This Privacy Policy explains how TaskShelf LLC ("we", "us", or "our") collects, uses, and shares information when you use TaskShelf (the "Service").
1. Information we collect
Account information. When you sign up, we collect your name, email address, and profile photo (if you sign in with Google, Microsoft, Apple, or GitHub, some of this comes directly from that provider).
Content you create. Tasks, projects, comments, and any other content you add to your workspace.
Usage data. Basic technical information (browser type, device, IP address, pages visited) collected automatically to keep the Service reliable and secure.
Calendar data, but only if you connect one. It is the most sensitive thing we touch and it gets its own section. See 5. Calendar data below.
2. How we use your information
We use your information to:
- Provide, maintain, and improve the Service
- Authenticate you and keep your account secure
- Send you emails you've opted into (task assignments, mentions, daily digests). You can turn these off in Settings
- Diagnose and fix technical problems
3. Who we share it with
We don't sell your data. We share information only with the service providers that make TaskShelf work:
- Supabase: hosts our database, authentication, and file storage
- Vercel: hosts the web application
- Resend: sends transactional emails you've opted into
- Sentry: helps us detect and fix crashes/errors
- Dodo Payments: processes payments and acts as the merchant of record for every subscription
- Google, Microsoft, Apple, GitHub, Slack: only if you choose to connect or sign in with one of these
Each of these providers only receives what's necessary to perform their specific function.
4. Payments
Payments are handled entirely by Dodo Payments, who act as the merchant of record. When you subscribe, you enter your card details on their checkout, which is displayed inside TaskShelf but served and operated by them.
We never receive, see or store your card number. What we keep is the identifier Dodo gives us for your subscription and customer record, the plan you are on, its status and renewal date, and (only for display) the last four digits and card network shown on your receipts. Everything else about the payment lives with Dodo.
To take the payment, Dodo receives your name, email address and billing country, along with an identifier for the workspace being paid for. As merchant of record they are also responsible for tax and for issuing your invoice, so their name appears on your card statement and on the receipt rather than ours. Their own privacy policy governs what they do with that information.
5. Calendar data
If you connect a calendar, TaskShelf reads it so your real commitments appear beside the work you have planned. Connecting is entirely optional and nothing here applies until you do.
What we read. The list of calendars on your account, so you can choose which ones to show; and, for the calendars you switch on, each event's title, start and end time, whether you are marked busy or free, how many people are invited, and the video-call link if there is one.
What we never do. We never write to, edit, create, or delete anything in your calendar. The access we request is read-only. We do not read the guest list, and we store the number of people invited rather than who they are. We do not use calendar data for advertising, we do not sell it, and we do not use it to train any model.
Who can see it. Only you. Calendar events are attached to your personal account, not to your workspace, and nobody else in your workspace, including administrators, can see them. This holds even where the rest of your workspace is shared.
How it is stored. Event titles and meeting links are encrypted before they are written to our database, and are decrypted only to show them back to you.
How we protect it. Calendar data is protected by the following measures:
- Encrypted in transit. Every connection to TaskShelf, and every request we make to Google or Microsoft, uses HTTPS with TLS. Calendar data is never transmitted unencrypted.
- Encrypted at rest, twice. Event titles and meeting links are encrypted by us with AES-256-GCM before they are written, so they are unreadable in the database itself. The OAuth tokens that let us read your calendar are encrypted the same way. Underneath that, our database provider encrypts its storage as well.
- Unreadable by other accounts. No signed-in user, including a workspace administrator, holds any database privilege on the calendar tables, not even read access. Calendar data can only be reached through a server function that first verifies who is asking and returns only that person's own events. A mistake in an access rule cannot expose a calendar, because there is no rule granting access to expose.
- Restricted internally. Access is limited to the small number of TaskShelf LLC personnel who need it to operate and support the Service, and is used for no other purpose.
- Destroyed when you say so. Disconnecting a calendar deletes every event we have cached from it, immediately. Deleting your account removes all of it as well. We do not keep calendar data after either.
- Never used for anything else. Calendar data is not sold, not shared with third parties, not used for advertising, and not used to train any model, including machine-learning or AI models.
How to stop. Disconnect the calendar in Settings ▸ Connected accounts, and every event we have cached from it is deleted immediately along with our access. You can also revoke access from your Google Account or Microsoft account directly.
Limited Use. TaskShelf's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
6. Data retention and deletion
We keep your data for as long as your account is active. Deleted tasks and projects are held in Trash for 30 days before being permanently removed. You can request full account and data deletion at any time by contacting us at support@taskshelf.app.
7. Your rights
Depending on where you live, you may have the right to access, correct, export, or delete your personal information. Contact us at support@taskshelf.app to exercise any of these rights.
8. Cookies
We use essential cookies/local storage to keep you signed in and remember your preferences (like theme). We don't use any advertising cookies. The only non-essential cookies we ever set are Google Analytics cookies on our website, and only if you accept them when we ask - see section 9. If you decline, or simply ignore the banner, nothing is set and nothing is loaded.
9. Analytics
We record which pages are visited (just the page path, not any query string) and a small set of anonymous product events (e.g. that a workspace was created, not what's in it) so we can understand how TaskShelf is used. This runs entirely on our own infrastructure. We don't record your IP address, device fingerprint, or any content from your tasks or workspace, and this data is never sold or shared.
On our website we also use Google Analytics, but only after you accept it. Until you do, nothing from Google is loaded and no analytics cookies are set. If you accept, we send Google the shape of the page you are on rather than the address itself: a page like a specific project or a shared link is reported as "/project/:id" or "/share/:token", so project names, team names, task keys and invite links never reach Google. We don't send your name, email address, account id or workspace id, we don't use Google Analytics for advertising, and the TaskShelf desktop app doesn't use it at all.
You can change your mind at any time in Settings, under Preferences. Declining removes the Google Analytics cookies from this browser and stops anything further being sent.
10. Children's privacy
TaskShelf is not directed at children under 16, and we don't knowingly collect information from them.
11. Changes to this policy
We may update this policy from time to time. We'll post the updated version here with a new "Last updated" date.
12. Contact us
Questions about this policy? Email us at support@taskshelf.app. This policy is governed by the laws of Gujarat, India.