Privacy Policy
Effective date: 2 June 2026
1. Who we are
Taskete (“we”, “us”, “our”) is a task management service available at taskete.co. We are committed to protecting your personal information and being transparent about how we use it.
Questions about this policy can be sent to hello@taskete.co.
2. What we collect
We collect only what is necessary to provide the service:
- Account information — your email address and, optionally, a display name and avatar preference when you sign up.
- Task data — titles, descriptions, due dates, priorities, labels, projects, sections, and any other content you add to Taskete.
- Calendar connection tokens — if you choose to connect Google Calendar or Outlook, we store OAuth access and refresh tokens server-side. These are never exposed to the browser.
- Usage preferences — theme, font, notification settings, and similar UI choices stored in your profile.
- Technical data — standard server logs (IP address, browser type, pages visited) retained for up to 30 days for security and debugging purposes.
We do not collect payment card details, sell your data, or use your task content to train AI models.
3. How we use your data
Your data is used solely to:
- Provide, maintain, and improve the Taskete service
- Send task-related notifications and digest emails you have opted into
- Sync tasks to your connected calendar (Google or Outlook) when you enable this feature
- Respond to support requests
- Detect and prevent abuse or security incidents
When you use AI features (natural language task creation, smart suggestions, daily digest), your task titles and relevant metadata are sent to Google Gemini on the server. These requests are subject to Google’s API terms. We do not send task descriptions or notes to any AI service.
4. Third-party services
Taskete uses the following third-party providers to operate:
- Supabase — database, authentication, and realtime infrastructure (EU region). Privacy policy
- Vercel — hosting and edge network. Privacy policy
- Google Gemini API — AI features. Terms
- Resend — transactional email (digest emails). Privacy policy
- Google Calendar API / Microsoft Graph API — only accessed when you explicitly connect your calendar account.
Taskete’s use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
We do not share your data with any other third parties.
5. Data retention
Your account data is retained for as long as your account is active. If you delete your account, all associated data (tasks, projects, labels, preferences) is permanently deleted within 30 days. Calendar OAuth tokens are deleted immediately when you disconnect a calendar in Settings.
6. Your rights (GDPR & similar)
Depending on your location, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your account and data
- Object to or restrict certain types of processing
- Export your data in a portable format
To exercise any of these rights, email hello@taskete.co. We will respond within 30 days.
7. Cookies
Taskete uses a single session cookie set by Supabase Auth to keep you logged in. We do not use tracking cookies, advertising cookies, or third-party analytics. No cookie consent banner is required for strictly necessary cookies under GDPR.
8. Security
All data is transmitted over HTTPS. Sensitive credentials (OAuth tokens, API keys) are stored server-side only and never sent to the browser. Row-level security policies in our database ensure users can only access their own data.
9. Changes to this policy
If we make material changes to this policy, we will update the effective date at the top of this page. Continued use of Taskete after a change constitutes acceptance of the updated policy.
10. Contact
For privacy questions or requests: hello@taskete.co