Privacy Policy — Futuria CRM MCP connector
Last updated: 8 July 2026
1. What this notice covers
This page explains how the Futuria CRM connector — the “MCP connector” — processes data when you connect your Futuria CRM account to an AI assistant such as Claude or ChatGPT.
It applies only to the connector and supplements the general Privacy and Cookie Policy, which continues to govern the website and Futuria CRM platform.
Data controller for operation of the connector: Futuria Marketing.
2. What the connector collects and processes
- Authorisation tokens (OAuth) for your Futuria CRM account. When you authorise the connector, the Futuria CRM platform issues an access token limited to your account. This is the only authentication data stored by the connector. Your password is never shown to the AI assistant; access goes through the platform’s official login page.
- Minimum technical identifiers. A user identifier and account identifier are used to associate the session with your account and renew the token.
- CRM account data read on request. When you ask the assistant to find a contact, read a conversation or check an opportunity, for example, the connector queries Futuria CRM in real time and returns the result to the assistant. That data passes through the connector to answer the request but is neither copied nor stored by it.
What the connector does not collect
- It does not retain the contents of your conversations with the AI assistant.
- It does not store contacts, messages, opportunities or payment data read from your CRM.
- It does not use your data to train AI models, build profiles or advertise.
- It cannot access other accounts; it sees only the account you authorised.
3. How, where and for how long data is stored
- Where. The connector is hosted on Cloudflare Workers. Authorisation tokens are stored in encrypted form in Cloudflare Workers KV.
- How long. The access token has a short lifetime, approximately 24 hours, and is automatically renewed with rotation while the connector remains linked. No CRM application data is persisted; it exists only for the duration of the individual request.
- Deletion. When you remove the connector from your assistant settings, the authorisation is revoked and the associated tokens are deleted.
4. Processing by the Futuria CRM platform
The connector operates on your Futuria CRM account. The data it can access — including contacts, conversations, opportunities, calendars, articles and orders — remains in the platform and continues to be processed under the general Privacy and Cookie Policy and the applicable Data Processing Agreement.
The connector does not expand the purposes of processing. It performs only the reads and operations that you explicitly request from the assistant, within permissions limited to your account. Data deletion is not available through the connector and remains available only from the Futuria CRM interface.
5. Sharing with third parties
We do not sell your data or share it with third parties for their own purposes.
We use only the infrastructure providers needed to deliver the service:
- Cloudflare — connector hosting and encrypted token storage.
- Futuria CRM platform — the source of your account data, to which the connector routes requests.
The AI assistant you connect — Claude, ChatGPT or another service — receives only the results of requests you make, subject to the privacy policy of the provider you independently choose and manage.
6. Security
- OAuth access with permissions limited to your individual account.
- Encrypted, rotating tokens.
- Authorisation can be revoked at any time from your assistant settings.
7. Your rights
You may exercise your GDPR rights — access, rectification, deletion, restriction, objection and portability — through the channels listed in the general Privacy and Cookie Policy. You may revoke connector access at any time by removing it from your assistant settings.
8. Contact
For questions about this notice or the connector, email supporto@futuriamarketing.com.
See also our general Privacy and Cookie Policy (Italian).

