ChatGPT App + Claude Connector data handling

How MentionFox handles your data when you connect via ChatGPT, Claude Desktop, Cursor, or any other MCP client.

Last updated: 2026-05-10

1. Scope of this document

This document describes data handling specifically for the MentionFox connector — the MCP endpoint at mentionfox.com/mcp and any submitted-but-not-yet-approved variant in OpenAI's ChatGPT App directory, Anthropic's Claude Connector directory, Cursor's Composer MCP directory, or Continue.dev's tool registry. For all other product surfaces, the master Privacy Policy applies.

Where this document is silent, the master Privacy Policy controls. Where this document specifies a tighter rule (for example, narrower retention than the master policy), the tighter rule applies inside the connector context.

2. What we collect when you connect

When you authorize a connector — by clicking "Connect" inside ChatGPT, Claude Desktop, Cursor, or any other MCP host — MentionFox issues your AI host an OAuth 2.0 access token tied to your MentionFox account. The token carries exactly the scopes you approved on the consent screen.

OAuth scopes

ScopeWhat it grants
research:readRun research, scans, comparisons, and reports on your behalf. Returns the same data you would see in the MentionFox dashboard.
pipeline:writeAppend leads to your Dealflow pipeline via the save_to_my_pipeline tool. Append-only — never modifies or deletes existing leads.

No other scope is requested. We do not request access to your email inbox, calendar, files, or any third-party services.

3. What we receive on every tool call

Each tool call from the AI host includes:

We do not receive the user's full ChatGPT or Claude conversation. We see only the structured tool call your AI host generates from the conversation. If your conversation says "find Brian Armstrong's email and tell me what he had for breakfast", we receive only the enrich_person tool call with { name: "Brian Armstrong" }; the rest of the conversation never reaches us.

4. What we store

Per tool call

Per researched entity

When you call a research tool, MentionFox may run an enrichment pipeline against public sources and cache the result in person_profiles. Cached enrichments are shared across users (privacy-preserving — only public data is cached) so subsequent lookups are faster and cheaper. Cache hits cost zero credits.

You can request deletion of any cached profile that is about you personally via /privacy/data-deletion.html.

5. What we do not store

6. Third-party processors

The connector touches the following third-party services:

ProcessorPurposeData shared
Supabase (Postgres + Edge Functions)Database + serverless computeTool call logs, user profiles, OAuth tokens (encrypted at rest)
CloudflareEdge routing for foxapis.com / mentionfox.comStandard request metadata (IP, user-agent)
Anthropic APILLM-backed report generation (founder reports, dossiers)The subject's public-data enrichment payload — never your conversation history
Serper / GooglePublic-web search for enrichmentThe subject's name + disambiguation hints
OpenAI APIOptional fallback LLM for select toolsSame as Anthropic — public-data enrichment payload
StripeSubscription billingEmail + payment metadata. Not invoked on free-tier connector calls.
ResendTransactional email (account, billing receipts)Email address only

The full processor list is in the master Privacy Policy. We do not use AI-host conversation data to train any model — neither our own nor any third party's.

7. Retention schedule

Data typeRetention
Tool call logs (name + args + response summary)90 days
Cached entity enrichments (public data)Indefinite, refreshed on demand. Subject can request deletion.
OAuth access tokensUntil revoked by user or 1 year, whichever is sooner
OAuth refresh tokensUntil revoked by user
Billing events7 years (accounting requirement)
Account metadata (email, plan, credit balance)Until account deletion + 30 day grace period
Saved leads in your Dealflow pipelineUntil you delete the lead OR the account

8. Token revocation + account disconnection

To disconnect at any time:

Revocation is instant. Cached entity enrichments and saved Dealflow leads are not affected by token revocation — they're tied to your account, not the connector. Delete the account to wipe everything.

9. Subprocessors and cross-border transfer

MentionFox is operated by RiteKit Inc., a Delaware C-corp. Production infrastructure runs on Supabase (US-East primary, EU read-replicas) and Cloudflare (global edge). Data may be transferred between the US, EU, and Japan as part of normal operation. We rely on standard contractual clauses (SCCs) for EU-to-US transfers and on Japan's adequacy decision for JP transfers.

10. User rights

If you are a connector user, you have the same rights as any MentionFox account holder:

11. Children's data

MentionFox is not directed at users under 16. We do not knowingly process data of users under 16 via the connector or any other surface.

12. Security

OAuth tokens are stored encrypted at rest. Tool calls travel over TLS 1.3. Internal database access is gated by row-level security policies (Supabase RLS). Service-role keys live only in Edge Function secrets and are never exposed to clients. Pre-commit hooks block accidental secret commits.

Security incidents are reported to security@mentionfox.com. Confirmed breaches are disclosed to affected users within 72 hours, per GDPR Article 33.

13. Contact

Privacy questions: privacy@mentionfox.com

Security questions: security@mentionfox.com

General contact: osakasaul@gmail.com

Postal: RiteKit Inc., 8 The Green, Suite 7000, Dover DE 19901, USA