Legal / Privacy

Privacy Policy

Last updated: September 14, 2026

Lintel ("we", "us", "our") is a real estate communication and management platform. This Privacy Policy describes how we collect, use, store, and protect your information when you use our service.

1. Information we collect

Account information

When you sign in through Google or Microsoft, we receive your name and email address from the authentication provider. We also store your account role and organization membership.

Property listing data

Information you enter about rental properties, including address, apartment number, city, state, postal code, monthly rent, security deposit, bedroom and bathroom count, square footage, amenities (pets allowed, dishwasher, laundry, doorman), available date, application links, deadlines, and scheduling times.

Inquirer & prospect data

Information about prospective tenants, including first and last name, phone number, email address, annual income, employer, employment status, desired move-in date, number of occupants, pet details (name, size, type), concession requests, and guarantor information (name, relationship, income).

Communication data

Email templates you create (subject lines, message bodies, sender/recipient addresses, CC/BCC recipients), and email thread identifiers used to maintain conversation continuity. When an inbound email is processed as a rental inquiry or maintenance request, we store the extracted content of that message — the inquiry text and structured fields parsed from it (such as the sender's name, contact details, move-in date, and the property it concerns) — so the conversation can be tracked and answered inside Lintel. Your mailbox itself remains in your Gmail or Outlook account; full conversation threads are fetched from your provider on demand when you view them.

Workflow & automation data

Workflow configurations you create, including block definitions, node settings, and connection rules used to automate your communication processes.

Uploaded application documents

Documents you or your applicants upload through the household drop zone — PDFs, JPGs, PNGs, or WebPs containing pay stubs, bank statements, employment letters, government-issued IDs, tenant-screening reports, lease applications, or similar rental-application material. The original files are stored only briefly while we run AI extraction (see §7); the structured fields extracted from them — such as credit score, annual income, employer, prior address — are retained on the applicant's record.

2. Google account permissions

When you connect a Google account, we request the following OAuth scopes:

We store encrypted OAuth access and refresh tokens to maintain your connection. You can revoke these permissions at any time through your Google Account settings.

Limited Use disclosure. Lintel's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. In particular: we only use Google user data to provide and improve the user-facing features described in this policy; we do not use it for advertising; we do not sell it; we do not allow humans to read it except with your explicit consent, for security purposes, to comply with applicable law, or as part of aggregated and anonymized internal operations; and we do not use or transfer Google user data to develop, improve, or train generalized artificial-intelligence or machine-learning models.

3. Microsoft account permissions

When you connect a Microsoft account, we request the following permissions via Microsoft Graph API:

You can revoke these permissions at any time through your Microsoft Account privacy settings.

4. How we use your information

5. Data storage & security

For a fuller description of our practices, see our Security page.

6. Third-party services

We use the following third-party services to operate Lintel:

We do not sell your personal information, and we do not share it with third parties except the service providers above, as needed to operate Lintel. Each third-party service has its own privacy policy. We encourage you to review them.

7. AI-powered features & data sub-processors

Email processing. Lintel uses AI to classify messages, extract information, and draft replies. Depending on your configured settings and workflows, replies are held for your review or sent automatically on your behalf. When an inbound email is processed as an inquiry or maintenance request, its content is sent to one or more of the AI providers listed below to provide these features, including extracting the structured fields described in §1. This processing happens solely to provide those user-facing features. Under our API agreements with each provider, this data is not used to train their models, and we do not use Google user data to develop, improve, or train generalized AI or machine-learning models.

Document processing. When you or your applicants upload a document through the household drop zone, the file's contents are sent to one or more third-party AI providers (our "sub-processors") for structured extraction — for example, identifying the document category and pulling credit score, income, employer, and similar rental-application fields. Each provider has a Data Processing Addendum (DPA) or equivalent that governs their handling of personal data and is automatically incorporated into our agreement with them:

What we send. The raw file bytes and a short instruction prompt. The sub-processor returns structured fields (credit score, income, etc.) which we persist on the applicant's record.

Source-document retention. Original uploaded files are deleted from our storage shortly after the AI extraction completes successfully. Failed extractions retain the file temporarily to allow automatic retry.

No training on your data. Under our enterprise / API agreements with each provider, your uploaded documents and the data extracted from them are not used to train any foundation model.

Protected-class exclusion. Our extraction prompts explicitly instruct the AI to skip protected-class indicators (national origin, citizenship, immigration status, religion, familial status, disability, source of income, etc.) so they are not extracted into the applicant's record, even if mentioned in the source document.

Output review. AI-extracted data may contain errors. Real-estate agents using Lintel are responsible for verifying any AI-extracted field before relying on it for a leasing decision; Lintel itself does not make leasing decisions.

8. Data retention & deletion

To request deletion of your account and all associated data, contact us at the email address listed below.

9. Your rights

You have the right to:

To exercise any of these rights, contact us at the email address below.

10. Children's privacy

Lintel is not directed at children under the age of 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.

11. Changes to this policy

We may update this Privacy Policy from time to time. When we make changes, we will update the "Last updated" date at the top of this page. Continued use of Lintel after changes are posted constitutes acceptance of the revised policy.

12. Contact

For questions about this Privacy Policy, your data, or to exercise your rights, contact us at nate@usedealdesk.com.