Privacy Policy

Last updated: 9/2/2025

1. Information We Collect

We collect information you provide directly to us, such as:

  • Account information (name, email, password hash)
  • Tasks, habits, and goals you create
  • Pomodoro sessions and focus time data
  • Calendar events (if you connect Google Calendar)
  • Productivity metrics, XP, and level progression
  • Subscription and payment information (via Stripe)
  • AI chat conversations (for Pro users)
  • Preferences and app settings

2. How We Use Your Information

We use the information we collect to:

  • Provide and maintain AuraTask services
  • Track your tasks, habits, and productivity progress
  • Calculate XP, levels, and achievements
  • Sync calendar events (with your permission)
  • Provide AI-powered assistance (Pro feature)
  • Process payments and manage subscriptions
  • Send email notifications (verification, payment receipts)
  • Improve and optimize our services

3. Third-Party Services

We integrate with trusted third-party services:

  • Stripe: Payment processing and subscription management
  • Google Calendar API: Calendar event synchronization (optional)
  • Claude AI (Anthropic): AI assistant features for Pro users
  • MongoDB Atlas: Secure database hosting
  • Vercel: Application hosting and analytics
  • Resend: Transactional email delivery

Each service has its own privacy policy and we only share necessary data for the requested functionality.

4. Data Security

We implement industry-standard security measures:

  • Passwords are hashed using bcrypt
  • HTTPS encryption for all data transfers
  • Secure JWT tokens for authentication
  • Environment variables for sensitive configuration
  • Regular security updates and monitoring
  • Stripe handles all payment card information (PCI compliant)

5. Data Retention

We retain your data as long as your account is active. You can request deletion at any time. Completed tasks and habits may be archived after 1 year of inactivity. AI chat history is retained for 30 days for Pro users.

6. Your Rights

You have the right to:

  • Access all your personal data
  • Correct or update your information
  • Delete your account and all associated data
  • Export your tasks and habits data
  • Disconnect calendar integration
  • Cancel subscription anytime
  • Opt-out of email communications

7. Cookies and Local Storage

We use essential cookies and local storage for:

  • Authentication tokens
  • Theme preferences (light/dark mode)
  • Timer settings and state
  • UI preferences

These are necessary for the app to function and cannot be disabled.

8. Children's Privacy

AuraTask is not directed to individuals under 13. We do not knowingly collect personal information from children under 13. If we discover such data, we will delete it immediately.

9. International Data Transfers

Your data may be processed in the United States where our service providers operate. By using AuraTask, you consent to such transfers. We ensure appropriate safeguards are in place to protect your information.

10. Changes to This Policy

We may update this privacy policy from time to time. We will notify you of any material changes via email or in-app notification. Continued use after changes constitutes acceptance of the updated policy.

11. Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us at:

contact.auratasks@gmail.com

We aim to respond to all privacy inquiries within 48 hours.