Privacy & Policy

Privacy & Policy

Privacy & Policy

Privacy & Policy

Effective Date: 6/24/2025
Legal Entity: Valhalla Innovations LLC
App Name: SalesViking
Website: https://salesviking.io/

Effective Date: 6/24/2025
Legal Entity: Valhalla Innovations LLC
App Name: SalesViking
Website: https://salesviking.io/

Summary of Key Points

  • We collect only the personal data needed to deliver and improve our Services; we do not sell your personal information.

  • We use cookies and similar technologies to enhance functionality, analyze usage, and personalize your experience.

  • You can refuse cookies or control cookie settings through your browser at any time.

  • California (CCPA/CPRA) and EU (GDPR) privacy rights are respected; see sections below for details.

  • Our liability is limited to the fullest extent permitted by law; we disclaim all warranties.

  • We integrate with Gmail to send emails you approve. No inbox data is accessed, read, or stored.

Table of Contents

  1. Introduction

  2. Information We Collect

  3. How We Use Information

  4. Cookie Notice

  5. Disclosure of Your Information

  6. Your Privacy Rights

    • California Residents

    • EU Residents

  7. Disclaimer of Warranties & Limitation of Liability

  8. Gmail Integration

  9. Data Security & Protection

  10. Contact Information

1. Introduction

1. Introduction

SalesViking.io ("we," "us," or "our") is operated by Valhalla Innovations LLC, a California-registered company. We are committed to safeguarding your privacy and providing transparent information about our data practices when you use our website and services (collectively, the "Services").

2. Information We Collect

2. Information We Collect

In Short: We collect what’s necessary to operate and improve our Services.

  • Account Data: Name, email, password, company name.

  • Billing Data: Payment details processed by our PCI-compliant provider.

  • Usage Data: Pages visited, session duration, feature interactions.

  • Device Data: IP address, browser type, operating system, device identifiers.

3. How We Use Information

3. How We Use Information

In Short: We use your data to deliver, maintain, and improve the Services.

  • Service Delivery: Account creation, authentication, payment processing.

  • Analytics: Measure performance, understand user behavior, and optimize features.

  • Communications: Send you service-related announcements; marketing only with your opt-in.

  • Compliance: Enforce our Terms of Service, investigate abuse, comply with legal obligations.

4. Cookie Notice

4. Cookie Notice

We use cookies and similar tracking technologies for several purposes:

  • Essential Cookies: Required for core site functionality (e.g., login sessions).

  • Analytics Cookies: Provided by tools like Google Analytics to understand how you use our site.

  • Marketing Cookies: Enable targeting and measurement of advertising performance.


Your Control: We do not present a pop-up consent banner. You can manage or disable cookies anytime by adjusting your browser settings. For general cookie management guidance, see:

Note that opting out of cookies may impact site functionality or your ability to access certain features.

5. Disclosure of Your Information

5. Disclosure of Your Information

In Short: We share data only when necessary or legally required.

  • Service Providers: Third parties who process data on our behalf (e.g., AWS, Stripe, Google Analytics).

  • Legal Requirements: In response to lawful requests by public authorities.

  • Business Transfers: In the event of a merger, acquisition, or sale of assets, with notice to you.

6. Your Privacy Rights

6. Your Privacy Rights

California Residents (CCPA/CPRA)
You have the right to:

  • Know what personal data we collect, use, share, or sell.

  • Access a copy of your data.

  • Delete your personal data.

  • Opt-Out of sale or sharing of your data.

  • Non-Discrimination for exercising your rights.


To exercise these rights, please contact us at privacy@salesviking.io or click the “Do Not Sell or Share My Personal Information” link in our footer.


EU Residents (GDPR)
Under the GDPR, you have rights to:

  • Access, rectify, or erase your data.

  • Restrict or object to processing.

  • Data portability.

  • Withdraw consent at any time.


Submit requests to privacy@salesviking.io with “GDPR Request” in the subject line.

California Residents (CCPA/CPRA)
You have the right to:

  • Know what personal data we collect, use, share, or sell.

  • Access a copy of your data.

  • Delete your personal data.

  • Opt-Out of sale or sharing of your data.

  • Non-Discrimination for exercising your rights.


To exercise these rights, please contact us at privacy@salesviking.io or click the “Do Not Sell or Share My Personal Information” link in our footer.


EU Residents (GDPR)
Under the GDPR, you have rights to:

  • Access, rectify, or erase your data.

  • Restrict or object to processing.

  • Data portability.

  • Withdraw consent at any time.


Submit requests to privacy@salesviking.io with “GDPR Request” in the subject line.

