Legal
Privacy Policy
Last updated: June 23, 2026
We will never share or sell your information, especially sensitive business information such as your sales and revenue numbers, list sizes, or marketing tactics. Your audit data stays confidential.
Overview
Sendtonium ("we," "us," or "our") operates the Sendtonium Klaviyo Audit application at app.sendtonium.com. This policy explains how we collect, use, store, and share information when you use our app, including when you connect your Klaviyo account through OAuth.
Information we collect
- Contact information you provide (such as name, email, phone, store URL, and industry) when requesting an audit.
- Klaviyo account data accessed through read-only OAuth scopes, including account details, campaigns, flows, lists, segments, metrics, templates, tags, profiles, and subscriptions needed to run the audit.
- Audit results generated from your Klaviyo data, including scores, grades, evidence, and related report or deck content.
- Website capture data from your storefront URL when we analyze pop-up and on-site acquisition elements (screenshots and page HTML).
- Technical data such as IP address, browser type, and usage logs needed to operate and secure the service.
How we use information
- Run and deliver your Klaviyo marketing audit and related reports.
- Generate score summaries, sales materials, and follow-up recommendations.
- Communicate with you about your audit, booking, or support requests.
- Contact you by email and, if you provide a phone number, by text message (SMS) for sales and marketing-related messages about Sendtonium services, your audit results, and follow-up offers. Message and data rates may apply. You can opt out at any time.
- Improve our audit methodology, product experience, and security.
- Comply with legal obligations and enforce our terms.
Klaviyo OAuth and data access
When you connect Klaviyo, we request read-only OAuth permissions. We do not modify your Klaviyo account, send messages on your behalf, or write data back to Klaviyo through this integration. OAuth tokens are encrypted at rest and refreshed as needed to perform audits.
You can revoke access at any time from your Klaviyo account under Integrations. Revoking access stops future API use but may not automatically delete data we already stored.
How we share information
We do not sell your personal information. We do not share sensitive business information, including sales or revenue figures, list sizes, campaign tactics, flow strategies, or other audit findings, with third parties for their marketing or commercial purposes.
We may share limited information only with:
- Service providers that help us host, secure, analyze, or deliver the product (for example cloud hosting, email delivery, and AI processing providers).
- Professional advisors where reasonably necessary for legal, accounting, or compliance purposes.
- Authorities when required by law or to protect rights, safety, and security.
Data retention
We retain information for as long as needed to provide the service, support your account, meet legal requirements, and resolve disputes. You may request deletion of your information by contacting us.
Security
We use administrative, technical, and organizational safeguards designed to protect information, including encryption in transit (HTTPS/TLS) and encryption for stored OAuth tokens. No method of transmission or storage is completely secure.
Your choices
- Revoke Klaviyo access from your Klaviyo Integrations settings.
- Request access, correction, or deletion of your personal information.
- Opt out of marketing emails by using the unsubscribe link or contacting us.
- Opt out of marketing text messages by replying STOP to any SMS we send or contacting us.
Contact us
Questions about this policy or our data practices? Contact us at hello@sendtonium.com or visit sendtonium.com.