← Back to Home

Privacy Policy

Last updated: January 2025

1. Introduction

Task Assistant ("we", "our", "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web application and related services.

2. Information We Collect

2.1 Account Information

When you create an account, we collect:

  • Email address
  • Display name
  • Authentication credentials (managed via Firebase Authentication)

2.2 User-Generated Content

As you use the app, we store:

  • Life areas, goals, and habit data you create
  • Daily plans and task information
  • Profile preferences (chronotype, energy patterns)
  • AI coaching conversation history
  • WOOP goal-setting data

2.3 Usage Analytics

We use PostHog (hosted in the US) to collect anonymized usage analytics, including:

  • Page views and feature usage patterns
  • Session duration and frequency
  • Device type and browser information
  • Feature engagement metrics

You can opt out of analytics tracking at any time via the cookie consent banner or in your browser settings.

2.4 Payment Information

Payment processing is handled by Stripe. We do not store your credit card details directly. Stripe collects and processes payment information according to their own Privacy Policy. We store only:

  • Stripe Customer ID
  • Subscription status and plan type
  • Subscription period dates

3. How We Use Your Information

We use the collected information to:

  • Provide and maintain the Task Assistant service
  • Personalize your experience (AI coaching, daily planning)
  • Process payments and manage subscriptions
  • Improve our product through aggregated, anonymized analytics
  • Send important service-related communications
  • Respond to your support requests

4. AI Data Usage

Task Assistant uses third-party AI providers (including OpenAI, Anthropic, and Google) to power coaching features. When you interact with the AI coach:

  • Your conversation context is sent to the AI provider for processing
  • Relevant goal, habit, and area data may be included for personalized responses
  • AI providers process data according to their respective privacy policies
  • We do not use your data to train AI models

5. Data Storage and Security

Your data is stored in Google Firebase (Firestore database), hosted on Google Cloud infrastructure. We implement appropriate security measures including:

  • Encryption in transit (TLS/HTTPS)
  • Encryption at rest (Google Cloud default encryption)
  • Firebase Security Rules to enforce access control
  • Authentication via Firebase Auth with industry-standard protocols

6. Data Retention

We retain your data for as long as your account is active. Upon account deletion:

  • All user-generated content is permanently deleted within 30 days
  • Anonymized analytics data may be retained for product improvement
  • Stripe payment records are retained per Stripe's retention policies

7. Third-Party Services

We use the following third-party services:

ServicePurposeData Shared
Firebase (Google)Authentication & DatabaseAccount & app data
StripePayment processingPayment & billing info
PostHogProduct analyticsAnonymized usage data
VercelHostingServer logs, IP addresses
AI ProvidersAI coaching featuresConversation context

8. Your Rights (GDPR)

Under the General Data Protection Regulation (GDPR) and similar laws, you have the right to:

  • Access — Request a copy of all your personal data (use "Export My Data" in Settings)
  • Rectification — Update or correct your personal information
  • Erasure — Delete your account and all associated data (use "Delete Account" in Settings)
  • Portability — Export your data in a machine-readable format (JSON)
  • Restriction — Request limitation of processing
  • Objection — Object to data processing for analytics (opt out via cookie consent)

9. Cookies

We use essential cookies for authentication and optional analytics cookies (PostHog). You can manage your cookie preferences through our consent banner shown on first visit.

10. Children's Privacy

Task Assistant is not intended for children under 16. We do not knowingly collect personal information from children under 16. If you believe we have collected data from a child, please contact us.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any significant changes by posting the new policy on this page and updating the "Last updated" date.

12. Contact Us

If you have any questions about this Privacy Policy or wish to exercise your data rights, please contact us at:

Email: privacy@taskassistant.ai