Ghost Recall is a scheduling and follow-up tool operated by Market Maker Management
(John DeLutri). Each business that signs in gets its own account, and this policy explains
what the product does with the data in it.
Information we access
- Google Calendar (read-only). Event times, titles, and attendee
names/emails on the calendars you connect, used only to detect newly booked
appointments and keep your contact list in sync. Which events count as a booking is
controlled by a filter you configure.
- Google account profile. Your email address, used to identify your
account when you sign in.
- What you enter yourself. Contacts, notes, call recaps, message
templates and the messages you record as sent.
How information is used
- To detect new bookings from your connected calendars and create or update the
matching contact record.
- To prepare follow-up messages about scheduled appointments. Text messages are always
opened in your own Messages app for you to send — Ghost Recall never sends a text
itself.
- Emails are sent only when you send them, unless you deliberately switch on automatic
follow-up emails in your settings. That is off by default, has to be enabled twice (email
first, then automatic sending), and only ever uses wording you have written yourself.
- Optionally, when you click "Generate with AI", a specific contact's notes and call
context (not calendar data) are sent to Google's Gemini API to draft a message. This only
happens on your manual request.
Who can see your data
Accounts are separated at the database level. Another business using Ghost Recall cannot
see your contacts, messages or notes.
- Your team. If your organisation has several people, a manager in your
organisation can see the accounts under them. Who that is, is set up by your organisation,
not by us.
- Us, for support. As the operator we can see account-level operational
information so we can help when something breaks: whether a calendar is connected, when it
last synced, how many contacts and appointments exist, and how many messages have been
sent. This does not include your contacts’ names, phone numbers, email
addresses, your notes, or the content of your messages. If diagnosing a problem ever needs
us to look at the actual records, we will ask you first.
Data storage
Data is stored in a private Supabase (PostgreSQL) database with row-level security, so
each account can only reach its own records. Google Calendar refresh and access tokens are
stored server-side and are never exposed to the browser.
Data sharing
We do not sell personal data, and we do not share it with third parties for advertising.
Data is sent only to Google (Calendar API, for sync) and, only when you manually trigger it,
to Google’s Gemini API for message drafting — solely to provide those features.
Google API Limited Use
Ghost Recall’s use of information received from Google APIs adheres to the
Google API Services User Data Policy, including the Limited Use
requirements. Calendar data is used only to provide the booking and follow-up features
described above. It is not used for advertising, is not sold, and is not used to train
generalised AI models.
Data retention & deletion
Data is retained as long as the account is active. To request deletion of your data or to
revoke calendar access, contact
john@marketmakermgmt.com, or remove Ghost
Recall’s access directly from your Google Account’s
Third-party
access settings. Removing access stops future syncing; ask us if you also want existing
records deleted.
Contact
john@marketmakermgmt.com