Privacy Policy

FireGlue's commitment to protecting your privacy and data


Last Updated: October 9, 2025

Introduction

At FireGlue, Inc. ("FireGlue," "we," "our," or "us"), we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our email infrastructure management platform and related services.

By using FireGlue, you agree to the collection and use of information in accordance with this policy.

Information We Collect

Account Information

When you create a FireGlue account, we collect:

  • Email address
  • Name
  • Company name
  • Phone number (optional)
  • Billing information

Usage Data

We automatically collect information about how you use FireGlue:

  • IP address
  • Browser type and version
  • Pages visited and time spent
  • Features used
  • API calls and interactions
  • Device information

Email Infrastructure Data

To provide our services, we process:

  • Domain names you manage
  • Email account configurations
  • DNS records
  • Mailbox settings
  • Deliverability metrics
  • Campaign statistics

Third-Party Integration Data

When you connect external services:

  • Microsoft 365 access tokens
  • Google Workspace credentials
  • Zoho Mail API keys
  • Cloudflare API tokens
  • Instantly.ai integration data

How We Use Your Information

We use your information to:

Provide Services

  • Manage your email infrastructure
  • Configure DNS records automatically
  • Monitor domain verification status
  • Track deliverability metrics
  • Provide customer support

Improve Our Platform

  • Analyze usage patterns
  • Develop new features
  • Optimize performance
  • Fix bugs and issues

Communicate With You

  • Send service updates
  • Provide technical notifications
  • Share product announcements
  • Respond to inquiries

Security and Compliance

  • Detect and prevent fraud
  • Enforce our terms of service
  • Comply with legal obligations
  • Protect user safety

Data Storage and Security

Encryption

  • All data transmitted is encrypted using TLS 1.3
  • Passwords are hashed using PBKDF2
  • API keys are encrypted at rest
  • Database connections use encryption

Access Controls

  • Role-based access control (RBAC)
  • Two-factor authentication (2FA) available
  • Regular security audits
  • Employee access is logged and monitored

Data Retention

  • Active accounts: Data retained while account is active
  • Deleted accounts: Data deleted within 30 days
  • Backup data: Retained for 90 days
  • Legal holds: Retained as required by law

Third-Party Services

We integrate with third-party services:

Email Providers

  • Microsoft 365 (Microsoft Corporation)
  • Google Workspace (Google LLC)
  • Zoho Mail (Zoho Corporation)

Infrastructure Services

  • Cloudflare (DNS management)
  • Mailgun (email delivery)
  • Instantly.ai (email marketing)

Analytics and Monitoring

  • Posthog (product analytics)
  • Sentry (error tracking)
  • LogRocket (session replay)

Each service has its own privacy policy. We recommend reviewing their policies.

Data Sharing and Disclosure

We do not sell your personal information. We may share data:

When you explicitly authorize sharing

Service Providers

Third-party vendors who help us operate (under confidentiality agreements)

  • To comply with laws and regulations
  • To respond to legal process
  • To protect rights and safety
  • To prevent fraud or security issues

Business Transfers

In case of merger, acquisition, or asset sale (users will be notified)

Your Rights

You have the right to:

Access and Portability

  • Request a copy of your data
  • Export your data in machine-readable format

Correction

  • Update inaccurate information
  • Complete incomplete data

Deletion

  • Request account deletion
  • Right to be forgotten (GDPR)

Restriction

  • Limit how we process your data
  • Object to certain processing

Opt-Out

  • Unsubscribe from marketing emails
  • Disable non-essential cookies

To exercise these rights, contact us at [email protected]

International Data Transfers

FireGlue is based in the United States. If you access our services from outside the US, your data may be transferred to, stored, and processed in the US or other countries.

We comply with applicable data protection laws, including:

  • GDPR (European Union)
  • CCPA (California)
  • UK Data Protection Act

Cookies and Tracking

We use cookies and similar technologies:

Essential Cookies

Required for the platform to function (authentication, security)

Analytics Cookies

Help us understand usage patterns (can be disabled)

Preference Cookies

Remember your settings and choices

You can control cookies through your browser settings.

Children's Privacy

FireGlue is not intended for users under 18 years old. We do not knowingly collect information from children. If you believe a child has provided us with information, contact us immediately.

California Privacy Rights

California residents have additional rights under CCPA:

  • Right to know what personal information is collected
  • Right to know if personal information is sold or disclosed
  • Right to opt-out of the sale of personal information
  • Right to non-discrimination for exercising privacy rights

We do not sell personal information.

Changes to This Policy

We may update this Privacy Policy periodically. We will notify you of significant changes via:

  • Email notification
  • In-app notification
  • Update notice on this page

Continued use of FireGlue after changes constitutes acceptance.

Data Protection Officer

For privacy-related inquiries or to exercise your rights:

Email: [email protected]
Address: Data Protection Officer, FireGlue, Inc., 123 Technology Drive, Suite 400, San Francisco, CA 94105, USA

Compliance and Certifications

FireGlue complies with:

  • General Data Protection Regulation (GDPR)
  • California Consumer Privacy Act (CCPA)
  • SOC 2 Type II (in progress)
  • ISO 27001 (in progress)

Contact Us

Questions about this Privacy Policy?

Email: [email protected]
Web: https://www.fireglue.com/contact
Mail: FireGlue, Inc., 123 Technology Drive, Suite 400, San Francisco, CA 94105, USA


This policy is effective as of October 9, 2025 and was last updated on October 9, 2025.