Privacy Policy
Last updated 29 July 2026
Clere is a private assistant for individual advisors. It reads the accounts you connect, keeps a private set of notes about your own contacts and open work, and drafts messages and documents that you review and send. This policy describes exactly what it collects, what it does with it, and who else touches it.
The service is operated by Clere ("we", "us"). For any question about this policy or your data, write to [email protected].
What we collect
Information you give us
- Your name, email address and WhatsApp number, when you request access.
- The content of the messages you exchange with the assistant on WhatsApp, including anything you tell it about your clients, suppliers and work.
Information from Google, only after you connect it
Nothing below is accessed unless you complete the Google consent screen and grant it. You are shown these scopes at that moment and can decline any of them.
Every scope we ask for is read-only. Clere holds no permission to send, delete or alter anything in your account, and none to create anything there either. This is not a policy we apply to ourselves - it is the limit of what Google has granted us, and it holds even if our software asks for more.
| Scope | What it permits | What we actually do with it |
|---|---|---|
gmail.readonly | Read your email messages and settings. | Identify who you correspond with and what is still open, and read specific threads when answering a question you asked. |
userinfo.email, openid | Your Google account's email address. | Confirm which account is connected and recognise mail you sent yourself. |
How your Google data is used
We do not copy your mailbox wholesale. Message content is fetched from Google when it is needed and is not retained afterwards. What we do keep is a set of distilled notes: short markdown summaries of the people you deal with, the relationships between them, and the work still outstanding, each recording which message it came from so you can check it.
Those notes exist to do three things: answer the questions you ask on WhatsApp, produce a short daily summary of what looks like it is slipping, and draft documents and replies in your own style for you to review.
Google API Services User Data Policy
Clere's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
In particular:
- We do not use Google user data to develop, train, improve or fine-tune generalised artificial intelligence or machine learning models.
- We do not sell Google user data, and we do not use it for advertising, credit assessment, or any purpose unrelated to providing this service to you.
- We do not transfer Google user data to third parties except the processors listed below, which are necessary to operate the service, and except where required by law.
- No human at Clere reads your Google data, except where you explicitly ask us to in support of a problem you have reported, or where we are legally compelled to.
Who else processes your data
The assistant is built on a large language model, which means the content it reasons over is sent to a model provider to be processed. That is the central thing to understand about how this service works.
| Processor | Purpose | Location |
|---|---|---|
| Anthropic | Runs the model. Receives your notes and the message content being reasoned over. Under Anthropic's commercial API terms, this content is not used to train their models. | United States |
| Amazon Web Services | Runs the service and stores your notes on an encrypted volume. | Frankfurt, Germany (eu-central-1) |
| Supabase | Database of account records and encrypted Google refresh tokens. No message or file content. | European Union |
| Twilio | Delivers WhatsApp messages between you and the assistant. | United States |
| Meta Platforms | Operates WhatsApp itself. Your messages pass through WhatsApp exactly as any other WhatsApp business conversation does. | United States |
| Langfuse | Operational monitoring. Receives timing, cost and error metadata. Message and document content is deliberately not sent. | European Union |
| Vercel | Serves this website only. It never receives Google data; it sees only what you type into the access request form. | Global edge network |
Transfers to processors in the United States are made under the European Commission's Standard Contractual Clauses.
How it is protected
- Your notes are never pooled with anyone else's. Each operator has a separate, isolated store, and the software enforces this: a request running for one operator is physically prevented from reading another's files.
- Google refresh tokens are encrypted at rest with a key held separately from the database.
- Everything travels over TLS.
- Your notes are version-controlled, so any change can be traced and reversed, and every stored fact records the message or file it came from.
How long we keep it
Your notes and account record are kept for as long as you use the service. Message and file content fetched from Google to answer a question is not retained beyond the moment it is used.
You can disconnect Google at any time at myaccount.google.com/permissions, which immediately ends our access. To have everything deleted, write to [email protected]; we will erase your account, your notes and your stored tokens within 30 days and confirm when it is done.
Your rights
If you are in the European Economic Area, the United Kingdom or Switzerland, you have the right to access, correct, export, restrict and erase your personal data, and to object to its processing. Write to [email protected] and we will respond within one month. You also have the right to complain to your local data protection authority.
Children
This is a business service and is not directed at anyone under 18. We do not knowingly collect data from children.
Changes
If we change how your data is used in a way that matters, we will tell you on WhatsApp before it takes effect, rather than quietly updating this page.