Portal Audit

Privacy policy

DRAFT for review. Not yet in effect. Prepared 2026-10-02 for Jon Martin's review. It is not legal advice and must be reviewed (ideally by counsel) before it is published or used in a HubSpot Marketplace listing. Items in [brackets] need a decision.

Last updated: [date of publication]

This policy explains what data the Portal Audit app ("Portal Audit", "we", "us") accesses, stores and shares when you connect it to your HubSpot account, and the choices you have. Portal Audit is operated by [legal entity name, e.g. Jon Martin / The Jon Martin company], [business address], reachable at jon@thejonmartin.com.

Who this applies to

This policy covers the HubSpot account ("portal") owners and users who install Portal Audit, and the people whose details appear in the portal settings we read (for example HubSpot users and record owners). It does not cover HubSpot itself; HubSpot's own privacy policy applies to your HubSpot account.

What we access

Portal Audit reads your HubSpot configuration through HubSpot's API, with the permissions ("scopes") you approve during install. It is read-only: it never creates, changes or deletes anything in your portal.

Required permissions:

HubSpot dataScopeWhat the audit reads
AccountoauthAccount details: portal ID, time zone, currency, data hosting location
Contactscrm.objects.contacts.readRecord counts and field-completeness checks (counts only; no contact records are copied)
Companiescrm.objects.companies.readRecord counts and field-completeness checks
Dealscrm.objects.deals.readRecord counts, field completeness, deal pipelines and stages
Ticketscrm.objects.tickets.readRecord counts, field completeness, ticket pipelines and stages
Contactscrm.schemas.contacts.readProperty definitions (names, types, groups, usage flags)
Companiescrm.schemas.companies.readProperty definitions
Dealscrm.schemas.deals.readProperty definitions
Ticketscrm.schemas.tickets.readProperty definitions
Line itemscrm.objects.line_items.readRecord counts
Line itemscrm.schemas.line_items.readProperty definitions
Quotescrm.objects.quotes.readRecord counts
Quotescrm.schemas.quotes.readProperty definitions
Userscrm.objects.owners.readRecord owners (name, email, active/archived) to find unassigned or departed owners
Userssettings.users.readUsers and roles (name, email, role, super admin flag) for the access review
Userssettings.users.teams.readTeams and team membership
Segments (lists)crm.lists.readSegment names, types, sizes and last-updated dates
Account securityaccount-info.security.readLogin history, security activity and audit-log summaries (last 90 days); private-app API usage

Optional permissions (only if your plan includes the tool and you leave them checked):

HubSpot dataScopeWhat the audit reads
FormsformsForm names, types and settings (submissions are not read)
Marketing emailmarketing-emailMarketing email names, states and settings (nothing is sent)
WorkflowsautomationWorkflow names, status, object type, enrollment settings and actions (no workflow is changed)
Marketing emailcontentMarketing email inventory when the marketing-email scope is not enough (some portals require content)
Custom objectscrm.objects.custom.readCustom object record counts and field completeness
Custom objectscrm.schemas.custom.readCustom object schemas and property definitions
Websitecms.domains.readConnected domains, to find the company website for the business profile

We do not read form submissions, email content sent to contacts, conversations, files, or payment data, and we do not copy contact, company, deal or ticket records. Data-quality checks use counts of records with missing or inconsistent fields.

What we store

How we use it

Only to provide the service: run audits, produce reports and fix plans, compare month over month, and support you. We do not sell your data, use it for advertising, or use it to train AI models.

AI processing

Parts of the report narrative (summary, strengths/weaknesses, priorities) may be drafted with an AI assistant. Only aggregated audit results are used for this, and before any AI processing we remove email addresses, IP addresses, phone numbers, URLs (other than your public website) and known person names. [List the AI provider(s) actually used, e.g. "xAI (Grok)" or "none", and their data-retention terms.]

Who we share it with

We share data only with service providers that help us run Portal Audit, under contracts that limit their use of it:

ProviderPurposeData
[Railway Corporation (railway.com)]Hosting the app, database and report files [region: to confirm]Everything listed under "What we store"
[AI provider, if any]Drafting the report narrativeRedacted, aggregated audit results only
[Email provider used to send reports, e.g. Google Workspace]Delivering reports to youThe report you receive

We may disclose data if required by law. If Portal Audit is sold or transferred, this policy continues to apply to the data.

Where data is stored

Data is stored with our hosting provider in [region, e.g. the United States]. If you are outside that region, your data is transferred there. [If you serve EU/UK customers: name the transfer mechanism, e.g. Standard Contractual Clauses, and offer a data processing agreement.]

How long we keep it

Security

Encrypted connections (HTTPS) in transit; refresh tokens encrypted at rest; least-privilege, read-only API access enforced in code; admin functions protected by a secret token; data separated by portal ID. No method of storage or transmission is completely secure, but we work to protect your data and will tell you without undue delay if a breach affects it.

Your rights

Depending on where you live, you may have rights to access, correct, delete or export your personal data, or to object to or restrict its processing. Email jon@thejonmartin.com and we will respond within 30 days. For HubSpot users listed in a report, we act on behalf of the portal owner (as a processor/service provider), so we may refer your request to them. [If applicable: you can complain to your data protection authority.]

Children

Portal Audit is a business tool and is not directed at children under 16.

Changes

We will post changes on this page and update the date above. For material changes we will email the contact on file before they take effect.

Contact

[Legal entity name], [address]. Email: jon@thejonmartin.com.