TaskRemindering Privacy Policy

Effective date: August 6, 2026

This Privacy Policy explains how Daftrah LLC collects, uses, discloses, stores, transfers, and protects personal information when you use TaskRemindering, including our website, web application, mobile applications, account dashboard, reminder tools, calendar views, website billing flows, support channels, administrative tools, APIs, and related services.

TaskRemindering is operated by Daftrah LLC. Contact: support@taskremindering.com

This Privacy Policy is intended to satisfy common website, SaaS, Apple App Store, Google Play, GDPR, CCPA, and similar transparency requirements. It is not a contract for any specific uptime, security, retention, or compliance outcome.

1. Scope

This Privacy Policy applies to personal information processed by TaskRemindering.

It does not apply to third-party websites, app stores, payment processors, identity providers, email providers, hosting providers, or other external services that process information under their own terms and privacy policies.

If you use TaskRemindering through a family, company, or team workspace, the workspace owner or administrator may control some information inside that workspace and may be responsible for providing additional notices to members, employees, contractors, or other invited users.

2. Information We Collect

We collect the information needed to provide the current service and operate the web and mobile applications.

Account and profile information

  • Full name.
  • Email address.
  • Account identifiers and Supabase authentication identifiers.
  • Password authentication data handled by Supabase. We do not intentionally store your plain-text password.
  • Email verification and password reset status.
  • Phone number if you add one to your profile.
  • Locale, language, calendar preference, time format, timezone, and profile settings.
  • Customer type, account role, workspace role, company or family workspace name, member status, and activity status.
  • Security and session information associated with login and account access.

Reminder and calendar information

  • Reminder titles.
  • Reminder notes.
  • Categories, template keys, priorities, external links, and assigned names.
  • Due dates, due times, start times, recurring schedule settings, notification offsets, and completion status.
  • Recurrence values such as none, daily, weekly, monthly, yearly, or supported custom rule data.
  • Visibility settings such as private or shared.
  • Calendar preference and calendar-style reminder views inside the service.
  • Archive, deletion, cancellation, completion, and rescheduling history where stored by the service.

You decide what information to place in reminders and notes. Do not add highly sensitive information unless it is necessary and you have the legal right to do so.

Workspace, company, family, and employee information

  • Workspace names and company or family names.
  • Member names, email addresses, roles, statuses, and invitation or account creation details.
  • Shared reminders and assignments visible to authorized workspace members.
  • Workspace owner and manager actions.
  • Employee account information created by a company owner or authorized manager.
  • Activity logs related to reminders, billing, settings, support, and administration.

Billing and commercial information

  • Plan code, plan name, trial status, billing interval, subscription status, renewal or cancellation status, and reminder limits.
  • Stripe customer IDs, subscription IDs, checkout session IDs, subscription item IDs, price IDs, invoice IDs, payment intent IDs, charge IDs, hosted invoice URLs, invoice PDFs, webhook event IDs, webhook event types, and billing event metadata.
  • Apple App Store transaction IDs, original transaction IDs, product IDs, renewal or expiration dates, purchase environment, purchase status, server notification data, and related App Store subscription metadata.
  • Billing record amounts, currency, payment status, failure messages, and payment timestamps.
  • Billing address, tax, card, bank, or payment method information processed by Stripe when you use Stripe Checkout or the Stripe billing portal on the website.

Stripe processes full payment card numbers and other payment credentials. TaskRemindering does not intentionally store full payment card numbers on its own application database.

The current iOS mobile app does not collect payment card numbers and does not open Stripe Checkout or the Stripe billing portal for in-app subscription purchases. Paid digital subscriptions purchased inside the iOS app are processed through Apple's In-App Purchase.

Notification and device information

  • In-app, email, and push notification preferences.
  • Reminder notification queue records, scheduled send times, channels, delivery attempts, provider message IDs, and error messages.
  • Expo push tokens and related push token records.
  • Device platform, such as iOS, Android, or web.
  • Device name or model information when available.
  • Push token enabled status and last-seen timestamps.
  • Notification permission status and device-level notification behavior controlled by Apple, Google, Expo, browsers, email providers, operating systems, or your device settings.

Mobile location and timezone information

The mobile app uses native iOS location permission to keep reminder times aligned with your current timezone. When you permit location access, the app may request device location with approximate accuracy and use reverse geocoding to determine the local timezone.

