← Home

Privacy Policy

Effective 12 September 2026.

What the connector accesses

After the account owner grants Google OAuth consent, the connector may access the owner's Gmail, Calendar, Drive, Docs, Sheets, Slides, and Tasks data covered by the scopes shown on Google's consent screen.

How data is used

Google user data is used only to carry out the owner's explicit personal-assistant requests and maintain the authorized connection. It is not used for advertising, profiling, training public models, or unrelated purposes.

Storage and security

OAuth credentials and connector state are kept on the owner's private Winterfell server behind access controls. Backups are encrypted. Network connections use encrypted transport where the service supports it. Data may be retained in connector state, assistant history, and encrypted backups only as needed for continuity and recovery.

Sharing

Google user data is not sold or shared with advertisers or data brokers. It is sent only to Google services and the owner's configured private assistant services as needed to complete an authorized request.

Control and deletion

The owner can revoke access from the Google Account permissions page and can request deletion of connector state and retained assistant data. Backup copies expire under the owner's backup retention policy.

Google API policy

Use of information received from Google APIs follows the Google API Services User Data Policy, including its Limited Use requirements.

Contact

Questions and deletion requests: med.erabti@gmail.com.