Privacy Policy
Last updated: August 20, 2026
Search Rebel LLC, d/b/a Able Software (“Able,” “we,” “us”) respects your privacy. This policy explains how we collect, use, and protect information when you (a) visit our websites at ablesoftware.io and related domains, and (b) use the Able Platform and its AI agents, which connect to third-party services (such as Google Workspace, Microsoft 365, Meta’s Facebook and Instagram, TikTok, Shopify, Asana, Notion, Klaviyo, and Canva) on your behalf via OAuth or API tokens you authorize.
Information We Collect
Information you provide: When you fill out our contact form, we collect your name, email, company name, and any message you include. When you sign up for the Able Platform, we collect your name, work email, and organization.
Information from connected third-party services: When you authorize Able to connect to a third-party service (such as Google Workspace, Microsoft 365, Meta’s Facebook and Instagram, TikTok, Shopify, Asana, Notion, Klaviyo, or Canva), we access data from that service strictly to perform the tasks you have asked our agents to perform. See the “Google User Data” and “Third-Party Integrations” sections below for details.
Automatic information: We collect basic analytics data like pages visited, browser type, and referring website to understand how people use our site.
Cookies: We use cookies and similar technologies for authentication and analytics. These help us keep you signed in and understand how visitors interact with our site so we can improve it.
Text Messaging (SMS)
If you enable login verification for your account, we collect the mobile phone number you register so we can send you one-time verification codes and account-security notifications by text message (SMS). You provide this number and consent to receive these messages when you add it in your account settings.
We use your mobile phone number and SMS opt-in consent only to deliver login verification codes and security notifications for your account. We do not use it for marketing text messages.
No mobile information — including your mobile phone number and your SMS opt-in consent — will be shared with third parties or affiliates for marketing or promotional purposes. Information sharing with subcontractors in support services, such as the telecommunications provider (Twilio) we use to transmit the message to you, is permitted strictly to deliver the code you requested. Text messaging originator opt-in data and consent will not be shared with any third parties.
You can stop receiving these messages at any time by replying STOP to any message, or by removing the number or disabling login verification in your account settings. Message and data rates may apply. See our Terms of Service for the full text-message program details.
Google User Data
When you connect a Google account to the Able Platform, we request permission to access specific Google services through Google’s OAuth 2.0 authorization flow. The scopes we may request, depending on which Able features you enable, include:
- Gmail (
gmail.modify,gmail.send): to read messages you direct our agents to analyze (for example, inbound customer emails you ask us to process), to organize your mailbox on your instruction (apply labels, archive, mark as read), and to send messages on your behalf that you have explicitly approved. - Google Drive (
drive,drive.file): to create and update files produced by the Able Platform (drive.file), and—when you authorize an agent to work with your existing documents by name in a conversational request—to read and edit files across your Drive (drive). We access files only to perform the tasks you ask an agent to carry out. - Google Docs, Sheets, and Slides (
documents,spreadsheets,presentations): to read your documents for analysis (summarizing, extracting data) and to create or edit documents, spreadsheets, and presentations containing content you asked an agent to produce. - Google Calendar (
calendar): to view existing events and schedule or update events on your behalf when you ask an agent to book or reschedule meetings. - Google Ads (
adwords): to report on the performance of your own Google Ads campaigns and, only on your explicit instruction, to make campaign changes. We never make autonomous spending changes. - Google Analytics (
analytics.readonly): read-only access to your Google Analytics (GA4) property to generate in-app traffic and conversion reports. - Google Merchant Center (
content): to view and manage your product listings and Merchant Center account so your products can appear on Google Shopping. - Google Search Console (
webmasters.readonly): read-only access to search-performance data for sites you have verified. - YouTube (
youtube): to view your channel's data and, on your instruction, manage your own videos and playlists. - Profile and email (
openid,userinfo.email,userinfo.profile): to identify your account and display your name and email in the Able Platform.
How We Use Google User Data
We use Google user data only to provide and improve the user-facing features of the Able Platform that you have explicitly enabled. For example: reading an invoice email you asked us to process, drafting a follow-up message you asked us to send, or adding an event to your calendar at your request.
Google Limited Use Disclosure
Able’s use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
- We do not sell Google user data.
- We do not transfer Google user data to third parties except as necessary to provide or improve user-facing features of the Able Platform, to comply with applicable law, or as part of a merger, acquisition, or sale of assets with notice to users.
- We do not use Google user data for serving advertisements.
- We do not use Google user data to train or improve generalized or third-party AI or machine learning models. Google user data is processed by large language models (including models from Anthropic, Google, and OpenAI) strictly at runtime to perform the task you requested, and is not retained by those providers for training purposes under our agreements with them.
