Privacy Policy
DailyGrid turns your family email into a clear weekly plan. This policy explains what we access, how we use it, what we store, and how to delete it. In short: access is read-only, we never send from your account, and we do not sell your data.
What DailyGrid does
DailyGrid connects to your Google or Microsoft account, reads your family related mail and your calendar, and produces an organised weekly plan of school, sports, parties, appointments and trips, plus this week's activities. You view it on your dashboard, and you can receive a welcome, daily and weekly summary by email and share to-dos with a co-parent.
What we access
- Read-only access to your mailbox (Google
gmail.readonly; MicrosoftMail.Read), to scan for your family items and upcoming travel. - Read-only access to your calendar (Google
calendar.readonly; MicrosoftCalendars.Read), to show this week's activities. - Your account email and basic profile, to identify your account and personalise your plan.
We cannot send, modify, or delete any email or calendar entry. We request no send or write permission. Every email from DailyGrid, the welcome, daily, weekly and to-do reminders, is sent from our own mailbox, never from your account.
What we store
- Access tokens for your connected account, encrypted at rest and never shared, so we can re-scan without asking you to sign in each time.
- Your generated plan: the extracted items (titles, dates, sender names and short details), encrypted at rest. We do not retain the full raw contents of your emails after processing.
- Your settings: scan scope, sender filters, recipient, an optional co-parent email, and any child roster you enter (names and the details you add), encrypted at rest.
- Connection metadata: when an account connects we log the event (time, IP, browser) to monitor for abuse.
What we never do
- Sell, rent, or share your data for advertising or any unrelated purpose.
- Store the full contents of your emails after they are processed.
- Use your data to develop, improve, or train generalised AI or machine learning models.
- Send, modify, or delete anything in your mailbox or calendar.
Google API Limited Use disclosure
DailyGrid's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements. Specifically:
- We use Google user data only to provide and improve the user-facing features described above.
- We do not use it for advertising of any kind.
- We do not use or transfer it to develop, improve, or train generalised or non-personalised AI or machine learning models. Email content is sent to Google's Gemini API transiently, solely to generate your own plan. DailyGrid uses a paid Gemini service tier under which these inputs are not retained by Google, not reviewed by humans, and not used to train Google's models.
- We do not allow humans to read it, except where required for security, to comply with applicable law, or with your explicit consent.
Third-party services
- Google and Microsoft: the source of your mail and calendar, accessed under their API terms.
- Google (Gemini): our AI provider, which processes your email content transiently to extract your plan. We use a paid Gemini service tier under which inputs are not retained by us or by Google, are not used to train Google's models, and are never used for advertising.
- Amazon Web Services (AWS): hosting infrastructure, in a private, access-controlled environment over HTTPS.
- Stripe: payment processing for Premium subscriptions. Checkout happens on Stripe's pages — we never see or store your card details. Stripe receives your email address for receipts and subscription management, under its own privacy policy. Your mail content is never shared with Stripe.
Data security
The service runs over HTTPS/TLS. OAuth tokens, your generated plan, and your settings (including any child roster) are encrypted at rest with symmetric encryption (Fernet), access is isolated per user, and read access is scoped to what you grant. No system is perfectly secure, but we minimise what we collect and retain.
Data retention and deletion
- Logging out simply ends your session; your account stays active. Choosing Delete account in Settings immediately and permanently deletes all of your data: tokens, plan, and settings.
- Cached plans are automatically purged after 30 days of inactivity.
- You can email deepshikha@neima.ai to request a copy or deletion of your data at any time.
Your rights and choices
You can revoke our access at any time from your Google Account (Security, then third-party access) or your Microsoft account settings, and you can delete your account inside DailyGrid. You may also request access to, or deletion of, your data by email.
Children's privacy
DailyGrid is for parents and caregivers. It processes email that concerns children, but it is not directed at children and we do not knowingly collect information directly from a child. Accounts are for adults aged 18 or over.
Cookies
We use a single, strictly functional session cookie to keep you signed in. It is not used for tracking or advertising, and it expires when you log out or after a period of inactivity. We do not use third-party analytics or advertising cookies.
Changes
We may update this policy; material changes will be reflected by the date above. Continued use after an update means you accept the revised policy.
Contact
Questions or deletion requests: deepshikha@neima.ai.
See also our Terms of Service.