Privacy
Your data stays yours.
You’re trusting TidyMind with a window into your family’s week. We never sell it, share it, or use it for anything but building your day. Here is exactly how we keep it safe, in plain words.
Everything here is true of what TidyMind actually does today, not a someday plan.
We can only look, never touch
TidyMind reads your calendar and, once you say so, certain emails, and that is the most it can ever do. It can’t send, reply to, change, or delete a single thing. It’s like reading the note on your fridge, never rewriting it.
We never keep your actual emails
To suggest who’s worth watching, it first looks only at who emails you, the names and subject lines. It reads what’s inside a message only from senders you’ve approved, and even then we store what we extract, a date, a title, and the one line it came from, never the message itself.
We hold very little, and never the private part
All we keep is your account’s email and name, your calendar events with their titles, times, and locations, and the dated items we find in approved senders’ mail. Not stored: the body of any email, and never a password. You sign in with a one-time link, so there is nothing to steal.
Protected the way your bank protects you
The keys that let us reconnect to your account, your access tokens, are encrypted with the same bank-grade security governments rely on, and kept apart from everything else. Even we only ever hold the scrambled version, never a usable key.
Change your mind, any time
Disconnect with one click and TidyMind lets go completely. It revokes the grant with Google, not just our own copy, and because it was only ever looking, nothing is left behind.
For the technically curious
The permissions are
calendar.readonlyandgmail.readonly, both read-only. Your tokens are encrypted at rest with AES-256-GCM, and the key lives outside the database.