Skip to content
ProductIntegrationsPricingDocsBlogSign inGet Started

Trust · privacy

Privacy notice

How Reach Out Labs GmbH collects, uses, shares, and protects personal data when you use ReachOut.

Last updated 12 August 2026

Who is responsible

Reach Out Labs GmbH is responsible for personal data used to operate our website, customer accounts, and commercial relationship. When a customer uses ReachOut to manage contacts, campaigns, or analytics, that customer determines the purpose of the processing and ReachOut acts as its service provider or processor.

Questions and privacy requests can be sent to hello@usereachout.com.

Data we process

  • Account and profile details, authentication records, and organization memberships.
  • Contact, segment, campaign, template, and email-delivery data supplied by customers.
  • First-party website and product analytics, including events, sessions, and technical metadata.
  • Billing, plan, support, security, audit, and diagnostic information.
  • Prompts and relevant customer context when an authorized user requests an AI-generated insight.

Why we process it

We process data to provide and secure the service, authenticate users, deliver requested campaigns, measure product and campaign performance, generate requested insights, provide support, administer subscriptions, meet legal obligations, and improve reliability. Depending on the context, the legal basis may be performance of a contract, legitimate interests, consent, or compliance with law.

Service providers and transfers

We use infrastructure, email-delivery, billing, content-management, authentication, monitoring, and AI-inference providers where needed to deliver ReachOut. AI providers receive customer context only when an authorized user invokes an AI feature. Provider location and the chosen feature can result in an international transfer. Where required, we use an applicable transfer mechanism and contractual safeguards.

Contact us for the current subprocessor list or the safeguards applicable to your account.

Retention and security

We retain data while an account is active and for the period needed to provide the service, resolve disputes, maintain security records, and meet legal obligations. Customer-configured retention and deletion rules may shorten that period for product data. Encrypted backup copies are removed as their backup cycles expire. Security controls are summarized on oursecurity page.

Your choices and rights

Depending on where you live, you may have rights to information, access, correction, deletion, restriction, portability, objection, or withdrawal of consent. We may need to verify your identity before fulfilling a request. If ReachOut holds the data for one of our customers, contact that organization first so it can instruct us.

Learn more from the Swiss FDPICand the European Commission.

This operational notice is being prepared for the ReachOut 2.0 release and should be reviewed by qualified counsel before it is treated as the final contractual privacy notice.

Product

Studio and analyticsAI agentsMCP serverPricing

Resources

DocumentationIntegrationsComparisonsBlogReleases

Company

AboutReach Out LabsContact

Legal

PrivacyTermsSecurityDPA
ReachOut / v2.0.2 — © Reach Out Labs GmbHhello@usereachout.com