Privacy policy
Last updated: 1 October 2026
Juno (“Juno”, “we”, “us”) is a personal CRM available at https://juno.expert. This policy explains what data we handle, why, and the choices you have. It is written to be read, not just filed away.
Plain-language summary
- Juno stores the contact, company, deal, and activity data you put into it so you can manage your relationships. That data is yours.
- We use OpenAI to transcribe your voice notes and Anthropic (via Vercel AI Gateway) to classify and organise them. We do not sell your data or use it for advertising.
- If you connect a Google account, Juno can send email on your behalf and read the connected account’s email address. Juno cannot read, list, or store your inbox. It has no read access to your received mail.
- We use only the cookies needed to keep you signed in. No advertising or cross-site tracking.
- You can access, export, correct, or delete your data, and disconnect Google at any time. Contact us at haim@dimer.org.
1. Who we are (data controller)
The data controller responsible for your personal data is Haïm Dimer, trading as Solution Tech Consulting, based in France. For any privacy question or to exercise your rights, contact haim@dimer.org.
Because we are established in France and serve users who may be in the European Union, we process personal data in accordance with the EU General Data Protection Regulation (GDPR) and applicable French data protection law.
2. Data we collect and why
2.1 Account data
When you sign in, we store your email address and authentication records (magic-link sign-in tokens and session records) to identify you, secure your account, and let you sign in.
2.2 CRM content you create
Juno is a tool you use to record information about your own contacts and business: contacts and their channels, companies and accounts, deals and pipeline data, an activity timeline of engagements you log, and voice or text capture notes.
Where these records contain personal data about third parties (your contacts), you act as the controller of that data and Juno acts as your processor, handling it only to provide the service to you. You are responsible for having a lawful basis to store information about your contacts.
2.3 Voice and text processing (AI)
Audio you upload for capture is sent to OpenAI for transcription. The resulting text, and text notes you paste, are sent to Anthropic models via Vercel AI Gateway to classify and extract structure. We use these processors only to deliver the features you invoke. Audio files are stored in Cloudflare R2; structured data in Neon Postgres.
2.4 Inbound email forwarding
If you route email to your per-workspace Juno address, the content of those forwarded messages is logged to your activity timeline. Only mail forwarded to that address is processed; Juno does not reach into any mailbox to fetch mail.
2.5 Technical and log data
Our infrastructure providers process standard technical data (such as IP address, request metadata, and error logs) to operate, secure, and debug the service.
2.6 The waitlist
If you join the waitlist on our homepage, we keep the email address you give us, the language you were reading the page in, and when you signed up. We use them only to invite you to Juno when your place is ready and to protect the form from abuse, and the person who runs Juno is notified of new sign-ups by email and on their devices. The legal basis is your consent, which you can withdraw at any time, and, for protecting the form, our legitimate interest in keeping it free of abuse. We delete the address, and the notification emails that carried it, once you have been invited, or after 12 months if we have not invited you by then. To be removed sooner, email haim@dimer.org and we will delete it.
3. Google account integration
Juno offers an optional integration that lets you send email replies directly from within Juno.
3.1 Scopes we request
https://www.googleapis.com/auth/gmail.send: to send email on your behalf, and only when you press send on a message you have reviewed.https://www.googleapis.com/auth/gmail.readonly: to import email exchanged with your CRM contacts into your timeline when you enable mailbox sync. Juno reads only what the sync needs and never modifies or deletes mail.https://www.googleapis.com/auth/gmail.compose: to save a reviewed email into your Gmail drafts when you choose “save to drafts” instead of sending.https://www.googleapis.com/auth/gmail.settings.basic: to list your verified send-as addresses and their signatures, so you can choose which identity an email goes out as. Juno never changes your Gmail settings.https://www.googleapis.com/auth/userinfo.email: to read the email address of the Google account you connect, solely to display which account is connected and to set the correct “From” address.
3.2 What Juno does and does not do with Google data
- Juno does not read, list, download, or store the content of your mailbox, and has no read access to received mail.
- Juno sends only the replies you explicitly compose inside Juno.
- Juno stores Google OAuth access and refresh tokens so it can send on your behalf. These are stored securely and used only for sending.
- You can disconnect your Google account at any time from within Juno, which deletes the stored tokens. You may also revoke access via your Google Account security settings.
3.3 Limited Use disclosure
Juno’s use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
4. Legal bases (GDPR)
- Performance of a contract (Art. 6(1)(b)): to provide the Juno service, including authentication, storing your CRM data, capture, and the Google sending feature you enable.
- Legitimate interests (Art. 6(1)(f)): to secure the service, prevent abuse, debug, and improve reliability, balanced against your rights.
- Consent (Art. 6(1)(a)): where you explicitly opt in, for example by connecting your Google account or uploading audio. You may withdraw consent at any time.
- Legal obligation (Art. 6(1)(c)): where we must retain or disclose data to meet a legal requirement.
5. Third-party processors
We share data only with service providers that process it on our behalf to run Juno:
- Vercel: application hosting.
- Neon: Postgres database hosting.
- Cloudflare (R2): storage of audio files.
- OpenAI: audio transcription.
- Anthropic, via Vercel AI Gateway: text classification and extraction.
- Resend: sending transactional, sign-in and waitlist notification emails.
- Google: sending email on your behalf when you connect a Google account.
Each processor is bound by a data processing agreement (or equivalent terms) and may process data only on our instructions. We do not sell your personal data, and we do not use your CRM content or Google data for advertising or to train models for unrelated purposes.
6. Data retention
- Account and CRM data are retained for as long as your account is active.
- Audio files are retained to support your timeline; you can delete individual captures, which removes the associated audio.
- Google OAuth tokens are retained only while your Google account is connected and are deleted when you disconnect.
- When you close your account or request deletion, we delete your personal data and CRM content within a reasonable period, except where we must retain limited records to meet a legal obligation.
- Backups and logs are rotated and expire on a rolling basis.
7. Your rights
Subject to applicable law, and in particular under the GDPR, you have the right to access, rectify, erase, restrict or object to processing, and to data portability; to withdraw consent at any time; and to lodge a complaint with a supervisory authority. In France this is the CNIL (www.cnil.fr).
To exercise any right, email haim@dimer.org. We will respond within the timeframes required by law (generally one month under the GDPR).
8. Security
We take reasonable technical and organisational measures to protect your data, including encryption in transit, access controls, an email allowlist restricting who can sign in, secure storage of credentials and OAuth tokens, and reliance on reputable infrastructure providers. No system is perfectly secure, but we work to protect your data proportionately to its sensitivity.
9. International transfers
Some of our processors are located outside the European Economic Area (for example, in the United States). Where personal data is transferred outside the EEA, we rely on appropriate safeguards, such as the European Commission’s Standard Contractual Clauses or an adequacy decision, to ensure your data receives an equivalent level of protection.
10. Cookies and sessions
Juno uses only the cookies strictly necessary to operate the service, primarily to keep you signed in. We do not use advertising cookies, cross-site trackers, or profiling analytics. Because these cookies are essential, they do not require consent under EU rules.
11. Children
Juno is a professional tool intended for adults. It is not directed to children, and we do not knowingly collect personal data from anyone under 16. If you believe a minor has provided us data, contact us and we will delete it.
12. Changes to this policy
We may update this policy as Juno evolves or as legal requirements change. When we make material changes, we will update the “Last updated” date above and, where appropriate, notify you. Your continued use of Juno after an update constitutes acceptance of the revised policy.
13. Contact
Haïm Dimer / Solution Tech Consulting
Email: haim@dimer.org