When a fact here changes, this page changes with it. It is referenced from the Privacy Policy and the Terms of Service, and it is effective September 4, 2026.
Cookie policy
A cookie is a small text file a website stores in your browser. We set the following on buellea.com. "First party" cookies are set by our own domain; "third party" cookies are set by another company's domain when their code runs on our page.
Essential — required for the site to work; cannot be switched off
| Cookie | Set by | Purpose | Lifetime |
|---|---|---|---|
buellea_platform_session | buellea.com | Keeps you signed in and ties requests to your session. | 2 hours of inactivity |
XSRF-TOKEN | buellea.com | Protects forms against cross-site request forgery. | 2 hours |
remember_web_* | buellea.com | Set only when you tick "remember me" at login. | Up to 5 years, or until you sign out |
Analytics and advertising measurement — loaded on public pages, login and registration
| Cookie | Set by | Purpose | Lifetime |
|---|---|---|---|
_ga, _ga_* | Google Analytics 4 via Google Tag Manager (first party) | Distinguishes visitors and sessions so we can count page views and standard events (phone click, email click, contact-form submission). | 2 years |
_uetsid, _uetvid | Microsoft Advertising universal event tag (first party) | Session and visitor identifiers used to attribute contact-form submissions to Microsoft advertising. | 1 day and 13 months |
MUID | bing.com (third party) | Microsoft's advertising identifier, set when the event tag loads. | 13 months |
Our tags are configured with advertising storage granted by default. To decline: block or delete these cookies in your browser, install Google's opt-out add-on, or use Microsoft's opt-out. Visitors from the EEA, the UK and Switzerland: if your browser sends a consent signal we do not currently read it; blocking the cookies is the reliable control, and the site works fully without them.
Not cookies, but worth knowing
- Emails sent through our platform by our customers may contain an open-tracking pixel and tracked links; see the Privacy Policy, section 4. Disabling remote images in your mail client prevents open tracking.
- Ads served by our partner network on participating websites use a one-pixel image to count impressions. It sets no cookie.
- Amazon links on our shop pages take you to amazon.com, where Amazon's own cookies apply.
Affiliate disclosure
As an Amazon Associate, Buell EA earns from qualifying purchases. Product links on our shop pages, in the partner ad network, and on the websites we operate for customers may be affiliate links: if you click one and buy something, we may receive a commission at no extra cost to you. Commissions never change which products we show or what we say about them; where a page is sponsored or a placement is paid, we say so on that page. Prices and availability shown for Amazon products are as of the time they were fetched and may differ at checkout.
Google API scopes and Limited Use
Each Google integration asks for the narrowest permission that makes its feature work, and each is granted separately by you through Google's consent screen. This is the complete list of scopes the platform can request, the feature each serves, and what that feature actually does with the access.
| Scope | Feature | What it does |
|---|---|---|
https://mail.google.com/ | CRM email | Syncs your inbox and sent folder into the CRM by IMAP and sends mail you compose in the CRM from your address. |
gmail.send | CRM email | Send-only alternative used by some CRM mailboxes. |
gmail.readonly, gmail.metadata | Owner's Assistant | Metadata-only scan of the mailbox (IDs, labels, timestamps, headers; subjects truncated to 80 characters; no bodies, snippets or attachments) to list unanswered and waiting threads. A separate explicit action reads one conversation, in bounded plain text, to help draft a reply; that text is displayed transiently and never stored. |
gmail.compose | Owner's Assistant | Granted incrementally and separately. Creates a draft in your Gmail after a second confirmation. The platform never sends, deletes, labels, archives or forwards mail. |
calendar, calendar.events | CRM calendar | Two-way sync between CRM activities and the calendars you subscribe. |
calendar.readonly, calendar.events.readonly | Owner's Assistant | Reads today's events to build a daily brief. Never writes. |
webmasters.readonly | Search measurement | Reads search performance, sitemap status and URL inspection results for properties you own. |
webmasters | Search measurement | Submits or removes sitemaps in Search Console when you ask us to. |
analytics.readonly | Analytics import | Imports daily metrics and aggregate event counts from the GA4 properties you attach. Permanently read-only. |
analytics.edit, analytics | Analytics configuration | A separate connection used only to create, update or delete key events on an attached property, after an on-screen confirmation naming the property, the event and the operation. |
adwords | Advertising engagements | Reads campaign performance and spend for reporting. |
userinfo.email | All Google connections | Identifies which Google account is connected so it can be labeled and disconnected. |
Buell EA's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. We use Google user data only to provide the feature you authorized; we do not use it for advertising, sell it, or transfer it except to provide the feature, with your consent, for security, or as the law requires; humans do not read it except with your consent, for security, or as the law requires; and we do not use it to develop, improve or train generalized AI or machine-learning models. Tokens are encrypted at rest and deleted on disconnect. You can revoke any grant from the platform's connection settings or at myaccount.google.com/permissions.
