Privacy-First Guarantee
Privacy Policy
Effective Date: September 23, 2026
1. Client-Side Sensitive Calendar Scrubbing
When you connect your Google, Apple, or Outlook calendar via our mobile app, your device executes local calendar scrubbing. The only data transmitted over the network is:
// Permitted payload transmitted to server:
{ start: "2026-10-01T14:00:00Z", end: "2026-10-01T16:00:00Z", status: "busy" }We never receive, read, or store:
- Appointment titles (e.g. "Doctor Visit", "Job Interview")
- Locations, addresses, or video call links
- Notes, agendas, or descriptions
- Invitee lists or attendee email addresses
2. Passwordless Authentication & Security
We do not store passwords. Authentication is powered by 6-digit one-time verification codes sent to your verified email address via Resend. Verification codes expire after 5 minutes and are immediately revoked upon entry.
3. Data Retention & Right to Erasure (GDPR / PDPA)
You maintain complete ownership of your data. You may delete your account, wipe your synchronized availability intervals, or leave any circle at any time directly in the app settings. Deletions propagate across our active database and Redis cache immediately.