Privacy and data handling
What CleanPipe reads, what it keeps, and what it never does.
What CleanPipe reads from HubSpot
Only what a hygiene digest needs, and only with read-only permissions:
- Deals, and these properties: name, amount, currency, close date, stage, pipeline, owner, next step and last modified date
- Your deal pipelines and their stages, to tell open deals from closed ones
- Your owners, so a deal can be attributed to a person by name
- Which deal properties your portal has, so checks that do not apply are skipped rather than reported as failures
CleanPipe does not read contacts, companies, tickets, emails, calls, notes or files. It requests no write permission of any kind and cannot modify your CRM.
What is stored
Your HubSpot access and refresh tokens, encrypted with AES-256-GCM before they are written. Your portal id and domain, the email address of the person who installed it, and your subscription state. An audit log of events such as installs, token refreshes, digests sent and disconnections.
Deal data is never stored. It is read, turned into an email, and discarded when the request ends. There is no copy of your pipeline on our side.
Payment details
Handled entirely by Stripe. CleanPipe never sees, receives or stores a card number. Billing changes, invoices and cancellation all happen in Stripe's own portal.
Who else sees it
Nobody. Your data is not sold, rented, shared with advertisers, or used to train anything. Three processors are involved in delivering the product: Vercel hosts the application, Neon hosts the database, and Resend delivers the email. Each sees only what it needs to do its job.
Deleting it
Disconnecting CleanPipe, either from the link in any digest or by removing the app in HubSpot, revokes the connection and deletes the stored credentials. To have the remaining records deleted as well, email help@thejaycampbell.com and it will be done.
Contact
help@thejaycampbell.com
Jay Campbell, 11519 Kingston Pike, Unit #2286, Farragut, TN 37934