Legal
Privacy Policy
Last updated July 29, 2026.
Who we are
Intakra is a signal-driven go-to-market platform operated by Soxoa LLC ("Intakra", "we", "us"), based in Sacramento, California. This policy explains what we collect, how we use it, and the choices you have. Questions any time: hello@intakra.com.
Information you provide
Account and workspace details (your name, work email, company, and password or Google sign-in), the ICP, value proposition, and sending configuration you set up, billing contact details, home-base or physical-address information you choose to provide, and anything you send us for support.
Information we generate or gather
Public business signals about the target accounts you choose to track, funding, hiring, executive changes, M&A, product launches, drawn from public sources and licensed data providers; product interactions, log and device identifiers; purchase and subscription transaction history; push notification tokens and preferences; and outreach engagement (sends, opens, replies, bounces) for the campaigns you run.
Intakra Field mobile data
With your permission, Intakra Field uses precise location to build nearby account lists and routes. It stores the visits, outcomes, debrief transcripts, contact details (which may include names, email addresses, and phone numbers), and follow-up tasks you submit as workspace content. Voice-debrief audio stays on your device and is transcribed only when on-device speech recognition is available; we upload and store the resulting text transcript, which an AI model provider processes to create the structured debrief. We do not upload or store the audio recording.
Cookies & analytics
We use strictly necessary cookies to keep you signed in and secure. Where enabled, we use privacy-respecting product analytics (PostHog) to understand how the product is used. We do not run third-party advertising trackers. You can block non-essential cookies in your browser without losing core functionality.
How we use information
To operate the product (discovery, scoring, assessment pages, field routes, debriefs, notifications, and sending on your verified domain), provide support, verify and process payments, secure and improve the service, and meet legal obligations. We do not sell personal information, use it for cross-company advertising tracking, or use your customer content to train external AI models.
Legal bases (EEA/UK)
Where GDPR / UK GDPR applies, we process personal data to perform our contract with you, for our legitimate interests in operating and improving the service, with your consent where required, and to comply with legal obligations.
Sharing & sub-processors
We share data with vendors that run the service under contract: cloud hosting and database (Vercel, Neon), email delivery (AgentMail / AWS SES), contact and company data (Apollo), payments (Stripe and Apple StoreKit), push delivery (Apple Push Notification service), AI model processing for submitted text (OpenRouter and the selected model provider), error monitoring (Sentry), and product analytics (PostHog). We also disclose information where required by law or to protect rights and safety. A current sub-processor list is available on request at hello@intakra.com.
Your sending domain
Outbound email is sent from your own DKIM-verified domain, never a shared pool, so sending reputation and recipient relationships stay with you. For the prospect data you choose to process, you act as the data controller and Intakra as your processor.
Data retention
We keep workspace data while your account is active and as needed to provide the service. When you delete your account, we delete or de-identify production copies of your personal Field data within 30 days; residual backup copies age out under our backup-retention schedule, typically within 90 days. App Store lifecycle notices are retained as server-keyed, one-way digests without Apple's raw notification or transaction identifiers so we can prevent receipt replay and reconcile later Apple billing events; these de-identified security records are not linked to a deleted account. Shared workspace records may remain for other workspace members, and we retain billing, tax, security, or legal records longer where the law requires it.
Security
We protect data with encryption in transit, access controls, per-workspace isolation, and reputable infrastructure providers. No system is perfectly secure, but we work hard to protect your information and will notify you of material breaches as required by law.
International transfers
We are based in the United States and may process data there and in other countries where our providers operate, relying on appropriate safeguards (such as Standard Contractual Clauses) where required.
Your rights
Depending on where you live, you may access, correct, export, or delete your personal data, object to or restrict certain processing, and opt out of marketing. Recipients of outbound email can opt out at any time, and we honor suppression. To exercise a right, email hello@intakra.com and we'll respond promptly and free of charge.
Children
Intakra is a business tool, not directed to children and not intended for anyone under 16.
Changes
We'll update this policy as the product evolves and revise the date below. We'll flag material changes in-app or by email.
Contact
Soxoa LLC (Intakra) · Sacramento, California, USA · hello@intakra.com.