SSearch Fund

Privacy policy

Updated September 16, 2026

Search Fund is a private deal-tracking workspace.

Data and use

The app stores deal information entered by authorized users. With permission, it reads the connected Gmail account address, labels, and messages labeled Search Fund to link conversations, confirm company identities, update deal stages, and track follow-ups. Google grants mailbox-wide read permission; the app enforces the label restriction. It cannot send, edit, or delete Gmail messages.

Stored email data includes account and message identifiers, subjects, participants, dates, short snippets, attachment filenames, associations, short company-disclosure quotes, and processing history. Full message bodies are processed temporarily; attachment files are not stored. The refresh token is encrypted.

Access and sharing

Workspace data is accessible to authorized users and the administrator. OpenAI Sites and Cloudflare provide hosting and storage; Google provides Gmail access. Providers may process operational logs. Google data is not sold, used for advertising, or used to train AI models.

If public company research is enabled, OpenAI receives the confirmed company name and state to find public sources. Email bodies, buyer information, and private deal financials are not sent for this research.

Search Fund’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.

Retention and control

Records remain until deleted by the administrator. Removing a label or deleting a Gmail message does not erase previously imported data. Labeled messages in Spam or Trash may still be checked.

You can revoke Gmail access at any time; this stops future authorized checks without deleting saved data. For deletion requests or privacy questions, use the support address shown on Google’s authorization screen.

Site operation

Cookies support sign-in and Google authorization; browser storage saves display preferences. Sign-in protection uses an identifier derived from your network address. Updates to this policy appear here.