Try the demo

Esoteria Inc. ยท Last updated 26 September 2026

Privacy policy

This page says what Atlas reads, where it keeps it, which companies process it, who at esoteria can see it, how long it is kept, and how to take it all back. Where something is not built yet, it says so.

This policy covers Atlas, the product, and this website. Esoteria Inc., a Delaware corporation based in New York ("esoteria", "we"), makes Atlas and is responsible for the data described here.

This website

This website sets no cookies and runs no analytics, trackers or third-party scripts. The fonts are served from this site, not a third party. Like any website, our host keeps standard request logs, such as IP addresses. The interactive demo runs entirely in your browser with invented data: nothing you do in it is sent to us. If you write to us, we have your email because you sent it, and we use it to reply.

The rest of this page is about Atlas.

Where Atlas runs

Atlas runs on a server esoteria operates at Amazon Web Services, in the United States (Ohio). Your Atlas lives there in a private profile that belongs to you alone: its own operating-system user, its own folder, its own process. Other clients' Atlas cannot read it, and neither can other people at your company unless they have their own seat. That separation is enforced by the operating system, not by a policy or a prompt. The people who run the server are the exception, and who at esoteria says what they can see and when they may look.

The app on your Mac is the microphone, the screen and the keys. It keeps its settings, your seat's sign-in token, a log of its own activity, and a recording until it has uploaded. The work, and what Atlas keeps, is in your profile on the server.

What Atlas reads

Only what you connect. Each connector (mail, calendar, documents, chat, your CRM, your books) is a sign-in you grant. You can disconnect any tool from inside Atlas, except the one email inbox Atlas needs to work; you can end that one by removing Atlas from your Google or Microsoft account at any time.

Your mail is read as Atlas needs it. A sweep every few minutes reads new mail to find what needs you, and keeps each day's sorted list, message text included, in your profile. Your calendar is copied into your profile every half hour so Atlas can brief you and find free times.

The files on your Mac stay on your Mac. Atlas opens a file from the folders you chose when it needs one, uses it for that answer, and does not keep the file's text afterwards. If the learning from your files is switched on, each document is sent once, Atlas learns from it, and the copy is deleted; what it learned stays in its Memory. Files you drop into a chat are deleted 24 hours later. If you turn on the Notes or Messages bridge, the app reads them on your Mac and sends them to your profile.

When you use the ask key, Atlas takes a picture of the window in front of you and sends it with your question, so it can see what you mean. When you hold the dictation key, only your voice is sent, to be turned into text. Password managers and similar apps are never captured. It records a meeting only when you tell it to, or when you have set it to record; the recording is uploaded to your profile, turned into a transcript and a write-up, and the audio is deleted after 30 days.

What Atlas learns about you (your people, your deals, your prices, the way you write) stays in your profile as its Memory. You can read every line, see where it came from, correct it, or tell Atlas to forget it.

What reaches a model provider, stated plainly

Atlas sends your real text, including names, email addresses and figures, to the model that answers each turn. It is not redacted or anonymised first. Pictures go too: the window you ask about, images you attach, and figures inside documents.

We built redaction, ran it, and removed it. Stripping names and numbers made Atlas materially worse at the work it is for: it cannot tell you who to chase, or what a deal is worth, if those details are masked before it reads them. We would rather tell you that than claim a protection we no longer provide.

The control we give you is on the way out, not the way in: Atlas drafts. Email, messages, posts, invites, payments and cancellations are staged as something you read and approve. Nothing goes to another person on your behalf without an explicit yes from you, and there is no setting that turns that off. Changes that stay inside your own account and can be undone, such as labelling an email or updating a sheet you asked it to update, run without a separate yes.