The current implementation is designed to store the resulting timezone in your profile. It is not designed to store a continuous location history or raw GPS trail in the application database.

If location permission is denied or disabled, timezone-sensitive mobile features may be unavailable or may require you to update settings manually.

Support and communications

  • Support messages, subjects, replies, status, and related account context.
  • Email communications sent to or from support.
  • Administrative notes and actions needed to respond to support requests.
  • Legal, privacy, billing, security, and account deletion requests.

Cookies, local storage, and session information

We use cookies, local storage, secure device storage, and similar technologies to operate the service.

The website uses Supabase session cookies or related session storage to keep users signed in. It may also set preference cookies such as locale and time format. The mobile app uses secure device storage, including Expo SecureStore, to store Supabase session data on the device.

We may also process browser type, device type, operating system, referring pages, pages visited, timestamps, session state, IP address, and request metadata through our application, hosting provider, Supabase, Stripe, email provider, and security systems.

Technical, security, and error information

  • Server logs, API request logs, webhook logs, and security logs.
  • Authentication events and session events.
  • Database activity logs and administrative action logs.
  • Error messages, stack traces, failure reasons, retry counts, locked records, and provider response data.
  • IP addresses, user agents, device identifiers provided by operating systems or app stores, and similar technical metadata where available.

Analytics and tracking

The current codebase does not include third-party advertising analytics, behavioral advertising SDKs, or tracking pixels. App stores, hosting providers, Stripe, Supabase, Resend, Expo, Apple, Google, and similar infrastructure providers may provide operational, delivery, crash, security, or usage metrics under their own systems.

If we add advertising analytics or cross-context behavioral tracking in the future, we will update this Privacy Policy and provide any required notices and choices.

3. Sources of Information

We collect information from:

  • You directly when you create an account, create reminders, update settings, purchase a plan, contact support, or use the service.
  • Workspace owners, company owners, family managers, administrators, or invited members.
  • Supabase authentication and database services.
  • Stripe payment and billing services.
  • Resend email services.
  • Expo, Apple, Google, browser, and operating-system notification infrastructure.
  • Hosting, security, logging, and infrastructure providers.
  • App stores and developer platforms when they provide operational, distribution, or review-related information.
  • Public or legally available sources when needed for security, fraud prevention, compliance, or support.

4. How We Use Information

We use personal information to:

  1. Provide, maintain, secure, and improve TaskRemindering.
  2. Create, verify, authenticate, and manage accounts.
  3. Store, display, update, complete, archive, delete, and schedule reminders.
  4. Provide recurring reminders for daily, weekly, monthly, yearly, and supported custom schedules.
  5. Calculate reminder dates and times using the applicable profile or device timezone.
  6. Send in-app, email, and push notifications when enabled and technically available.
  7. Maintain notification queues and delivery status.
  8. Provide calendar-style views and account dashboards.
  9. Manage family, company, team, employee, and shared workspace features.
  10. Process website subscriptions, trials, invoices, upgrades, downgrades, cancellations, and billing records through Stripe, and process iOS App Store subscription entitlements, renewals, cancellations, and related billing status through Apple where applicable.
  11. Provide customer support and administrative support.
  12. Send account, service, security, billing, and legal communications.
  13. Enforce the Terms of Use and other policies.
  14. Detect, prevent, investigate, and respond to fraud, abuse, unauthorized access, payment disputes, chargebacks, security incidents, and policy violations.
  15. Debug, audit, test, and improve the website, APIs, mobile app, database logic, and notification systems.
  16. Comply with legal, tax, accounting, regulatory, law-enforcement, app-store, and payment-processor obligations.
  17. Protect the rights, property, safety, and security of TaskRemindering, users, payment systems, databases, APIs, infrastructure, and others.
  18. Support business transactions, audits, compliance reviews, and internal administration.

We do not use your reminders for third-party advertising.

5. Legal Bases for Processing

Where GDPR, UK GDPR, Swiss law, or similar laws require a legal basis, we rely on:

  • Contract: to provide the service, authenticate users, process reminders, operate subscriptions, and provide support.
  • Legitimate interests: to secure, operate, troubleshoot, improve, and protect the service; prevent fraud and abuse; enforce policies; and communicate about service matters.
  • Consent: for optional permissions or communications where consent is required, including device permissions such as push notifications and location access.
  • Legal obligation: to keep required billing, tax, accounting, legal, compliance, security, and regulatory records.
  • Vital or public interests: only where necessary and lawful, such as responding to urgent legal or safety requests.

