Privacy Policy

Effective Date: July 1, 2025

Thank you for using TaskFlowMe. Your privacy is important to us. This Privacy Policy outlines how we collect, use, store, and protect your personal information when you access our platform, website, and services.

1. Information We Collect

We collect the following types of data when you use TaskFlowMe:

a. Personal Information

  • Full name
  • Email address
  • Password (hashed and encrypted)
  • User profile data (e.g., avatar, timezone, preferences)

b. Goal & Task Data

  • Goals you input
  • AI-generated questions and answers
  • Tasks, subtasks, and calendar entries

c. Usage Data

  • IP address
  • Device and browser type
  • Log and session data
  • Clickstream behavior within the app

d. Optional Integrations

  • Google Calendar (for notifications)
  • Email preference settings

2. How We Use Your Information

We use your information to:

How your data supports the product

  • Generate goal-based task plans using AI
  • Provide calendar and task list views
  • Customize your experience and preferences
  • Send reminders and notifications (optional)
  • Improve app functionality and user experience
  • Comply with legal obligations

3. Legal Basis for Processing (GDPR Compliance)

If you are located in the European Economic Area (EEA), we process your personal data based on the following legal grounds:

  • Consent - for optional services like email/Google Calendar reminders
  • Contract - to deliver the services you've requested
  • Legitimate Interest - to improve service quality and prevent abuse

4. Data Sharing and Third Parties

We do not sell your personal data.

We only share data with trusted third-party providers necessary to operate TaskFlowMe, such as:

Trusted service providers

  • Cloud storage (e.g., AWS, MongoDB, Google Cloud Console)
  • Payment processors (e.g., Stripe, PayPal)
  • AI model providers (e.g., OpenAI or other LLM APIs)
  • Notification platforms (e.g., Email services)

Each of these providers is contractually obligated to protect your data in accordance with industry standards.

5. Data Retention

We retain your personal data for as long as your account is active, or as needed to provide you services. Upon request or account deletion, your data is securely deleted from our active systems within 30 days.

6. Your Rights

Depending on your location, you may have the right to:

Your privacy rights

  • Access the data we store about you
  • Correct or update your information
  • Delete your data ("right to be forgotten")
  • Withdraw consent at any time
  • File a complaint with a data protection authority

To exercise these rights, email us at taskflowme@gmail.com.

7. Data Security

We implement robust security measures to protect your data, including:

Security practices

  • SSL encryption for data in transit
  • Encrypted passwords and sensitive tokens
  • Role-based access control for internal systems
  • Regular security audits and updates