Privacy Policy

Effective date: June 21, 2026 · Last updated: June 21, 2026

Red One Dispatch ("the Service") is operated by Red One Corporation ("Red One", "we", "us"). This policy explains what data the Service processes on behalf of the organizations that subscribe to it ("Customers"), and how we protect it. For Customer mailbox data, Red One acts as a data processor; the Customer is the data controller.

1. Data we process

CategoryExamplesWhy
Email content & metadataSubject, body, sender/recipient addresses and names, timestamps, conversation IDs, sent items, mailbox settingsTo classify priority, generate draft replies, and detect reply/burst patterns
Account & configurationUser display name, email, mobile number (for SMS), time zone, VIP lists, reply signatureTo operate the Service for each monitored mailbox
Operational & usageProcessing logs, message/token/SMS counts, health checkpoints, and per-message cost metadata (model, token counts, cost, timestamp, and the monitored mailbox address) — no email content, senders, or subjectsReliability, support, billing/metering, and our own cost/margin accounting

We access mailboxes only after a Customer administrator grants explicit Microsoft 365 admin consent (or Google Workspace domain-wide delegation). To avoid requiring customers to re-consent later, the Service requests both read and management (read/write) permissions for the enrolled mailboxes at the time of consent; write permissions are exercised only for features the Customer enables.

2. Sub-processors

We share the minimum data necessary with the following sub-processors:

Sub-processorPurposeData shared
Anthropic, PBCAI classification & draft generationCleaned email subject/body and sender context for the message being processed
Twilio Inc.SMS alertsRecipient mobile number and the alert text (sender, subject, summary)
Microsoft CorporationMailbox access (Graph), hosting, storage (Azure)Mailbox data; all stored Service data
Google LLC (Google Workspace tenants only)Mailbox access (Gmail API)Mailbox data for Google-hosted Customers
Stripe, Inc.BillingBilling contact and subscription metadata (no mailbox content)
Email delivery provider (e.g. SendGrid / Mailgun / Amazon SES / Azure)Transactional email (e.g. card-expiry and billing notices)Billing contact email address and the notice content (no mailbox content)

3. AI processing and training

Email content is sent to our AI sub-processor solely to classify and draft replies for that message. We do not use Customer data to train AI models, and our AI sub-processor does not train its models on data submitted through its commercial API.

4. Storage, location, and retention

Service data is stored in Microsoft Azure in the East US region. Compliance-tier Customers may be provisioned dedicated, geo-redundant storage and a dedicated key vault. We retain processed-message and action-item records for 12 months, and delete Customer data within 30 days of account termination on request.

5. Security

Data is encrypted in transit (TLS) and at rest. Each Customer's data is logically isolated by tenant, and platform secrets are held in Azure Key Vault accessed via managed identity. Access to production systems is restricted to authorized Red One personnel.

6. Your rights

Depending on your jurisdiction (e.g., GDPR, CCPA), individuals may have rights to access, correct, delete, or export their personal data, and to object to or restrict processing. Because we process mailbox data on behalf of Customers, such requests are generally directed to the Customer (controller); we assist Customers in fulfilling them. Contact privacy@red.one.

7. Changes

We will post material changes here and update the effective date. Continued use of the Service after changes constitutes acceptance.

8. Contact

Red One Corporation
3200 Highlands Pkwy SE, Smyrna, GA 30082
privacy@red.one

Terms of Service · Back to Red One Dispatch