Privacy Policy
Last updated: August 2, 2026
Migrate to Twenty (“we”, “us”) provides a Salesforce → Twenty migration-readiness assessment. This policy explains what we collect and why.
What we collect
- Contact and company details you submit on the qualification form
- UTM / referrer data associated with that submission
- Salesforce OAuth tokens temporarily, solely to run a metadata scan
- Salesforce configuration metadata (objects, fields, automations, packages, security settings)
- Generated scores, findings, and report access events
What we do not collect
We do not intentionally query or store Salesforce business records such as Accounts, Contacts, Leads, Opportunities, Cases, or similar CRM record data.
How we use data
- To generate your readiness report
- To email you when the scan completes
- To contact you about migration estimates when you request them
- To operate and improve the scanner
OAuth tokens
Access and refresh tokens are encrypted at rest and deleted when collector jobs finish (or fail terminally). Tokens are not retained for ongoing CRM access.
Sharing
We use infrastructure providers (hosting, database, email) as processors. We do not sell personal data.
Retention
See our Data Retention Policy for retention windows and deletion requests.
Contact
Privacy questions: closson.fabian@gmail.com
This page is provided for transparency for the MVP. Have a lawyer review before a public commercial launch.