# Privacy Policy

What BuilderPack receives from your HubSpot portal, and how it is handled.

_Updated August 12, 2026_

## What this covers

BuilderPack is a HubSpot app. There is no separate BuilderPack account: you install it into a HubSpot portal, and it runs only when a workflow step or a Breeze agent invokes one of its actions. This policy describes what we receive when that happens.

## Information we receive

When you install the app, HubSpot provides an access token identifying the portal, along with the account and scope information needed to run actions in it. We store the portal identifier and the tokens required to keep the connection working.

When an action runs, we receive the inputs that step passes us — which may include CRM property values you mapped into the action, such as a domain, a name, or message content. We also record execution metadata: which action ran, when, for which portal, and whether it succeeded.

## How we use it

Inputs are used to perform the action you requested and to return its result to your workflow or agent. Execution metadata is used to operate the service — diagnosing failures, investigating support requests, and understanding which actions are used.

We do not sell personal information, and we do not use your CRM data to train models.

## Third parties

Actions call external services to do their work. A LinkedIn lookup queries a data provider; a content action calls an AI model provider; a screenshot action renders the page you name. The input you supply is sent to whichever provider that action depends on, under agreements limiting how they may use it.

Actions currently execute on agent.ai infrastructure operated by the same team. We may also disclose information where required by law.

## Retention

Execution metadata is retained so we can support and debug the service. Action inputs and outputs are retained only as long as needed to complete the run and diagnose recent failures. Uninstalling the app from your portal revokes our access and stops all processing.

## Security

Portal credentials are stored encrypted, requests from HubSpot are signature-verified before we act on them, and access is limited to what an action needs. No system is perfectly secure, so we cannot guarantee absolute security.

## Your choices

You control which actions run and which CRM fields they receive, through your workflow and agent configuration. Uninstalling the app ends the connection. To request deletion of stored execution records for your portal, contact us with your portal ID.

## Changes

We may update this policy. Material changes will be communicated through the app listing or by other reasonable means. The date above reflects the latest revision.

## Contact

Questions about privacy? Email [support@agent.ai](mailto:support@agent.ai).