7. Disclaimer of Warranties & Limitation of Liability

7. Disclaimer of Warranties & Limitation of Liability

Our Services are provided "AS IS." To the fullest extent permitted by law, we disclaim all warranties, express or implied. Our aggregate liability for any claim related to our Services will not exceed the greater of $100 or the amounts you have paid us in the 12 months prior to the claim. We are not liable for indirect, incidental, or consequential damages.

Our Services are provided "AS IS." To the fullest extent permitted by law, we disclaim all warranties, express or implied. Our aggregate liability for any claim related to our Services will not exceed the greater of $100 or the amounts you have paid us in the 12 months prior to the claim. We are not liable for indirect, incidental, or consequential damages.

8. Gmail Integration

8. Gmail Integration

If you choose to connect your Gmail account, SalesViking will use the Gmail API to send emails on your behalf.
We request only the https://www.googleapis.com/auth/gmail.send permission, which allows us to send emails that you review and approve. We do not access, read, or store your inbox, email content, or message history.


What we access:

  • Your Gmail email address

  • Access and refresh tokens to send emails via your Gmail account


What we do with it:

  • Send emails you approve as part of SalesViking’s workflows

  • Refresh tokens securely to maintain functionality


What we don’t do:

  • We do not access your inbox, read emails, or collect message metadata

  • We do not request or use any other Gmail scopes

  • We do not use Gmail data for advertising or analytics


OAuth tokens are encrypted and securely stored. You may revoke access at any time via your Google Account settings.

We affirm that SalesViking fully complies with the Limited use of user data requirements of the Workspace API User Data and Developer Policy and the Google API Services User Data Policy. We access Gmail data solely to provide the email-sending feature described above and do not share Gmail data with any third parties.


AI & Machine‑Learning Use

We do not use Gmail data—raw, aggregated, or derived—to train, improve, or create generalized AI or ML models. Any machine‑learning features in SalesViking work only on data that users actively enter or upload inside the application, fully respecting Google’s Limited Use rules.

If you choose to connect your Gmail account, SalesViking will use the Gmail API to send emails on your behalf.
We request only the https://www.googleapis.com/auth/gmail.send permission, which allows us to send emails that you review and approve. We do not access, read, or store your inbox, email content, or message history.


What we access:

  • Your Gmail email address

  • Access and refresh tokens to send emails via your Gmail account


What we do with it:

  • Send emails you approve as part of SalesViking’s workflows

  • Refresh tokens securely to maintain functionality


What we don’t do:

  • We do not access your inbox, read emails, or collect message metadata

  • We do not request or use any other Gmail scopes

  • We do not use Gmail data for advertising or analytics


OAuth tokens are encrypted and securely stored. You may revoke access at any time via your Google Account settings.

We affirm that SalesViking fully complies with the Limited use of user data requirements of the Workspace API User Data and Developer Policy and the Google API Services User Data Policy. We access Gmail data solely to provide the email-sending feature described above and do not share Gmail data with any third parties.


AI & Machine‑Learning Use

We do not use Gmail data—raw, aggregated, or derived—to train, improve, or create generalized AI or ML models. Any machine‑learning features in SalesViking work only on data that users actively enter or upload inside the application, fully respecting Google’s Limited Use rules.

9. Data Security & Protection

Encryption in transit & at rest. All client‑server traffic uses TLS 1.2+ and every storage layer (databases, backups, object storage) is encrypted with AES‑256.


Least‑privilege access. Production data can be reached only by authorised engineers via hardware‑key MFA, and every access is logged and reviewed.
Patching & hardening. Servers, containers and dependencies are patched at least monthly, with critical CVEs fixed as soon as practicable.
Continuous monitoring. Automated alerts watch for unusual logins, traffic spikes and outdated packages, paging the on‑call engineer 24 × 7.
Retention & disposal. Personal data is deleted within 30 days of account closure; daily backups roll off after 30 days; audit logs are kept 6–12 months then purged.

Encryption in transit & at rest. All client‑server traffic uses TLS 1.2+ and every storage layer (databases, backups, object storage) is encrypted with AES‑256.


Least‑privilege access. Production data can be reached only by authorised engineers via hardware‑key MFA, and every access is logged and reviewed.
Patching & hardening. Servers, containers and dependencies are patched at least monthly, with critical CVEs fixed as soon as practicable.
Continuous monitoring. Automated alerts watch for unusual logins, traffic spikes and outdated packages, paging the on‑call engineer 24 × 7.
Retention & disposal. Personal data is deleted within 30 days of account closure; daily backups roll off after 30 days; audit logs are kept 6–12 months then purged.

10. Contact Information

10. Contact Information

For questions or privacy requests, contact us at:
Valhalla Innovations LLC
Email: privacy@salesviking.io

For questions or privacy requests, contact us at:
Valhalla Innovations LLC
Email: privacy@salesviking.io