Agentown Privacy Policy
Effective date: August 22, 2026 · Operated by Fort Buffum LLC
The short version
Agentown lets you hire AI characters that do work for you: reading your inbox to write you a digest, preparing draft replies, checking your calendar for a morning briefing. To do that work, the characters need access to accounts you choose to connect.
Our position is simple: your data is fuel for your work, not for ours. We process the content of your connected accounts to do the job you hired a character for, and we do not keep the content afterwards. We store only what the character produced for you. We do not sell your data, we do not show ads, and neither we nor our AI providers train models on it.
The rest of this document says the same thing in the detail that regulators, auditors, and careful readers deserve.
1. Who we are
Agentown is operated by Fort Buffum LLC, 66 W Flagler St, Miami, Florida, United States, the data controller for the personal data described in this policy. You can reach us about anything in this document at privacy@agentown.world.
2. What we collect
Account information. When you sign up: your name, email address, and authentication credentials. If you pay us, billing is handled by our payment processor; we never see full card numbers.
Connections you authorize. When you connect a third-party account (for example Google) so a character can work with it, we receive and store the access tokens that authorization produces. Tokens are encrypted at rest.
Content processed on your behalf. When a character runs, it fetches the data its job requires from your connected accounts (for example, recent emails for a digest). This content is processed transiently, as described in Section 3, and is not persisted by us.
Work product. What the characters produce for you: digests, briefings, draft text, and run records (when a character ran, what it did, whether it succeeded, what it cost). Run records do not contain the bodies of your emails or the contents of your source documents.
Usage data. Standard product telemetry: pages viewed, features used, device and browser type, and diagnostic logs. Diagnostic logs are written to exclude message content.
3. Google user data
This section covers data received through Google APIs specifically, because Google requires that it be spelled out, and because it is the most sensitive data we touch.
What we access and why
| Google data | Permission (scope) | What the character does with it |
|---|---|---|
| Gmail messages (read) | gmail.readonly | Reads recent mail to prepare your inbox digest and to identify messages that need a reply |
| Gmail drafts (create) | gmail.compose | Places draft replies in your own Gmail Drafts folder for you to review, edit, and send yourself. Agentown does not send email on your behalf |
| Calendar (read) | calendar.readonly | Reads upcoming events to prepare your morning briefing |
We request no other Google scopes. If we ever need an additional scope, we will ask for it explicitly through Google's consent screen and update this policy first.
How Google user data is handled
Storage. Gmail and Calendar content is fetched at run time, held in memory and in short-lived processing buffers only for the duration of the run, and discarded when the run completes. We do not maintain a copy of your mailbox or calendar. What persists is the work product derived from it (your digest text, and drafts, which live in your Google account, not ours) and content-free run records.
Sharing. We do not share Google user data with third parties, with one functional exception: portions of the content needed for a given job are sent to our AI model providers (Section 4) to perform that job, under contracts that prohibit them from retaining it beyond the request or using it for any other purpose. We do not sell Google user data, transfer it to advertisers or data brokers, or use it for advertising in any form.
Human access. Our personnel do not read your Google user data, except (a) with your explicit permission for a support request, (b) when necessary for security investigation or abuse prevention, (c) to comply with applicable law, or (d) in aggregated, anonymized form for internal operations. These are the only cases, and they mirror the exceptions Google's own policy permits.
AI/ML training. We do not use Google user data to train or improve machine learning or artificial intelligence models, whether ours or anyone else's, generalized or otherwise. Our contracts with model providers prohibit them from doing so with data we send them.
Retention. Access tokens are deleted when you disconnect your Google account or delete your Agentown account. Because message and calendar content is not persisted, there is nothing further to delete on our side; derived work product is deleted with your account, or earlier on request.
Revocation. You can take a character's access back at any time, two ways: in Agentown, from the character's key ring (takes effect immediately and stops in-flight work), or from your Google Account at myaccount.google.com/permissions. Revoking access never deletes anything in your Google account.
Limited Use disclosure
Agentown's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
4. AI model providers
Agentown characters are powered by third-party large language models (currently providers such as Anthropic, OpenAI, and Google). To perform a job, the relevant content is sent to a model provider's API and the response comes back as the character's work.
We use these providers under their business API terms, which means: your content is not used to train their models, is not retained beyond what is needed to process the request (subject to short-term abuse-monitoring windows the provider operates), and is not shared further. Which provider powers a given character may change as models improve; the contractual protections do not.
5. What we do not do
We do not sell personal data. We do not share it with advertisers or data brokers. We do not use the content of your connected accounts for advertising, profiling, market research, or training AI models. We do not read your data out of curiosity. If any of this ever changes for any category of data, we will ask for your consent first, not update this page quietly.
6. Sharing and subprocessors
We share personal data only with service providers who process it for us under contract: cloud hosting and database infrastructure, AI model providers (Section 4), payment processing (when billing launches), and email delivery for transactional messages. A current subprocessor list is available on request at privacy@agentown.world. We may also disclose data where the law requires it, or in a merger or acquisition, in which case this policy continues to apply to data collected under it.
7. Retention
Account information: kept while your account is active, deleted within 30 days of account deletion. Work product and run records: kept while your account is active so you can review your characters' history, deleted with your account. Connected-account content: not retained (Section 3). Diagnostic logs: rotated within 90 days. Backups age out on a fixed schedule of at most 35 days after deletion.
8. Security
Data in transit is protected with TLS. Tokens and credentials are encrypted at rest. Access to production systems is restricted, logged, and reviewed. Agentown's handling of Google user data is subject to annual independent security assessment under Google's CASA program. If we suffer a breach affecting your personal data, we will notify you and the relevant authorities as applicable law requires.
9. Your rights
If you are in the EU/EEA, UK, or a jurisdiction with similar law, you have the right to access, correct, delete, and receive a copy of your personal data, to restrict or object to its processing, and to withdraw consent at any time without affecting prior processing. Our legal bases are performance of our contract with you (running the service you signed up for), your consent (connecting third-party accounts, which you may withdraw by disconnecting), and our legitimate interests (security, service improvement using content-free telemetry).
To exercise any right, email privacy@agentown.world; we respond within 30 days. You may also lodge a complaint with your supervisory authority (in Spain, the AEPD).
10. International transfers
Fort Buffum LLC is a US entity and data is processed in the United States. Where personal data of EU/EEA or UK residents is transferred internationally, we rely on appropriate safeguards such as the EU Standard Contractual Clauses or an adequacy framework applicable to the receiving provider.
11. Children
Agentown is not directed to children and may not be used by anyone under 16. We do not knowingly collect children's data; if you believe a child has provided us data, contact us and we will delete it.
12. Changes to this policy
We will post changes here with a new effective date. For material changes, especially any change to how Google user data is handled, we will notify you by email or in the product before the change takes effect.
13. Contact
Fort Buffum LLC · 66 W Flagler St, Miami, Florida, United States · privacy@agentown.world