
Pete the Pigeon is an AI assistant for the Ohio General Assembly — bills, votes, legislators, committees, campaign finance and lobbying — built from public records. You can use Pete four ways: the chat at petethepigeon.com, by emailing Pete, as a connector inside Claude or ChatGPT, and as the Pete the Pigeon Outlook add-in. Pete is operated by Fugio Consulting, LLC, an Ohio company. This policy covers all four.
Three rules. Anything you say to Pete is kept 30 days, then deleted automatically. The email you open in the pane is used to write the answer and is not stored. Your own account data stays until you remove it or ask us to delete it, and we complete deletion requests within 30 days. No AI model is trained on your data — not by us, and not by our providers. Pete Pro accounts run on Anthropic only, so nothing you say to Pete is kept by the model provider beyond 30 days, and a zero-retention setting is available for any office on request.
We keep each question, Pete’s answer, the model used, how long it took, and a one-way hash of your IP address (never the raw address) for 30 days, then a daily job deletes them. If you are signed in, your account email is stored with the question for the same 30 days. We read a sample of questions and answers to check accuracy, catch abuse and improve Pete’s instructions; we never train a model on them and never share them. When you ask Pete about an open email in the pane (Ask Pete), the email’s text is sent to write the answer and is not saved with your question. Through the Claude or ChatGPT connector, Pete receives your question or the bill you ask about, your account identity and the time; identity, tool name and the first 500 characters of the request are kept 30 days in our connector log; the answer is not stored. Don’t put sensitive personal information — medical history, account numbers, government identifiers — into a question.
If you email Pete we receive your address, the subject and the message, and use them to write and send a reply. Question and reply are stored; your address goes in a daily counter that limits automatic replies.
When you sign up we store your name, email, the office or organization you enter, the date, and, if a colleague shared Pete with you, which account referred you (so they receive their Query Credits). Your account has a personal connector key; the key is your login for the connector and, if you install Pete from your personal link, for the add-in.
The pane reads only the message you have open. Two optional tools — Sort inbox by urgency and the Email Efficiency Index — read more, only when you click them, as described below.
If you subscribe, we store the email the subscription is attached to and its status so Pete knows the account is paid. Billing is handled by Chargebee; card processing by Stripe. Fugio never sees your card number.
Our marketing pages carry Google Analytics, Google Ads, Meta Pixel and LinkedIn Insight tags. The Outlook pane, the embedded chat, this page, /terms, /support and /outlook/it carry none. A server-side purchase event can send Google Analytics and Meta a one-way hash of your email, the plan and the price when a Pete Pro subscription is created; as of this writing the two vendor keys that event needs are not set on our production service, so nothing is currently sent. The counters we keep are operational: drafts, trainings, batch runs, shares sent, referrals completed and credit balances per account, so the limits and rewards work.
Free accounts: Pete keeps the questions you ask, the drafts it writes and the emails it reads to write them, for the retention windows below (subject to the automatic 30-day purge that applies to conversation rows). Free chat and free Ask-Pete/draft traffic may be processed by Google’s API as well as Anthropic’s.
Pete Pro: Pro runs with zero data retention. We keep nothing. We share nothing. Pete keeps no copy of a Pro account’s emails, questions or drafts; the only things stored are what you set yourself (your instructions, templates, notes) and the encrypted sign-in that links your mailbox. Pro traffic never touches Google.
| What | Where | How long |
|---|---|---|
| Chat and Ask Pete questions, and Pete’s answers | our conversation log | 30 days, then deleted automatically |
| Connector questions (Claude, ChatGPT) — identity, tool name, first ~500 characters of the request | our connector log | 30 days; the answer is not stored |
| The email you open in the pane (subject, text, sender) — free accounts | the mailbox job/listing record under your account | kept until replaced by your next inbox listing or draft job |
| The email you open in the pane — Pete Pro / zero-retention office | held in memory while Pete writes the summary, draft or answer; not stored | seconds |
| The draft Pete writes — free accounts | the mailbox job record under your account | kept until replaced by your next draft job |
| The draft Pete writes — Pete Pro / zero-retention office | not stored; the first 600 characters appear in our application log | 30 days (hosting log) |
| Sender summaries, constituent notes, your Train Pete set, templates, settings, Efficiency Index totals | under your account | until you remove them or ask us to delete them; deletion completed within 30 days |
| Account: name, email, office, sign-up date, who referred you | under your account | while the account exists; deleted within 30 days of your request |
| Daily counters (drafts, questions, shares, referrals, credits) | operational counters | per-day rows deleted after 7 days; balances while the account exists |
| Addresses Pete looks up to find a constituent’s district | lookup cache | 30 days |
| Email you send to Pete’s address, and Pete’s reply | our form-reply cache; Resend | Resend deletes the email itself after 30 days; our own cache of the question and answer (no address kept) is purged after 30 days |
| Pete Pro billing record | Chargebee and Stripe | see the table below |
| Application logs | Railway | 30 days |
| Pete Pro accounts, and any zero-retention office (on request) | our conversation log, connector log, and mailbox job/listing records | question text, answers, drafts and email are never written; counts and timestamps only |
One rule for what you say to Pete: 30 days. A daily job deletes conversation rows older than 30 days. The email itself is not stored. Your account data is kept while you keep the account; ask and we delete it within 30 days. Our hosting provider keeps application logs for 30 days.
| Service | What it receives | Why | How long they keep it |
|---|---|---|---|
| Anthropic (Claude) | Pete Pro accounts: every chat answer, plus drafts, summaries, Train Pete and email replies for all accounts | writes the answer | not retained by default for the models Pete uses; deleted within 30 days in every case; never used to train models. DPA · subprocessors |
| Google (Gemini API, paid tier) | free accounts only: chat questions at petethepigeon.com and Ask Pete in the pane, including the open email’s text. Pete Pro traffic never touches Google, in either direction. | writes chat answers | not used to train models; prompts and responses logged for 55 days for abuse monitoring (ai.google.dev) |
| Railway | runs Pete’s servers, databases and application logs | hosting | logs 30 days; SOC 2 Type II; DPA |
| Resend | mail to and from Pete’s own address (not the pane) | sending and receiving email | 30 days; SOC 2 Type II; DPA |
| Microsoft | the pane loads Office.js from Microsoft; mailbox reads and writes go from your browser to your own mailbox through Microsoft Graph | the add-in runs | your mailbox stays in your Microsoft tenant; Microsoft’s DPA applies |
| Chargebee and Stripe | name, email, subscription status; card details go to Stripe only — Fugio never sees your card number | Pete Pro billing | Chargebee erases account data 120 days after cancellation; Stripe keeps it for as long as it provides the service plus its legal obligations; both PCI DSS Level 1 and SOC 2 Type II |
| Google Analytics, Google Ads, Meta, LinkedIn | visits to our marketing pages (never the pane, the embedded chat, this page, /terms, /support or /outlook/it) — plus, when a Pete Pro subscription is created, a one-way hash of your email, the plan and the price sent to Google Analytics and Meta to measure the purchase (not yet active on our production service — the two vendor keys it needs are not set) | measuring marketing | per their policies |
| Google Fonts | your IP address when the chat page loads a font | fonts | Google’s policy |
We do not sell personal information and do not share it outside the services listed here.
Pete is not directed at children under 13. Constituent mail may come from anyone; we do not knowingly build profiles of children and delete such data on request.
We may update this policy. Changes are posted here with a new date; material changes to how the add-in handles your email are described here before they take effect.
Fugio Consulting, LLC
Email: hello@petethepigeon.com
See also our Terms of Service and support page.