You may withdraw consent where processing depends on consent, but withdrawal does not affect processing that occurred before withdrawal or processing based on another lawful basis.

6. How We Share Information

We do not sell personal information for money. We share information only as described below.

Service providers and processors

We may share information with vendors that help us operate the service, including:

  • Supabase for authentication, database, storage-adjacent platform services, and backend infrastructure.
  • Stripe for checkout, billing, invoices, payment processing, subscription management, customer portals, and payment-related fraud controls.
  • Resend for transactional email and support email delivery.
  • Expo, Apple Push Notification service, Firebase Cloud Messaging, Google, Apple, and operating-system services for mobile and push notification delivery.
  • Hosting, CDN, domain, infrastructure, logging, monitoring, and security providers.
  • Customer support, legal, accounting, compliance, and professional advisers.

These providers may process information as our service providers or processors, or as independent controllers for parts of their services under their own terms.

Workspace members and administrators

If you use a shared workspace, company account, family account, or team feature, information created in that workspace may be visible to authorized owners, managers, administrators, and members according to their roles and settings.

Private reminders are intended to be visible only to the authorized user and necessary service systems. Shared reminders may be visible to relevant workspace members.

Payment processors and app stores

Stripe, Apple, Google, and other commerce or app-store providers may process payment, tax, refund, subscription, purchase, distribution, review, and compliance information under their own policies.

Legal, safety, and compliance

We may disclose information when we believe it is necessary to:

  • Comply with law, regulation, subpoena, court order, legal process, app-store requirement, or payment-processor requirement.
  • Respond to lawful government, law-enforcement, or regulatory requests.
  • Enforce our Terms of Use or other policies.
  • Prevent, detect, investigate, or respond to fraud, abuse, security incidents, unauthorized access, payment disputes, chargebacks, or illegal activity.
  • Protect rights, property, safety, security, databases, APIs, payment systems, infrastructure, users, or the public.

Business transfers

We may disclose or transfer information in connection with a merger, acquisition, financing, reorganization, bankruptcy, sale of assets, corporate transaction, due diligence process, or similar event.

At your direction

We may share information when you choose to share a reminder, invite a user, create an employee account, enable a workspace feature, use a third-party integration, export information, or otherwise direct us to disclose information.

7. Cookies and Similar Technologies

We use necessary cookies and local storage to provide authentication, security, session management, locale settings, time-format preferences, account features, and core service functionality.

You may control cookies through your browser settings. Blocking necessary cookies may prevent login, billing, language preferences, or other features from working correctly.

We do not currently use advertising cookies or third-party ad tracking pixels in the implemented codebase.

8. Push Notifications, Email Notifications, and Location Choices

You can control notification preferences in your account settings and device settings.

You can disable push notifications in your mobile operating-system settings. You can disable email and push reminder channels inside the app where those controls are provided.

You can disable location permission in your device settings. Because the mobile app uses location to keep reminder timezones aligned with your current location, disabling location may limit timezone-sensitive reminder actions.

9. Data Retention

We retain personal information for as long as reasonably necessary to provide the service, maintain accounts, comply with legal obligations, resolve disputes, enforce agreements, prevent fraud, maintain security, and keep business records.

Examples include:

  • Account and profile data is generally retained while the account is active.
  • Reminders are retained until deleted, archived, completed, removed through account deletion, or otherwise processed according to service rules and retention needs.
  • Billing, invoice, Stripe webhook, tax, accounting, and payment-dispute records may be retained for the period required or permitted by law and payment-processing rules.
  • Support messages and activity logs may be retained for support, audit, security, and dispute-resolution purposes.
  • Push tokens may be retained until disabled, replaced, deleted, account deletion is processed, or they become stale.
  • Logs, backups, and security records may persist for a limited period after deletion from live systems.

When retention is no longer reasonably necessary, we delete, de-identify, aggregate, or otherwise limit use of the information where practical and legally appropriate.

10. Account Deletion

You may initiate account deletion directly in the mobile app by opening Account, choosing Delete account, typing DELETE, and confirming the deletion prompt. You may also request help with account deletion by contacting support@taskremindering.com with the subject line Account Deletion.

We may need to verify your identity before processing support-assisted deletion requests. Deletion may remove or disable your account, reminders, workspace access, push tokens, notification preferences, and related profile information.

