IDs retained locally to identify which account to use for subsequent requests.

3. Google API Services — Gmail

Google ELLARI-MCP Gmail Integration

ELLARI's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Scopes requested and their purpose

  • userinfo.email — Identifies the authorized operator account. No profile data beyond email address.
  • gmail.labels — Creates and manages deal-context label taxonomy (e.g. DEAL/Lender, INVOICES/Outstanding).
  • gmail.send — Sends pre-reviewed messages with explicit operator approval. No automated sends.
  • gmail.modify — Reads, searches, labels, and archives messages. No deletion of emails.
  • gmail.metadata — Header-only inbox triage (subject, sender, date) without loading message bodies.
  • gmail.settings.basic — Creates filters that route incoming deal correspondence to the correct label automatically.
What we do
  • Read messages for the specific task requested
  • Apply labels and archive on operator instruction
  • Create filters to organize incoming mail
  • Send drafts after explicit operator review
What we never do
  • Retain email content after session ends
  • Use Gmail data to train AI models
  • Send messages without operator approval
  • Transfer data to third parties
  • Use data for advertising
  • Allow humans to read your email

Revoke Gmail access: Visit myaccount.google.com/permissions, locate ELLARI-MCP, and click Remove Access. Local tokens are deleted immediately. Or run: gmail-mcp-cli remove <account-label>

4. Plaid — Financial Data Integration

Plaid FranchiseDash Bank Account Integration

FranchiseDash integrates with Plaid to retrieve live bank account balances and transaction data for authorized operators completing SBA Personal Financial Statements (Form 413). Authentication is handled entirely by Plaid Link — ELLARI never sees your banking credentials.

What Plaid data we access

  • Account metadata: Account name, type (checking, savings, investment), institution name.
  • Balances: Current and available balance per account, retrieved at the time of connection or on explicit operator refresh.
  • Transactions (optional, operator-initiated): Recent transaction history used to support financial documentation for lender review.
How data is stored
  • Plaid access tokens stored encrypted in Cloudflare D1 (operator's deployment only)
  • Account metadata stored in D1 to populate PFS fields
  • Balance figures retained only for active deal documentation
  • No financial data transmitted outside the operator's Cloudflare deployment
What we never do
  • Access your banking credentials at any point
  • Move, transfer, or initiate transactions
  • Sell or share financial data with third parties
  • Store data beyond the active deal lifecycle
  • Use financial data for any purpose other than PFS completion

Plaid's own privacy protections

Financial data flows through Plaid's infrastructure, which is subject to Plaid's End User Privacy Policy. Plaid is SOC 2 Type II certified and uses bank-level encryption. ELLARI operates as a downstream recipient of the data Plaid returns — we do not interact directly with your financial institution.

Revoke Plaid access: Visit my.plaid.com to view and disconnect all Plaid-connected applications, including FranchiseDash. You may also request deletion of your stored Plaid access token by contacting security@ellari.ai. Deletion takes effect within 5 business days.

5. How We Use Information

Information obtained through third-party integrations is used exclusively to:

  • Perform the specific task requested by the authorized operator
  • Populate financial documentation (PFS, balance schedules) for lender review
  • Organize operator inboxes according to deal-context label rules
  • Maintain a timestamped audit log of actions taken (action type only, not content)
  • Authenticate subsequent API calls within the same authorized session

We do not use data from Gmail, Plaid, or any other integration to train AI models, build advertising profiles, conduct surveillance, or for any purpose beyond the immediate operator-requested task.

6. Data Storage and Retention

  • OAuth tokens (Google): Stored locally on the operator's device in the MCP server's SQLite database. Never uploaded to ELLARI servers. Retained until manually revoked.
  • Plaid access tokens: Stored encrypted in the operator's Cloudflare D1 database. Retained for the duration of the active deal. Deleted on request or when the deal is closed and archived.
  • Email content: Processed in working memory only. Not retained after session ends.
  • Financial balances and account metadata: Stored in D1 for PFS population. Retained until the deal closes or the operator requests deletion.
  • Audit logs: Action type and timestamp only. Retained 90 days, then deleted automatically.
  • Gmail filter rules and labels: Persist in the operator's Gmail account until the operator removes them. ELLARI does not automatically remove labels after a deal closes.

7. Data Sharing

We do not sell, rent, or share your data with third parties for commercial purposes. We may share data:

  • With Cloudflare, which hosts the infrastructure on which operator deployments run, under strict data processing agreements
  • With Plaid, as the intermediary that provides financial data under their own privacy policy and SOC 2 controls
  • If required by applicable law, court order, or governmental authority
  • In connection with a merger, acquisition, or sale of assets, with prior notice to affected operators

8. Your Rights

You have the right to:

9. Security

ELLARI infrastructure is deployed on Cloudflare with Zero Trust access controls, DNSSEC on all domains, TLS 1.2+ for all connections, and encrypted storage for credentials. OAuth tokens are stored locally and never transmitted over the network. Plaid access tokens are stored encrypted in Cloudflare D1 with D1's encryption at rest. We conduct periodic security reviews. Report vulnerabilities to security@ellari.ai.

10. Children's Privacy

ELLARI developer tools and integrations are intended for authorized business operators only and are not directed at individuals under 18. We do not knowingly collect data from minors.

11. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be posted at this URL with an updated effective date. Continued use of ELLARI integrations after changes constitutes acceptance of the updated policy.

12. Contact

Privacy & Compliance: compliance@ellari.ai
Security: security@ellari.ai
General: hello@ellari.ai
Operator: Ellari Ventures Development · ellari.ai