Data retention schedule
| Data | Kept for | Then |
|---|---|---|
| Tenant accounts and all business data in them | Life of the account, plus 90 days after cancellation | Deleted. Earlier on request. |
| Contact-form inquiries to Buell EA | As part of our CRM relationship record | Deleted on request. |
| Crawler telemetry, raw request records | 30 days | Reduced to daily counts; raw rows deleted. |
| Crawler telemetry, daily counts | 365 days | Deleted. |
| Email open and click events | With the message record | Deleted with the customer's account. |
| Ad impressions and clicks | With the campaign record | Deleted with the advertiser or account record. |
| Search Console, Analytics and Ads imports | While the property stays attached | Deleted with the attachment or the account. |
| OAuth tokens | Until you disconnect or the provider revokes them | Deleted on disconnect. |
| AI feature usage records | Feature, tenant, time and cost only; no prompt or response text for email features | Kept for billing history. |
| Voice capture audio | Never stored | Only the transcribed text reaches us. |
| Web-server logs | Hosting provider's rolling window | Overwritten. |
| Backups | Rolling | Deleted data leaves backups as they cycle. |
| Invoices, payments and tax records | As tax and accounting law requires | Deleted. |
Security and responsible disclosure
If you believe you have found a security vulnerability in buellea.com, the platform, or a website we operate, email djbuell@buellea.com with "Security report" in the subject. Tell us what you found, how to reproduce it, and how to reach you. We will acknowledge within two business days, keep you informed, and credit you if you want that.
Please: do not access, modify or delete data that is not yours; do not test with denial-of-service, spam, or social engineering; stop and tell us as soon as you have enough to demonstrate the issue; and give us a reasonable time to fix it before you publish. Good-faith research within those lines will not lead to legal action from us. We do not run a paid bounty program.
What we do on our side: TLS everywhere; secure, same-site session cookies; bcrypt password hashing; AES-256-CBC encryption of OAuth tokens and credentials at rest; tenant scoping checked on every request; aggregate-only crawler dashboards with no request-level identifiers; key-based SSH access limited to the platform administrator; regular backups; and breach notification without undue delay.
Service providers
These companies process data for us under their own terms and our instructions. We will update this list when it changes.
| Provider | Role | Data involved | Location |
|---|---|---|---|
| Hostinger | Web hosting, databases, backups | Everything the platform stores | United States |
| Workspace SMTP relay for outbound mail; Tag Manager and Analytics on our site; Gmail, Calendar, Search Console, Analytics and Ads APIs you authorize | Email we send; site usage; data you authorize under the scope table | United States | |
| Microsoft | Advertising event tag on our site; Bing Webmaster Tools API for measurement customers | Site usage; sitemap and index data for customer properties | United States |
| Zoho | Zoho Books accounting; Zoho Billing subscriptions and hosted payment pages | Customer names, invoices, payments; card data is entered on Zoho's pages only | United States |
| Anthropic | Claude API for AI features | The content you ask a feature to process; not used to train models | United States |
| Amazon | Associates program; product data for shop pages and the ad network | Click-throughs to amazon.com | United States |
| Todoist (Doist) | Read-only task import for the owner's Assistant, when connected | Task titles and dates | United States |
| Shopify | Store synchronization for ERP customers, when connected | Product and order data of the connected store | Canada / United States |
Acceptable use
The rules for using the Service, sending email through it, connecting websites to it, and using its APIs are in sections 6 through 8 of the Terms of Service. In one line: do not touch data that is not yours, do not send mail people did not agree to receive, do not click your own ads, and ask before you test our security.
Data requests
To access, correct, export or delete your personal information, or to withdraw a consent, email djbuell@buellea.com. We answer within 30 days. If your information is held in one of our customers' accounts, we will route the request to that customer and help them respond. Law-enforcement and legal requests go to the same address and must identify the legal authority they rely on.