Skip to Content

Privacy Policy for Ottometric Chrome Extensions

Last Updated: July 21, 2026

Summary: These extensions collect email data and log it to your Odoo CRM. All data stays within Ottometric systems—we don't sell data or share it with third parties.

1. Overview

This privacy policy applies to all Ottometric Chrome Extensions: Gmail, Outlook, and Meet integrations with your Odoo CRM instance at odoo.ottometric.com.

2. What Data We Access

Gmail Extension

  • Email content: Subject lines, message bodies, and draft text (for CRM logging and AI email assistant feature)
  • Email metadata: Sender, recipients, timestamps, thread IDs, message IDs
  • Contact information: Email addresses and names of email participants
  • Thread context: Full email thread history for AI analysis and reply tracking
  • Authentication tokens: OAuth tokens for Gmail API and Odoo API access

Outlook Extension

  • Email content: Subject lines and message bodies for CRM logging
  • Email metadata: Sender, recipients, timestamps, conversation IDs
  • Contact information: Email addresses and names
  • Authentication tokens: OAuth tokens for Microsoft Graph API and Odoo API

Meet Extension

  • Meeting recordings: Audio and video content when you manually start recording
  • Meeting metadata: Meeting title, participants, start/end times
  • Calendar data: Event details for naming and organizing recordings
  • Transcriptions: AI-generated transcripts of recorded meetings
  • Authentication tokens: OAuth tokens for Google Drive, Calendar, and Odoo APIs

3. How We Collect Data

  • Automatically: When you send or receive business emails (Gmail and Outlook extensions monitor your mailbox)
  • Manually: When you click "Start Recording" in Google Meet
  • On-demand: When you use the AI email assistant feature (Gmail extension only)
  • Through APIs: Via Gmail API, Microsoft Graph API, Google Drive/Calendar APIs with your OAuth consent

4. How We Use Your Data

Gmail & Outlook Extensions:

  • CRM logging: Automatically log business emails to Odoo deals and contacts
  • Contact matching: Match email addresses to existing CRM records
  • Deal association: Link emails to active sales opportunities
  • Reply tracking: Monitor email threads for responses
  • AI assistance: Analyze draft emails for quality and tone (Gmail only, optional feature)

Meet Extension:

  • Recording storage: Save meeting recordings to your Google Drive
  • Transcription: Generate searchable transcripts via AWS Bedrock AI
  • CRM integration: Link recordings to Odoo contacts and opportunities

5. Data Storage and Retention

Where Data Is Stored:

  • Odoo CRM Server (odoo.ottometric.com): Email logs, contact associations, meeting metadata stored permanently
  • Google Drive: Meeting recordings stored in your Google Drive account
  • Local Browser Storage: Extension settings, OAuth tokens, temporary cache stored in Chrome's secure storage
  • AWS Bedrock (temporary): Meeting audio sent for transcription processing (not stored permanently)

How Long We Keep Data:

  • CRM logs: Retained indefinitely in Odoo according to Ottometric's data retention policy
  • Meeting recordings: Stored in Google Drive until you manually delete them
  • Local settings: Deleted when extension is uninstalled
  • OAuth tokens: Revoked when you sign out or uninstall

6. Data Sharing

Parties We Share Data With:

  • Odoo (odoo.ottometric.com): Email content, metadata, contact info, meeting recordings for CRM logging
  • Google APIs: OAuth authentication requests only
  • Microsoft Graph API: OAuth authentication requests only (Outlook extension)
  • AWS Bedrock (Amazon): Meeting audio for AI transcription processing (temporary, not stored)
  • Ottometric Employees: All CRM data visible to authorized team members with Odoo access

We DO NOT Share Data With:

  • ❌ Third-party analytics or tracking services
  • ❌ Advertising networks or data brokers
  • ❌ Any external parties outside Ottometric organization
  • ❌ Social media platforms

7. Google API Services User Data Policy Compliance

Our extensions comply with Google API Services User Data Policy, including the Limited Use requirements:

Gmail API (gmail.readonly scope):

  • Purpose: Monitor email threads for replies to tracked emails
  • Usage: Read thread metadata and message content to auto-log business communications to Odoo CRM
  • Limited Use Compliance: Data used ONLY for CRM logging and AI email assistance, not for advertising or other purposes

Google Drive API (Meet extension):

  • Purpose: Save meeting recordings you create
  • Usage: Write-only access to store video files in your Drive

Google Calendar API (Meet extension):

  • Purpose: Fetch meeting details for recording file names
  • Usage: Read-only access to event metadata

8. Chrome Extension Permissions Explained

  • storage: Save login tokens, preferences, and settings locally in your browser
  • identity: Secure OAuth 2.0 authentication with Google and Microsoft
  • scripting: Inject CRM sidebar interface into Gmail/Outlook web pages
  • alarms: Periodically refresh authentication tokens and check for email replies
  • tabs: Open Odoo CRM records in new tabs
  • tabCapture: Record Google Meet audio/video (Meet extension only)
  • desktopCapture: Screen sharing during recordings (Meet extension only)
  • Host Permissions: Access to mail.google.com, outlook.office.com, meet.google.com, odoo.ottometric.com, googleapis.com, graph.microsoft.com, amazonaws.com

9. Data Security

  • Encryption: All data transmission uses HTTPS/TLS encryption
  • Authentication: OAuth 2.0 secure authentication (no passwords stored)
  • Token Security: Authentication tokens stored encrypted in Chrome's secure storage
  • Minimal Permissions: Extensions request only necessary permissions for core functionality
  • Internal Network: Odoo CRM accessible only to authorized Ottometric employees

10. Your Rights and Controls

How to Control Your Data:

  • Disable Extension: Go to chrome://extensions/ and toggle OFF or click "Remove"
  • Revoke Access: Visit Google Account Permissions or Microsoft App Permissions
  • Delete Local Data: Uninstalling the extension removes all browser-stored data
  • Delete CRM Data: Contact your Ottometric administrator to request deletion of Odoo records
  • Sign Out: Use extension options page to revoke OAuth tokens
  • Opt Out of AI Features: Simply don't click the AI assistant buttons (Gmail extension)

Data Access Requests:

As an Ottometric employee, you can access all your logged data directly in the Odoo CRM system. For data export or deletion requests, contact your administrator.

11. Internal Use Only - Ottometric Employees

IMPORTANT: These extensions are designed exclusively for Ottometric employees as internal business tools. They are not intended for consumer use or public distribution. All data handling complies with Ottometric's internal data governance and security policies.

If you are not an Ottometric employee, you should not use these extensions.

12. Compliance

These extensions comply with:

  • ✅ Chrome Web Store Developer Program Policies
  • ✅ Google API Services User Data Policy (including Limited Use requirements)
  • ✅ OAuth 2.0 Security Best Practices
  • ✅ Microsoft Graph API Terms of Service
  • ✅ Ottometric internal data governance policies

13. Changes to This Policy

We may update this privacy policy as needed to reflect new features or regulatory requirements. Changes will be reflected on this page with an updated "Last Updated" date. Continued use of the extensions after changes constitutes acceptance of the updated policy.

✅ By using these extensions, you acknowledge that you are an Ottometric employee and agree to this privacy policy.