← CapitalOS Runtime

Privacy Policy

Effective date: 10 September 2026

CapitalOS Runtime is a private internal application used by authorized users for governed automation and operational workflows.

Information accessed

When an authorized user connects a Google account, CapitalOS Runtime may access Google account data only to the extent permitted by the OAuth scopes explicitly granted by that user.

Google account data

The current Gmail integration is intended to use read-only Gmail access. CapitalOS Runtime does not require authority to send, delete, modify, or otherwise mutate Gmail messages through that integration.

Use of information

Information accessed through connected services is used only to perform authorized internal workflows, verification, monitoring, and related operational functions.

Sharing

CapitalOS Runtime does not sell personal information. Information is not shared with third parties except where necessary to operate authorized infrastructure or comply with applicable law.

Security

Access is restricted to authorized users and is designed to follow least-privilege principles. Credentials and secrets should be stored in designated secure credential-management systems rather than in application content.

Retention

Information is retained only as reasonably necessary for the authorized internal purpose for which it was accessed, subject to applicable operational, security, and legal requirements.

Contact

Questions about this policy may be sent to rick.capitalos@gmail.com.