Privacy

Privacy Policy.

What we collect, why we collect it, where it lives, and how you stay in control — including how AppDeen handles data from your Google account.

Effective date: September 15, 2026

AppDeen ("AppDeen," "we," "us," or "our") builds AI employees and agents that act on your instructions inside your own workspace. This Privacy Policy explains what information we collect when you use appdeen.ai and the AppDeen product (together, the "Service"), why we collect it, how it is used, where it is stored, and the rights you have over it. By using the Service, you agree to the practices described here.

1. Information We Collect

We collect the following categories of information, only as needed to operate the Service:

  • Account information — your name, email address, password (hashed, never stored in plain text), and billing details, collected when you sign up and used to create and secure your account and to process payment.
  • Workspace information — the company or team you belong to, workspace settings, and membership, used to keep your organization's data and colleagues' access scoped to that workspace.
  • Conversations and files — the messages you exchange with your AI employees and any files you upload or they produce, used to carry out the tasks you ask for and to show you a history of what was done.
  • Long-term memory — facts and preferences an agent is told to remember about you or a project, used so an agent does not need to be re-briefed every session. You can view and delete any remembered fact at any time.
  • Connector credentials — OAuth tokens and, where a service has no OAuth flow, API keys or connection strings for third-party services you choose to connect (for example Notion, Slack, or Google), used solely to let an agent act on that service on your behalf and never for any other purpose.
  • Voice clips — audio you or an agent generates when you use voice features, used to provide speech input and spoken responses.
  • Audit logs — a record of tool calls and actions taken by you or an agent (what was called, when, and by whom), used for security, for showing you what an agent did, and for troubleshooting.

We also collect standard technical information — IP address, browser type, device identifiers, and usage logs — to operate, secure, and improve the Service.

2. How We Use Your Information

We use the information above to provide, maintain, and improve the Service; to operate the agents and tools you configure; to secure your account and workspace; to communicate with you about the Service; and to comply with legal obligations.

We do not sell your personal information. We do not use your data for advertising, and we do not run ads. We do not use your conversations, files, memory, or connector data to train AI models — not our own, and not on behalf of any third party. Your data and memory stay private to your workspace: they are never shared with other customers.

3. Where We Store Your Information, and For How Long

We use a small number of infrastructure and model providers to run the Service, each processing only what is needed for its role:

  • Anthropic — processes your conversations to power the underlying AI models that run your AI employees.
  • AWS — stores files, transcripts, and backups, and hosts supporting infrastructure.
  • DigitalOcean — hosts application servers and runs agent sessions.
  • MongoDB Atlas — stores account, workspace, memory, and audit-log data.
  • ElevenLabs — processes voice clips to provide speech generation and transcription.

Each provider is bound by its own data-processing terms and is only permitted to use your data to provide its service to us — not for its own purposes such as training its own models on your content, except where you have separately agreed to that with the provider directly.

We retain account and workspace data for as long as your account is active. Conversations, files, audit logs, and voice clips are retained for as long as needed to provide the Service and are deleted, or anonymized, within 90 days of account deletion, except where we are required to keep records for longer to meet a legal obligation. Long-term memory is retained until you delete it or your account is deleted. Connector credentials are deleted immediately when you disconnect a service or close your account.

4. Google User Data

With your explicit authorization, AppDeen can connect to the following Google services on your behalf: Gmail, Calendar, Drive, Docs, Sheets, Contacts, Google Ads, and Search Console.

We access Google user data only to perform the actions you specifically ask an AI employee to carry out — for example, reading an email you asked about, drafting a calendar invite, or pulling a report from Search Console. Google data is never used for advertising, is never used to train AI models, and is never sold or shared with any third party except as needed to perform the action you requested.

Your Google OAuth token is encrypted at rest and is used only to make the API calls your instructions require. You can revoke AppDeen's access at any time from your workspace's connector settings, or directly at myaccount.google.com/permissions. Revoking access deletes the stored token immediately.

AppDeen's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

5. Security

We encrypt data in transit (TLS) and at rest, encrypt connector credentials with a dedicated key-management service, and restrict internal access to production data to the personnel who need it to operate the Service. No method of transmission or storage is perfectly secure, and we cannot guarantee absolute security, but we work to keep these protections current.

6. Your Rights

Depending on where you live, you may have the right to access, correct, export, or delete your personal information, and to object to or restrict certain processing. You can exercise most of these rights directly in your workspace settings — including deleting a remembered fact, disconnecting a connector, or exporting a conversation — or by writing to hello@appdeen.ai. We will respond within a reasonable time and in line with applicable law.

7. Children

The Service is not directed to, and may not be used by, anyone under 16 years old. We do not knowingly collect personal information from children under 16. If we learn that we have, we will delete it.

8. Changes to This Policy

We may update this policy from time to time. If we make material changes, we will notify you by email or through the Service before the change takes effect. The "Effective date" above reflects the version currently in force.

9. Contact Us

Questions about this policy or your data can be sent to hello@appdeen.ai.