Privacy Policy

Last Updated: January 16, 2025

Introduction

Welcome to NeuTack ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our task management application.

By using NeuTack, you agree to the collection and use of information in accordance with this policy.

Information We Collect

Personal Information

When you create an account or use our services, we may collect the following personal information:

  • Account Information: Name, email address, password (encrypted), and profile picture
  • Authentication Data: OAuth tokens when you sign in with Google
  • Usage Data: Last login timestamp and activity logs
  • Billing Information: Stripe customer ID and subscription details (for paid accounts)

Task and Workspace Data

  • Tasks: Task titles, descriptions, due dates, priorities, status, and custom fields
  • Subtasks: Subtask details, priorities, and completion status
  • Notes: Task notes, item notes, and log entries
  • Tags: Tag names, colors, and custom field schemas
  • Workspaces: Workspace names, settings, and member information
  • Organizations: Organization details and membership information
  • File Attachments: Files you upload to tasks and items

Google Calendar Integration

If you enable Google Calendar integration:

  • Calendar Access: Read-only access to view your calendar events
  • Calendar Events: Access to create, modify, and delete calendar events
  • Refresh Tokens: OAuth tokens to maintain calendar synchronization
  • Calendar Selection: Which calendars you choose to sync

AI Features

When you use AI-powered features:

  • Task Content: Task titles and descriptions sent to OpenAI for AI assistance
  • Agent Executions: Records of AI agent tasks and their results
  • Agent Schedules: Scheduled AI automation configurations

How We Use Your Information

Service Delivery

  • Create and manage your account
  • Provide task management and organization features
  • Enable collaboration and sharing features
  • Sync with Google Calendar (if enabled)
  • Deliver AI-powered task assistance
  • Send notifications about task updates and assignments

Service Improvement

  • Analyze usage patterns to improve features
  • Monitor and maintain service performance
  • Troubleshoot technical issues
  • Develop new features based on user needs

Security and Compliance

  • Authenticate users and prevent unauthorized access
  • Detect and prevent fraud or abuse
  • Enforce our Terms of Service
  • Comply with legal obligations

How We Share Your Information

We do not sell your personal information.

We may share your information only in the following circumstances:

With Your Consent

  • Shared Tasks and Workspaces: Content you explicitly share with other users
  • Workspace Members: Information visible to members of shared workspaces
  • Contact Sharing: Tags and tasks shared with contacts you add

Service Providers

We may share information with third-party service providers:

  • Google: For OAuth authentication and Google Calendar integration
  • OpenAI: For AI-powered task assistance features
  • Stripe: For payment processing (paid accounts only)
  • Azure Blob Storage: For file attachment storage
  • SendGrid: For transactional email delivery

These providers are contractually obligated to protect your information and use it only for the purposes we specify.

Data Security

We implement industry-standard security measures to protect your information:

Encryption

  • In Transit: All data transmitted using HTTPS/TLS encryption
  • At Rest: Passwords encrypted using bcrypt hashing
  • OAuth Tokens: Securely stored encrypted tokens

Access Controls

  • Authentication: Secure login with NextAuth.js
  • Session Management: JWT-based session tokens
  • Rate Limiting: Protection against brute force attacks

Your Rights and Choices

Access and Control

  • View Your Data: Access your account information and content at any time
  • Update Information: Modify your profile, name, and email address
  • Export Data: Request a copy of your data in a portable format
  • Delete Account: Permanently delete your account and associated data

Privacy Controls

  • Task Visibility: Control who can see your tasks and workspaces
  • Sharing Settings: Manage contact sharing and collaboration
  • Calendar Integration: Enable or disable Google Calendar sync
  • Notification Preferences: Control browser notifications

To exercise these rights, please contact us or use the settings available in your account.

Third-Party Services

Google Services

When you connect your Google account, we follow Google's API Services User Data Policy. You can revoke access at any time through Google Account settings.

Google Privacy Policy →

OpenAI

When you use AI features, task content may be sent to OpenAI's API. We do not share your personal account information.

OpenAI Privacy Policy →

Stripe

For payment processing, Stripe handles all payment card information. We never store your full credit card details.

Stripe Privacy Policy →

Data Retention

We retain your information for as long as necessary to provide our services:

  • Account Data: Retained while your account is active
  • Tasks and Content: Retained until you delete them
  • Notifications: Automatically deleted after 5 days
  • Backup Data: Retained for disaster recovery (90 days)

When you delete your account, we will delete or anonymize your personal information within 30 days, except where retention is required by law.

Children's Privacy

NeuTack is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us, and we will delete such information.

Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy:

Email: support@neutack.com

Data Protection Officer: support@neutack.com

We will respond to your inquiry within 30 days.

GDPR & CCPA Compliance

We are committed to complying with the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA). If you are in the EEA or California, you have additional rights regarding your personal data.

Read the full privacy policy for details →

For the complete privacy policy, see PRIVACY_POLICY.md