Founder Growth OS · operated by Amy Wilkinson
Founder Growth OS is a service business operated by Amy Wilkinson, based in Amsterdam, Netherlands. Contact: amy@foundergrowthos.com
Visitors to this site: anonymous analytics (page views, referral source, country) via a privacy-respecting analytics tool. No cookies set without consent.
Prospects who book a call: name, email, company, and answers to intake questions, collected via Google Calendar booking + a Notion intake form. Used solely to qualify and respond to the engagement inquiry.
Clients who sign: business contact info, public social profile data (X, LinkedIn URLs), content samples for voice profile work, and any operational data necessary to deliver the engagement (writing samples, voice memos, target lists).
If you ask for a free scan, you give us a website address and an email address. Both are processed for that one purpose.
What we do with the address you give us. Our server makes a small number of ordinary public web requests to that site, the same kind your browser makes when you visit it, over HTTPS on standard ports only. We read the pages that are publicly served, and we do not attempt to reach anything behind a login, anything on a private network, or any service other than a public web page. We do not run scripts on your site, submit forms, or change anything. The requests identify themselves as coming from us.
Your email address. Used to send you the scan and to reply if you ask a question about it. It is not added to a marketing list without a separate opt-in, not sold, and not shared.
If the site is not yours. Only request a scan for a website you own or are authorised to act for. We read publicly available pages, which anyone can do, but the request is made because you asked for it.
Legal basis and retention. Consent, given when you tick the box and ask for the scan. You can withdraw it at any time by emailing amy@foundergrowthos.com, and we will delete the scan and the address. Otherwise a scan and its email are deleted after 12 months.
We process visitor data on the basis of legitimate interest (running the website). We process prospect/client data on the basis of contract (engaging in or fulfilling the service agreement). Sensitive data is processed only with explicit consent.
Prospect data: to qualify, respond, and propose. Client data: to deliver the agreed engagement and to maintain operations. We do not sell, rent, or share your data with third parties for marketing purposes.
Application data, including anything read from a connected Google account, is stored on a dedicated server we operate. That server is currently hosted by Leaseweb in the United States, which means personal data of people in the EEA is transferred outside the EEA. The data is protected by the technical measures set out in section 8. If you would rather your data were not held outside the EEA, write to us and we will tell you exactly what we hold about you and delete it on request. Business records also live in cloud services we use to run the engagement (Google Workspace, Notion, Slack), each under its own privacy policy and its own transfer terms. We use Anthropic's Claude API and tooling as part of service delivery; refer to Anthropic's privacy policy for those operations.
When you connect a Google account to Founder Growth OS, the app requests only: read access to your Gmail messages (to build the triage view you see on your dashboard and daily brief), the ability to create draft replies in your own Drafts folder (which you review, edit and send yourself in Gmail), and read access to your calendar events (to show your schedule beside your queue). Google user data is used only to provide these features to you. It is never sold, never used for advertising, and never transferred to third parties except as needed to operate the feature you requested, comply with law, or protect users.
Limited Use statement. The use of raw or derived user data received from Workspace APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Founder Growth OS does not use, transfer or sell Google user data, whether raw, aggregated, anonymised or derived, to create, train or improve any machine learning or artificial intelligence models, foundational or otherwise.
AI processing disclosure. Google Workspace data connected to Founder Growth OS is processed per tenant, inside the tenant's own isolated environment on infrastructure we operate. Where language-model processing is required, it is performed via the Anthropic API. Under Anthropic's commercial API terms, data submitted through the API is not used to train Anthropic's models. No Google user data is sent to any AI service that trains on submitted data, and no model provider retains Google user data for training or any other secondary purpose.
These are the specific mechanisms we use to protect personal data, including sensitive data obtained through Google Workspace APIs.
Encryption in transit. Every connection to Founder Growth OS is served over HTTPS. Our servers accept TLS 1.2 and TLS 1.3 only; TLS 1.0 and 1.1 are refused. All calls we make to third-party providers, including Google APIs, are made over TLS. Personal data is never placed in a URL or query string.
Storage and isolation. Application data is held on a single dedicated server that we operate, not on shared hosting. Each workspace has its own separate database, readable only by the service account that runs it, with file permissions that exclude every other user on the machine. Cross-workspace access is prevented in code as well as by permissions: every read of a connected provider resolves its credentials through the requesting workspace's own scope, so a workspace cannot reach another workspace's mailbox, calendar or records even by misconfiguration.
Credentials and tokens. OAuth refresh tokens, API keys and provider secrets are held outside the application directory in a root-only file readable by no other account, never in source control, and never written into logs, error messages or client-facing output. Access tokens are short-lived and requested only when a feature you enabled is running. Revoking access in your Google Account settings ends our access immediately.
Access control. Administrative access to the server is by SSH public key only; password authentication is disabled and a host firewall is enforced. Client dashboards are behind a per-account login. Only the operator has administrative access, and no third party, contractor or subprocessor is given access to your Google user data.
Minimisation. We request the narrowest scopes that deliver the feature you asked for, read only what those features need, and store the minimum required to show you the result. Message bodies are not retained beyond what the triage view you enabled requires.
Deletion. Disconnecting a provider stops all further access and removes the stored credential. On request, or on the retention schedule below, we delete the associated records from the workspace database and confirm the deletion to you.
Incidents. If we become aware of a breach affecting your personal data, we will notify you and, where the GDPR requires it, the Autoriteit Persoonsgegevens, without undue delay and within 72 hours of becoming aware.
Prospect data: 12 months from last contact, then deleted. Client data: deleted 90 days after engagement end unless the client requests retention for a continuing engagement. Google user data: retained only while the connection is active, and deleted when you disconnect the provider or close the account.
You have the right to access, correct, delete, port, restrict, or object to the processing of your personal data. To exercise any of these rights, email amy@foundergrowthos.com. We will respond within 30 days. You may also lodge a complaint with the Autoriteit Persoonsgegevens.
Google Calendar (booking), Notion (intake forms + proposals), Slack (client comms), Anthropic Claude (service delivery), Moneybird (invoicing), Google Analytics 4 (site usage analytics, IP-anonymized). Each tool processes data under its own privacy policy.
This site uses Google Analytics 4 (GA4) to understand site usage. Analytics cookies are set only after you explicitly accept via the cookie consent banner. IP addresses are anonymized. We do not use GA4 features that allow cross-site tracking (no Google Signals, no advertising features). You can withdraw consent at any time by clicking Manage cookies in the footer of any page, or by clearing your browser's localStorage for this site.
No other marketing or advertising cookies are set. Strictly necessary cookies (e.g., session tokens by hosting infrastructure) may be set; these are not used for cross-site tracking.
This policy is reviewed annually or when material changes happen. Last updated: August 2026.