- We do not allow humans to read Google user data, except: (a) with your explicit consent, (b) for security purposes (such as investigating abuse), (c) to comply with applicable law, or (d) where the data has been aggregated and anonymized for internal operational purposes.
Revoking Access
You can revoke Able’s access to your Google account at any time from your Google Account permissions page, or by disconnecting the integration in the Able Platform. Revoking access stops all future data access and, within thirty (30) days, we delete cached data obtained through that connection except where retention is required by law.
Third-Party Integrations
The Able Platform connects to other third-party services on your behalf. The same principles that govern our use of Google user data apply to all third-party data we access:
- Microsoft 365 / Outlook via Microsoft Graph (Mail, Files, Calendars).
- Meta — Facebook Pages and Instagram professional accounts via the Meta Graph API (publishing the content you approve, page and profile metadata, and engagement insights). Data received from Meta platforms is used solely to provide the functionality the connecting user requested, consistent with the Meta Platform Terms.
- TikTok via the TikTok API (publishing the content you approve and reading engagement metrics), where authorized.
- Shopify via Admin API (orders, products, customers).
- Asana (tasks, projects, teams).
- Notion (pages, databases).
- Klaviyo (lists, campaigns, profiles).
- Canva (designs, assets).
- SOS Inventory, QuickBooks, and other accounting or inventory platforms, where authorized.
We access data from these services strictly to perform the tasks you have asked Able agents to perform. We do not sell this data, do not use it to train AI models, and do not share it with third parties except as described in this policy. Access tokens are stored encrypted in AWS Secrets Manager, and we honor token expiration and revocation set by the upstream provider.
AI and Machine Learning
The Able Platform uses large language models (including models from Anthropic, Google, OpenAI, and xAI) to perform tasks on your behalf. When an agent processes your data or data from a connected third-party service (including Google user data, Microsoft 365 data, Shopify data, or any other integrated service), that data is sent to a model provider at runtime solely to generate a response to your request.
Under our agreements with these providers, your data and the data of connected services is not used to train or improve their models. We do not build or train our own generalized AI models on user data. Per-tenant context stored in the Able Platform (such as conversation history and user-specific memory) is used only to improve the experience of that specific tenant and is never combined across tenants or used to train shared models.
How We Use Your Information
We use your information to provide and operate the Able Platform, respond to your inquiries, send you information about our services, and improve our website. We may send you occasional updates about Able—you can unsubscribe at any time.
Information Sharing
We do not sell your personal information or data from connected third-party services. We may share information with service providers who help us operate our business (hosting on AWS, model providers such as Anthropic / Google / OpenAI / xAI for runtime inference, analytics, email delivery) under contracts that prohibit use of the data for any other purpose, and when required by law.
Data Retention and Deletion
We retain your information for as long as necessary to provide the Able Platform, comply with legal obligations, resolve disputes, and enforce our agreements. Data from connected third-party services is retained only as long as needed to fulfill the task you requested, unless you have asked us to keep operational history (such as conversation memory) to improve your experience.
You can request deletion of your account and all associated data (including any cached data from connected third-party services) by contacting privacy@ablesoftware.io. We will complete the deletion within thirty (30) days, except where retention is required by law.
Security
We protect your data with industry-standard security practices: data encrypted in transit with TLS 1.2+, data encrypted at rest on AWS, OAuth tokens stored in AWS Secrets Manager with least-privilege IAM access, tenant isolation at the database and application level, and audit logging of sensitive operations. No system is perfectly secure; we will notify you without undue delay in the event of a data breach affecting your personal information.
Your Rights
You can request access to, correction of, or deletion of your personal information at any time by contacting us at privacy@ablesoftware.io.
California residents: Under the CCPA, you have the right to know what personal information we collect, request deletion, and opt out of the sale of your information (we do not sell your information).
EU/EEA residents: Under GDPR, you have rights including access, rectification, erasure, and data portability. Our legal basis for processing is performance of a contract (Able Platform services you have signed up for) and legitimate interest for B2B marketing communications.
Children
The Able Platform is intended for business use by adults. We do not knowingly collect personal information from children under 13. If you believe a child has provided us information, contact us and we will delete it.
Changes to This Policy
We may update this policy from time to time. Material changes will be announced to account holders by email and posted on this page with an updated “Last updated” date. Continued use of the Able Platform after a change constitutes acceptance of the updated policy.
Contact Us
Questions about this policy? Email us at privacy@ablesoftware.io.