Marlow

Privacy Policy

Last updated: 30 September 2026

Marlow (“Marlow”, “we”, “us”) is operated by Milo Ghosh GbR, Strassburger Strasse 6a, 10405 Berlin, Germany (VAT ID DE320399388), the controller of your personal data under this policy. Marlow is an audience-research tool available at app.gomarlow.co. This policy explains what personal data we collect when you use Marlow, why, who we share it with, how long we keep it, and the rights you have. Questions go to giuseppe@gomarlow.co.

1. What we collect

Your account

Your projects

Tools you choose to connect

Usage and technical data

2. How we use it

We do not sell your personal data, and we do not use it for advertising.

Our legal bases (under the EU/UK GDPR) are: performing our contract with you (running your account and analyses), our legitimate interests (security, fixing and improving the service), and your consent where we ask for it.

3. Google user data

When you sign in with Google, we receive only your name, email address and Google account identifier. We use them solely to create your Marlow account and sign you in. We do not access your Gmail, Drive, contacts or any other Google data through sign-in. We do not share this data with third parties except the service providers listed below that host and run Marlow, and we do not use it for advertising. Marlow’s use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

4. Who we share it with

We use these service providers to run Marlow. They process data on our behalf and only for that purpose.

ProviderWhat forLocation
Fly.ioHosting the application and its dataFrankfurt, EU
Anthropic, and other AI model providersAnalysing text for the features you use. Personal details from your own tools are removed first.United States
PostHogProduct analytics and session recordingsUnited States
ResendSending service emailsUnited States
GoogleSign in with Google, if you use itGlobal

To gather public market data about the domains, keywords and social accounts in your projects, Marlow queries data providers (for example DataForSEO, Apify, ScrapeCreators, Similarweb, LinkdAPI and public platforms such as Reddit and Bluesky). We send them those domains, keywords and handles, not your account details.

We may also disclose data if the law requires it, or to protect Marlow and its users from fraud or abuse.

Some providers are outside the EU. Where that is the case, transfers rely on the European Commission’s Standard Contractual Clauses or an adequacy decision such as the EU-US Data Privacy Framework.

5. How long we keep it

6. Cookies

7. Your rights

Depending on where you live, you can ask us to access, correct, export or delete your personal data, and to restrict or object to how we use it. You can withdraw consent at any time. Email giuseppe@gomarlow.co and we will reply within 30 days. You can also complain to your local data protection authority.

8. Security

Data is encrypted in transit (HTTPS). Passwords are hashed, and the keys to your connected tools are encrypted at rest. Access to production systems is limited to the people who run Marlow. No system is perfectly secure, but we work to protect your data and will tell you promptly if a breach affects it.

9. Children

Marlow is a business tool and is not intended for anyone under 16.

10. Contact

Milo Ghosh GbR
Strassburger Strasse 6a, 10405 Berlin, Germany
VAT ID DE320399388
Email: giuseppe@gomarlow.co

11. Changes

If we change this policy, we will update the date above. If the change is significant, we will tell you by email or in the app.