Privacy Policy
WeeklyBot is a calendar and email assistant you talk to in an app or by text message. It is made and run by Sky Ventures Global, Inc. ("we", "us"), and it is invite-only. This policy says what WeeklyBot collects, why, who else sees it, how it is protected, and how long it is kept. The section on Google user data covers everything WeeklyBot reads from your Google account.
What we collect
- Your Google account. Your name, the address you sign in with, and, for each Google account you connect, its calendars and mail as described under Google user data.
- Your mobile number, if you give it to us, and your time zone.
- Your conversation. The messages you send WeeklyBot and the replies it sends you, in the app and by text.
- Your consent. When you agreed to receive text messages, the exact wording you agreed to, and when you changed your mind.
- If someone invites you, the address they nominated, so the invitation can be made and sent.
Why we collect it
To answer you, and to do what you ask with the calendars and mail you connected. We do not sell your information, and we do not use it to advertise to you.
Google user data
WeeklyBot's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
What WeeklyBot accesses
When you connect a Google account, Google shows you the access WeeklyBot asks for, and you grant it on Google's own page. WeeklyBot never sees your Google password. It asks for:
- Your basic profile (name and email address), to know which account you connected.
- Google Calendar, to read and change your events: each event's title, time, location, description, attendees and their replies, and the names of your calendars.
- Gmail, to read your mail's headers (who it is from and to, the subject and the date), the short preview Google provides, and its labels; to open a message's full text when you, or a feature you turned on, need it; to mark messages read or as spam when you ask; and to send mail you approved, from your own address.
How WeeklyBot uses it
Only to provide the features you use, and nothing else:
- answering questions about your schedule, finding open time, and creating, moving, cancelling or replying to events when you ask;
- mirroring busy time between your calendars as private "busy" holds, if you turn that on;
- booking links: emailing the times you chose to the person you named, and putting the meeting they pick on your calendar;
- showing your inbox in the app, telling you when mail you asked to watch for arrives, and sending replies you approved, word for word.
WeeklyBot does not use Google user data for advertising of any kind, does not sell it, does not use it to decide anyone's credit-worthiness or for lending, and does not use it to train, develop or improve artificial intelligence or machine-learning models, ours or anyone else's. It does not use Google user data to create, edit or generate images.
How WeeklyBot shares it
We do not share Google user data with anyone except as needed to provide the features you use, to comply with the law, or as part of a merger or sale of the business, with notice to you. To provide those features it passes through:
- Our hosting and database providers (Replit and Supabase), which run WeeklyBot and store its data on our behalf.
- Our AI model provider, Anthropic, which receives the parts of your calendar, and of a message you asked WeeklyBot to deal with, that it needs to answer you. Anthropic processes it to produce the answer and does not use it to train its models.
- Our messaging provider and the mobile carriers, when WeeklyBot texts you something from your calendar or mail, such as an event's title or who a watched email is from and its subject.
No person at WeeklyBot reads your Google user data unless you ask us to (for example, to look into a problem you reported), it is needed for security such as investigating abuse, it is required by law, or it has been aggregated and made anonymous for running the service.
How WeeklyBot protects it
- Everything travels encrypted (HTTPS/TLS), between your devices, WeeklyBot, Google and our providers.
- The keys Google gives WeeklyBot to reach your account are kept encrypted in a secrets vault, apart from the rest of the data, and only WeeklyBot's own servers can read them.
- Stored data is encrypted at rest by our database provider, and WeeklyBot shows each person only their own data.
- WeeklyBot does not keep the full text of your email on its servers. Messages you open in the iPhone or Mac app are cached on that device in an encrypted store, which is erased when you sign out.
- Our logs leave out the text of your mail and your access keys.
How long WeeklyBot keeps it, and deleting it
- WeeklyBot keeps a copy of your events from 30 days ago to 180 days ahead, and the headers and previews of your mail, for as long as the Google account stays connected. A message you delete in Gmail, or an event you cancel, is removed from that copy.
- When you remove a Google account from WeeklyBot, we revoke WeeklyBot's access at Google, delete its access keys, and delete the calendar and mail data we kept from it.
- You can also revoke WeeklyBot's access at any time from your Google account, at myaccount.google.com/permissions. WeeklyBot then stops reading that account at once.
- To have all of your data deleted, write to support@weeklybot.app. We delete it within 30 days, keeping only the consent records described below.
Mobile numbers and text messages
No mobile information will be shared with third parties or affiliates for marketing or promotional purposes. This includes your opt-in to text messages and the record of that consent: they are never shared or sold.
Text messages are not private in the way an encrypted app is. A reply can contain the title of an event, its time, and the names of the people on it, and it passes through our messaging provider and, for any message that travels as a standard text, through the mobile carriers. Both can see the full text and the number.
Message frequency varies. Message and data rates may apply. Reply STOP to opt out at any time, or HELP for help. See the SMS Terms.
Who else sees it
- Google, for the calendars and mail you connect.
- Our hosting and database providers, who store the data on our behalf.
- Our messaging provider, and the mobile carriers, for anything sent or received as a message.
- Our AI model provider, Anthropic, which receives the text of your conversation, and the calendar and mail details it needs, so it can be answered. WeeklyBot runs on Anthropic's standard commercial terms. We do not yet have a zero-retention arrangement with them, and we will have one before WeeklyBot is generally available.
How long we keep it
- Your conversation is kept while your account exists; the app shows you the last 30 days of it.
- Calendar and mail data is kept as described under Google user data.
- An unfinished signup is deleted 14 days after it expires, and a confirmation link a week after it is made.
- An address someone nominated is deleted 14 days after that invitation expires, if it was never used.
- A message from a number we don't know is recorded only as a one-way code, and is deleted after 30 days.
- Consent records — that you agreed, to what wording, and when — are kept for five years, including after an account is closed, because we have to be able to show them.
Your choices
Reply STOP to any text to stop them. Remove a Google account in WeeklyBot, or revoke its access from your Google account, and we stop reading it. Ask us to close your account and we delete it, keeping only the consent records above.
Changes to this policy
The date at the top says when this policy last changed. Before WeeklyBot uses Google user data in a new way, or for a new purpose, we will update this policy and tell you, by text or in the app, and ask for your consent where it is needed.
Contact
WeeklyBot is operated by Sky Ventures Global, Inc. Write to support@weeklybot.app.