Who else touches your data

These companies process data for us, only to make Atlas work for you:

ProviderWhat they doWhat they receive
OpenAIThe model behind every answer, draft and background jobThe text of each turn, including content from your connected tools, and the pictures described above
DeepgramTurns speech into text when you talk, dictate or record a meetingAudio, and up to 100 names of your people and companies so they are spelled right
Tavily, with Firecrawl, Brave and DuckDuckGo as backupsWeb lookupsThe search words, which can include a name from your work, such as a company you asked about
Contact-data vendors: TheirStack, Exa, Findymail, Icypeas, MillionVerifier, BouncerFinding or checking contacts you don't have yet, only when an outreach play you approved needs themThe company criteria, names, company domains or email addresses involved
PrimeforgeProvides sending mailboxes we rent for you, only when a cold outreach play you approved sends from themThe messages you approved and their recipients
Amazon Web ServicesHosts the server your profile runs onEverything in your profile, stored on their infrastructure

If you connect your own account at a vendor (for example your own contact-data or sending tool), that vendor receives what the play sends it under your agreement with them. We keep Anthropic as a standby model in case OpenAI fails; today it receives nothing, and we would update this page before switching.

What these providers keep, under their own terms: OpenAI does not train its models on data sent through its API unless the customer opts in to share it, and keeps API traffic for up to 30 days to monitor abuse; Atlas asks OpenAI not to store its answers. Deepgram's default terms let it keep audio and use it to improve its speech models unless each request opts out, and Atlas does not yet send that opt-out; we are adding it.

We do not sell your data, rent it, or use it for advertising. Nothing you teach Atlas is pooled: learned skills are private to the profile that learned them, and there is no shared pool a later client could benefit from. We disclose data only to the processors above, when the law requires it, or to protect the safety and security of our users and service.

Who at esoteria can see your data

Atlas runs on a server we operate, so the people who run it (today, two people at esoteria) have administrator access to it. That access can open anything in your profile, including Atlas's record of each turn: what you asked, what it read and did, and what it answered. Atlas keeps that record for 180 days so problems can be found and fixed.

Our rule is that no one at esoteria opens the content of your profile, including anything from Google or Microsoft, except when you ask us to look at something specific to help you, when it is needed for security (such as investigating abuse, an attack, or a bug that puts data at risk), or when the law requires it. We do not yet keep a separate log of each time an administrator opens a profile; we are building one.

Google user data

Atlas's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

When you connect Google, you choose on Google's consent screen what Atlas may access. Here is what each part is for:

Google serviceWhat Atlas does with it
GmailReads your mail to find work that is waiting (a client who went quiet, an invoice question, a contract deadline), drafts replies in your voice, and labels or files messages. Sends an email only after your yes.
Google CalendarReads your calendars to brief you before meetings and find free times. Creates an event or sends an invite only after your yes.
Drive, Docs, Sheets, SlidesReads the documents you work from (contracts, price sheets, decks) so drafts carry the right figure and its source. Edits a file only when you ask; shares a file only after your yes.
ContactsReads names and addresses so Atlas writes to the right person. Never writes to your contacts.
TasksReads and updates your own task lists when you ask.
Chat, Forms, YouTubeRead only: Chat messages you can see, form responses, and your YouTube account, when you ask about them.
Your Google accountYour email address, to know which account is connected.

How it is used, and what it is never used for

  • Google user data is used only to provide the Atlas features you see: finding work, drafting, briefing, scheduling and answering your questions.
  • It is shared only with the processors listed above, only to provide those features: OpenAI reads it to produce your answers and drafts, Deepgram receives names from it so your dictation spells them right, and Amazon Web Services stores it in your profile.
  • It is never used for advertising, never sold, and never used to build a profile of you for anyone else.
  • Atlas does not use data received from Google Workspace APIs to develop, improve or train generalized or non-personalized AI or machine-learning models. The only learning is your own: your Memory, and the skills Atlas tightens overnight from its own record of your turns, both private to your profile.
  • No one at esoteria reads your Google data, except with your agreement to look at specific messages or files, for security (such as investigating abuse or a bug), or to comply with the law. People with administrator access to the server can technically open it; who at esoteria says how that is governed.

