Our Privacy Commitment
PERSISTWORK is built with privacy-first principles. We analyze your work patterns using your calendar data, which is processed in real-time and never stored. We do store a minimal account profile and anonymized usage events solely to improve the product experience.
1. Information We Collect
When you use PERSISTWORK, we collect and store the following:
- Account Information: Your name, email address, and Google profile picture, stored in our database to identify your account across sessions.
- Account Metadata: Timestamps for account creation, first login, and most recent login, and your account tier (free or premium).
- Usage Events: Anonymized in-app interactions linked to your email, including card swipes, metric clicks, and card shares, along with associated metadata (such as the quote displayed). These are used to improve the product.
- Calendar Data: Event titles, times, durations, and attendee counts from your Google Calendar. This data is processed in real-time only and is never stored in our database.
- OAuth Tokens: Temporary authentication tokens to access your Google services, stored only in encrypted session memory.
2. How We Use Your Information
We use your information exclusively to:
- Authenticate you and maintain your account across sessions
- Calculate your Focus, Strain, and Balance scores based on your calendar in real-time
- Detect your daily mood and generate a personalized daily card
- Track anonymized product usage events (swipes, clicks, shares) to understand how the product is being used and improve it
- Display your profile information within the application
We do not use your data for advertising, marketing, or any purpose beyond operating and improving PERSISTWORK.
3. Data Storage and Security
π What We Store vs. What We Don't
Your calendar data is never stored. We do store a minimal account profile (name, email, profile image, login timestamps) and anonymized usage events in a secured database to power your account and improve the product.
Our security measures include:
- OAuth 2.0 secure authentication via Google
- Encrypted session management via NextAuth.js
- HTTPS encryption for all data transmission
- Row-level security (RLS) on all database tables
- Database hosted on Supabase with restricted access policies
- Calendar data processed in-memory only β never written to disk or database
4. Data Sharing
We do not sell or share your personal data.
Specifically, we do not:
- Sell your data to third parties
- Share your calendar information with anyone
- Use your data for advertising or marketing
- Allow any external access to your personal information
5. Cookies and Tracking
We use minimal cookies solely for:
- Session Management: Encrypted session cookies to maintain your login state
- Preferences: Local storage for UI preferences (such as onboarding completion)
We do not use analytics, advertising, or cross-site tracking cookies. We do not track your behavior across other websites.
6. Your Rights and Controls
You have control over your data. You may at any time:
- Revoke Calendar Access: Remove our access anytime through your Google Account settings
- Request Data Deletion: Email us at Persistwork1@gmail.com to request deletion of your account profile and all associated usage events
- Access Your Data: Request a copy of the data we hold about you by emailing us
- Sign Out: Signing out immediately clears your session and calendar data from memory
We will respond to data requests within 30 days.
7. Data Retention
- Calendar Data: Never stored β processed in real-time and discarded when your session ends
- Account Profile: Retained while your account is active. Deleted upon request.
- Usage Events: Retained indefinitely in anonymized form to support product analytics. Deleted upon request.
- Session Data: Cleared on logout
8. GDPR and CCPA
If you are located in the European Union or California, you have additional rights regarding your personal data, including the right to access, correct, port, or erase your data, and the right to object to or restrict certain processing. To exercise any of these rights, please contact us at Persistwork1@gmail.com.
We do not sell personal information as defined under the CCPA.
9. Children's Privacy
PERSISTWORK is not intended for users under 18 years of age. We do not knowingly collect information from children. The service is designed for professional work analysis.
10. Third-Party Services
We integrate with the following third-party services:
- Google OAuth: For authentication and calendar access
- Supabase: For secure database hosting of account profiles and usage events
- Vercel: For application hosting
Each of these services maintains its own privacy policy. We recommend reviewing them for information about how they handle data.
11. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or for legal reasons. We will notify users of material changes by updating the βEffective Dateβ and, when appropriate, through in-app notifications.
12. Contact Us
If you have questions about this Privacy Policy, your data, or would like to request data deletion or access, please contact us at Persistwork1@gmail.com.
Privacy Summary
- βCalendar data is never stored β real-time only
- βMinimal account profile stored (name, email, image)
- βAnonymized usage events stored to improve the product
- βNo data sharing or selling
- βYou can request full data deletion at any time
- βGDPR and CCPA rights honored