Deletion may not remove information that we must retain or are permitted to retain for legal, tax, accounting, fraud-prevention, payment-dispute, chargeback, security, audit, app-store, backup, or compliance purposes.

If you belong to a company, family, or team workspace, the workspace owner or administrator may need to handle workspace-level data or member records. Some shared content may remain available to the workspace if it is needed for legitimate business, security, legal, or operational reasons.

11. Your Privacy Rights

Depending on your location, you may have rights to:

  • Know or access personal information we process about you.
  • Correct inaccurate personal information.
  • Delete personal information.
  • Object to or restrict certain processing.
  • Withdraw consent where processing is based on consent.
  • Receive a portable copy of certain information.
  • Opt out of sale, sharing, targeted advertising, or certain profiling if applicable.
  • Appeal a privacy request decision where required by law.
  • Lodge a complaint with a data protection authority.

To exercise rights, contact support@taskremindering.com. We may verify your identity and request additional information needed to process the request.

We will not discriminate against you for exercising privacy rights, but some service features may require information to function.

12. GDPR, UK, Swiss, and International Users

If you are in the European Economic Area, United Kingdom, Switzerland, or another jurisdiction with similar privacy laws, you may have additional rights under applicable law.

Daftrah LLC acts as a controller for account, billing, support, security, and service-operation information that it determines how to process. For company, family, or team workspaces, Daftrah LLC may act as a processor or service provider for certain workspace content processed on behalf of the workspace owner.

Where required, international transfers rely on lawful transfer mechanisms such as adequacy decisions, Standard Contractual Clauses, contractual safeguards, processor terms, or other lawful transfer tools.

13. California and U.S. State Privacy Notices

Depending on whether Daftrah LLC is subject to a particular U.S. state privacy law, residents may have rights to know, access, correct, delete, and opt out of certain uses of personal information.

The categories of personal information we may collect include identifiers, customer records, commercial information, internet or electronic network activity, geolocation-derived timezone information, professional or employment-related information where supplied in company workspaces, inferences from service settings, and sensitive personal information only where you voluntarily provide it or where device permissions are used for a disclosed purpose.

We do not currently sell personal information for money or share personal information for cross-context behavioral advertising in the implemented codebase. Because we do not currently sell or share personal information for cross-context behavioral advertising, browser opt-out preference signals such as Global Privacy Control do not change current advertising processing. If this changes, we will provide required notices and opt-out mechanisms.

14. Children

TaskRemindering is not directed to children under 13, and we do not knowingly allow children under 13 to create accounts.

The service is generally intended for users who are at least 16 years old, or the age required by applicable law for online services. If we learn that a child provided personal information in violation of this policy, we will take reasonable steps to delete it.

Parents or guardians may contact support@taskremindering.com with child-privacy concerns.

15. Security

We use reasonable administrative, technical, and organizational measures designed to protect personal information. These may include authentication controls, encrypted transport, database access controls, row-level security policies, restricted service-role access, payment processing through Stripe, secure mobile session storage, monitoring, logging, and operational safeguards.

No system is completely secure. We cannot guarantee that unauthorized access, data loss, service interruption, software bugs, third-party failures, or security incidents will never occur.

You are responsible for protecting your account credentials, devices, email account, operating-system permissions, and workspace member access.

16. Data Accuracy

You are responsible for keeping your account, billing, timezone, reminder, and contact information accurate and current.

You may update many profile and notification settings inside the service. For other correction requests, contact support@taskremindering.com.

17. Automated Decisions

The current service does not use automated decision-making intended to produce legal or similarly significant effects about users. Some automated rules may affect product behavior, such as enforcing plan limits, billing status, workspace permissions, notification scheduling, fraud prevention, or security controls.

18. Third-Party Links and Integrations

The service may link to third-party websites, invoices, payment portals, app stores, email providers, notification providers, or future integrations. We are not responsible for third-party privacy practices.

Use third-party services only after reviewing their terms and privacy policies.

19. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. If changes are material, we will provide notice by email, in-app notice, website notice, app-store disclosure, or another reasonable method where required.

The updated Privacy Policy becomes effective on the effective date stated above unless a later date is provided. Your continued use of the service after the effective date means you acknowledge the updated Privacy Policy.

20. Contact Us

For privacy, legal, account deletion, security, billing, or support requests, contact:

TaskRemindering / Daftrah LLC Email: support@taskremindering.com