Storage, keeping and deleting

What Atlas reads from Google is kept in your private profile while your seat is active, because Atlas's memory of your business is what makes it useful. The tokens that let Atlas read your account are stored as a file in your profile that only your profile and a server administrator can open. They are not yet encrypted with a separate key; we are adding that before Google's security assessment.

Disconnect a Google service in Atlas and the token is deleted from our server, so Atlas stops reading it; to cancel the grant on Google's side too, remove Atlas in your Google account's security settings (Atlas does not yet do that for you). What Atlas already read stays in your profile until you ask us to delete it or close your seat. Then everything read from Google, and the tokens, are deleted on the timeline in Keeping and deleting.

Microsoft data

If you connect Microsoft 365 (Outlook, Calendar, OneDrive and SharePoint, Teams, To Do, OneNote, Contacts), everything in the Google section above applies in the same way: Atlas uses the data only to provide its features, sends, shares and invites only after your yes, never uses it for advertising or to train general models, stores its tokens the same way, and deletes it with your profile.

Keeping and deleting

While your seat is active, Atlas keeps what it holds for you in your profile, with these limits built in:

WhatHow long
Your conversations with Atlas180 days
Atlas's record of each turn (what it read and did)180 days
Meeting audio30 days (the transcript and write-up stay)
Cards you dismissed30 days
Files you drop into a chat24 hours
Text of files read from your MacNot kept after the answer
Server logs, which can include fragments such as an email's subject and sender90 days
Memory, contacts and companies, meeting write-ups, drafts, the daily mail list, the record of what you approvedWhile your seat is active

When you close your seat or ask us to delete your data, we delete your whole profile from our server within 30 days: everything above, and the tokens for every connected account. Server backups, where they exist, are kept no longer than 7 days, so any copy there is gone within 7 days after that. Server logs expire on their own within 90 days. Copies held by the providers above follow their terms (OpenAI keeps API traffic up to 30 days). If you paid for Atlas, we keep our billing records (what we invoiced, and the amounts and dates you approved) for seven years, as tax law expects, and nothing else.

Deleting your profile does not reach into Gmail, Outlook or Slack, which remain yours and untouched.

To ask for an export or a deletion, email support@esoteria.ai from the address on your seat, or see Support. We confirm the request is yours, do it within 30 days, and tell you when it is done. You can also export your conversations and memory yourself from inside Atlas; an export of everything else (Memory pages, contacts, meetings) comes from us on request.

Security

  • Each person's Atlas runs as its own operating-system user on our server, with its own folder and process; one profile cannot open another's files.
  • Your Mac reaches your profile over HTTPS, with a token issued to your seat alone.
  • Connector tokens are stored as files in your profile, readable only by your profile and a server administrator. They are not yet encrypted with their own key; we are adding that.
  • Administrator access to the server is limited to the people who run it, and governed by the rule in who at esoteria.
  • Every call to a model provider is written to a ledger in your profile: what was called, when, and what it cost.
  • Atlas cannot send, share, pay or delete for good on its own: those wait for your yes.

Your choices

  • See it: Memory in Atlas shows what Atlas knows about you, each line with where it came from.
  • Correct it: fix any Memory line, or any fact on a person, and the next draft uses the fix.
  • Forget it: tell Atlas to forget a line, or ask us to delete everything.
  • Take it with you: export your conversations and memory in Atlas, or ask us for everything.
  • Stop it: disconnect a tool, say no to recording a meeting, or close your seat.

Atlas is a business product for adults. We do not knowingly collect data from children.

If we change this policy in a way that matters, we will tell the people using Atlas directly rather than quietly updating this page.

Contact

Esoteria Inc., New York. Privacy questions and requests: support@esoteria.ai. Anything else: hello@esoteria.ai. We reply within one business day. See also our terms of service.