Legal
Privacy Policy
Last updated: June 29, 2026
This policy explains what SagiFlo collects, why, and the third-party services it connects on your behalf. SagiFlo is operated by Brucks Products LLC in the United States and serves customers worldwide.
1. Who we are
SagiFlo is an operations platform for service businesses, operated by Brucks Products LLC in the United States. For any privacy question you can reach us at support@sagiflo.com or on Telegram.
2. What we collect
- Account & billing data — your name, business name, email, and subscription status. Payment card details are handled directly by Stripe; we never see full card numbers.
- Connected-service data — the data you authorize us to read from the services below, used solely to power the features you switch on.
- Agent conversations — the messages you exchange with your Telegram agent, and the actions you approve.
- Technical data — standard logs (IP address, timestamps, error traces) needed to run and secure the service.
3. Third-party services we connect
SagiFlo only connects a service after you explicitly authorize it, and only reads the data needed for the feature you enabled. You can disconnect any of these at any time from the Connections screen, which revokes our access. The specific disclosures below are required by these providers and by our commitment to you.
Google (Gmail & Business Profile)
When you connect Google, you grant SagiFlo access via Google OAuth to the following, each used only for the feature you enabled:
- Gmail send (
gmail.send) — to send the review-request and follow-up emails you approve, from your own address. This scope can only send mail you approve; it does not grant SagiFlo the ability to read, search, or delete anything in your inbox. - Google Business Profile — to read your reviews and ratings and draft replies you approve.
SagiFlo’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not use Google user data to train or improve any AI/ML models, we do not sell it, and we do not transfer it except to provide the features you enabled — including to our AI provider, OpenAI, solely to generate the drafts you approve (see below) — for security, or to comply with law. You can revoke SagiFlo’s access at any time from the Connections screen or from your Google account permissions.
AI drafting (OpenAI)
SagiFlo’s agent uses OpenAI as its AI provider to generate the drafts you review and approve — review replies, emails, and agent answers. To draft a reply to a Google review, the review text is sent to the OpenAI API as context for that draft; per the OpenAI API data-usage policy, content sent through the API is not used to train or improve OpenAI’s models. Your Gmail access is send-only (gmail.send), so no inbox content is ever read or sent to OpenAI. We do not use Google user data to train any AI model; OpenAI acts only as our processor to produce the draft you approve. See the Subprocessors page.
Intuit QuickBooks
On any QuickBooks plan, connecting QuickBooks grants SagiFlo access via Intuit OAuth to read your finances — invoices, payments, balances, and cash flow — so the agent can tell you what is unpaid or overdue. This access is read-only: SagiFlo never moves money, pays an invoice, or alters your books. We do not sell your QuickBooks data and use it only to power the financial features you enabled. You can disconnect QuickBooks at any time from the Connections screen or from your Intuit account, which revokes our access.
Telegram
Your agent is delivered through Telegram. When you link it, the messages you exchange with the agent — summaries, action proposals, and your approvals — are processed to operate the conversation, and your Telegram account/chat identifier is stored to route messages to you. Telegram is an independent service governed by its own privacy policy; we encourage you to review it. You can unlink the agent at any time to stop this processing.
Text messaging (SMS via Twilio)
SagiFlo sends text messages using Twilio as our SMS provider. The messaging program is SagiFlo Appointment Reminders & Follow-ups: transactional texts such as appointment reminders and the customer follow-ups you approve. These are one-way (send-only) messages — SagiFlo does not receive or monitor replies. SMS is optional and off until you turn it on. There are two kinds of texting in SagiFlo, and consent works differently for each:
- Texts to you (the account owner/staff). If you provide a mobile number and opt in, we may text you account, security, and operational notifications.
- Texts to your customers. Recipients are the existing customers of your business, who provide their phone number and agree to receive texts at the time of service — through a booking or intake form, on a service ticket, or verbally — with that consent recorded in SagiFlo before any message is sent. When you approve a reminder or follow-up, SagiFlo sends it through Twilio to that number. You are responsible for having obtained your customers’ consent.
Message frequency varies by activity (a recurring program — e.g. a reminder before an appointment and a follow-up after a job). Because these texts are send-only, replying to a message does not reach SagiFlo or the business — but recipients can text STOP to opt out at any time, which is honored automatically by the carrier, or HELP for help. For questions, contact the business directly or email support@sagiflo.com. Message and data rates may apply.
Mobile information and SMS opt-in consent are never shared with, sold, or rented to any third party or affiliate for their own marketing or promotional purposes, and no mobile opt-in data is shared with any third party for marketing. Phone numbers and message content are shared only with Twilio, our messaging carrier, strictly to deliver the messages you approve — and with no one else. You can turn SMS off at any time from your settings, which stops all further texts.
Email, billing & hosting
We use your connected Gmail to send the customer emails you approve, Stripe to process subscription billing, and Google Cloud Platform to host the application and database. See the full Subprocessors page for the purpose and data each handles.
4. How we use your data
We use your data only to provide and secure SagiFlo: to run the features you enabled, operate your agent, send the messages you approve, bill your subscription, and meet legal obligations. We do not sell your data, and we do not use the data we read from your connected services to train any AI models.
5. The approval gate
By design, customer-facing and money-related actions are proposed and wait for your approval. The agent drafts; you decide. Finances are read-only — the agent reads QuickBooks but never moves your money.
6. Data retention & deletion
We keep your data for as long as your account is active, then delete or anonymize it within a reasonable period unless we are legally required to retain it. You can disconnect any service immediately, and request full deletion at any time — see our Data Deletion page.
7. Security
Connection tokens are stored encrypted in a secure backend, never exposed in the dashboard. Data is encrypted in transit and at rest on Google Cloud Platform. No system is perfectly secure, but we apply reasonable, industry-standard safeguards.
8. Your choices
- Disconnect any integration at any time from the Connections screen.
- Request access to, correction of, or deletion of your data by emailing support@sagiflo.com.
- Cancel your subscription at any time, including during your 7-day trial.
9. Children
SagiFlo is a business tool not directed to children and is not intended for anyone under 18.
10. Changes
We may update this policy; the “Last updated” date above always reflects the current version. Material changes will be communicated to active customers.
Questions about this page? Email support@sagiflo.com or chat on Telegram.