Privacy Notice
What we access
When you connect Salesforce, you authorize INQUA through OAuth; we never receive or store your Salesforce password. Live SOQL tools use the connection to read schema metadata and run read-only queries. Data Sync reads the objects you select. Data Import can insert records — or upsert them matched on an External ID field you choose — through Salesforce Bulk API only after you review the row count and explicitly confirm the upload; it never deletes Salesforce records, and an upload identical to your last one is refused unless you explicitly allow the repeat.
Analytics on our public pages
Our public marketing pages (this page, the home page, and similar pages — never the signed-in application) may use Google Analytics and/or Plausible Analytics to understand visitor traffic. Google Analytics sets cookies and is provided by Google; Plausible does not use cookies. Neither runs on pages behind sign-in, and neither receives your Salesforce data, account credentials, or anything you enter into the product.
What we send to the AI
AI Ask sends your question, relevant conversation context, Salesforce schema metadata, the generated query, and up to 50 returned rows to the configured AI provider to compose an answer. Raw live-query result rows are not saved as result sets. Conversation text, assistant answers, and exact queries are saved until you delete the conversation or account. Data Import's optional AI field matching sends source headers and template metadata, not source row values. Two further Data Import tools send more only when you invoke them: AI value mapping sends the distinct values of the single column being mapped (with the field's accepted values), and the upload-error explainer sends Salesforce's error messages, which can include rejected values.
What we store
- Account and connection: email, authentication metadata, preferences, cached org schema, and an OAuth refresh token encrypted at rest.
- Live SOQL: conversation questions and answers, exact queries, guidance, dashboard definitions, and activity metadata. Raw query result sets are not retained.
- Data Import: output templates, mappings, source uploads, and prepared workbooks in a private per-user namespace on local storage or Azure Blob, depending on the deployment. Prepared workbooks remain after an individual import is deleted.
- Data Sync: selected Salesforce records in a private per-user SQL schema until replaced by a later sync or removed with the account.
- SOQL demo: isolated sample warehouse data plus separate demo conversations and dashboard definitions.
Retention and deletion
The application keeps the data above while your account exists or until you delete an item through the available product controls. From User settings, you can permanently delete your account and its active application data, including connections, files, conversations, dashboards, identifying activity, and real and demo warehouse schemas. Operational monitoring records aggregate counts and stable failure stages without email addresses, user ids, codes, filenames, or schema names. Infrastructure backup and third-party provider retention, where applicable, follows the applicable deployment and provider policies; contact us for the details of your deployment.
What we don't do
We don't sell your data, and we don't use your CRM data to train models.
Your controls
You can disconnect Salesforce from the Connections page and permanently delete your account from User settings. If you cannot access your account, email hello@inqua.ai for assistance.
Contact
Questions? hello@inqua.ai