Privacy Policy
Last updated: July 21, 2026
FUNDesk ("FUNDesk", "we", "us") provides a CRM and communications platform for commercial finance brokers. This policy explains what data we collect, how we use it, and the choices you have. It applies to fundesk.ai and the FUNDesk application.
Information we collect
- Account information. Your name, email, and workspace details when you register.
- Workspace content. The records you create and import (merchants, deals, submissions, contacts, documents) and the messages you send through the platform.
- Connected accounts. When you connect an email provider (Google or Microsoft), we store encrypted access tokens so we can send and sync mail on your behalf.
- Usage data. Log data, device and browser information, and product analytics used to operate and improve the service.
- AI conversations and memory. Messages you send to the AI assistant and safe, durable preferences or workspace conventions automatically inferred from those messages. Personal memory belongs to your account across workspaces. Workspace suggestions from member chat are visible to workspace admins for review, including the contributing member's account name. Approved workspace memory is shared with members of that workspace without showing the contributor.
How we use your information
We use your information to provide the product, authenticate you, send and receive email you initiate, sync and thread messages onto the right records, provide support, secure the platform against abuse, and meet legal obligations. We do not sell your data.
We process AI conversations through Anthropic to provide assistant responses and automatically identify safe, durable preferences and workspace conventions, including information you explicitly ask FUNDesk to remember. Pausing personal memory stops personal learning and recall, but workspace suggestions may still be processed while that workspace's learning control remains enabled. Personal and workspace memory values are encrypted at rest. FUNDesk is designed not to save credentials, sensitive identifiers, financial instructions, permissions, or live deal facts as AI memory. Rejected suggestions and cleared memory have their stored text removed. Value-free lifecycle audit records may remain for security and accountability.
Google user data and Limited Use
When you connect a Google account, FUNDesk requests access to your Gmail so it can provide the email features you enable inside your workspace: sending email on your behalf, reading and syncing messages related to your deals and contacts, threading replies, and ingesting funder offer emails.
FUNDesk's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
- We use Google user data solely to provide and improve the in-product email features above.
- We do not transfer or sell Google user data.
- We do not use Google user data for advertising.
- We do not allow humans to read Google user data except (a) with your explicit consent, (b) for security purposes such as investigating abuse, (c) to comply with applicable law, or (d) where the data is aggregated and anonymized so it can no longer identify you.
You can disconnect a Google account at any time in Settings, which revokes FUNDesk's access going forward.
How we share information
We share data with service providers that host and operate the platform (for example, cloud hosting, database, email delivery, and analytics providers), only as needed to run the service and under confidentiality obligations. We may disclose information to comply with law or to protect the rights and safety of users and the public.
Data security
We protect your data with encryption in transit and at rest for sensitive fields (including connected-account tokens), access controls, and tenant isolation so one workspace cannot access another's data. No system is perfectly secure, but we work to protect your information.
Data retention
We keep workspace content for as long as your account is active or as needed to provide the service. You may request deletion of your data as described below, subject to legal retention requirements.
Pending workspace memory suggestions are kept for up to 30 days. If no admin decides sooner, their encrypted text is then removed and the suggestion is marked rejected. Approved and rejected suggestion records, without suggestion text, are removed 90 days after the decision. Safe, completed AI memory processing records may be kept for up to 90 days, except the latest processing cursor for a live conversation, which is kept while needed to prevent duplicate processing.
To recover safely from an interrupted processing step, FUNDesk may keep an encrypted temporary copy of validated AI memory changes. We remove it after the changes are saved, invalidated, or safely discarded. An unresolved provider or accounting incident may require us to retain the processing record and any encrypted copy until the incident is reconciled. Clearing or forgetting memory also removes the affected changes from any such recovery copy.
Your choices
You can access and update your information in the app, disconnect integrations, and request export or deletion of your data by contacting us. Depending on where you live, you may have additional rights over your personal data.
In AI memory controls, you can pause personal learning, add or correct a saved preference, export your personal memory, forget individual facts, or forget everything. Workspace admins can pause workspace learning and approve, reject, edit, or forget shared workspace memory.
Changes to this policy
We may update this policy from time to time. Material changes will be reflected by updating the date at the top of this page.
Contact
Questions about this policy or your data? Email dev@fundesk.ai. See also our Terms of Service.