← Back to MyCompanion

Privacy Policy

Last updated: August 4, 2026

This Privacy Policy explains how NFEL Technologies ("we," "us," "our") collects, uses, shares, and protects information when you use the MyCompanion application, available at myclosecompanion.com and any related subdomains (collectively, the "Service").

MyCompanion is operated by NFEL Technologies, located at [BUSINESS ADDRESS]. If you have questions about this policy, contact us at contact@myclosecompanion.com.

By creating an account or using the Service, you agree to the collection and use of information as described in this policy.


1. Information We Collect

1.1 Account Information

When you sign up, we collect your name, email address, and password (handled securely by our authentication provider, Supabase — we never see or store your password in plain text). We also store preferences you set, such as your timezone, preferred companion name, response language, and reasoning-depth setting.

1.2 Calendar Data

If you connect a Google or Microsoft (Outlook) account, we access your calendar through the Google Calendar API or Microsoft Graph API on your explicit authorization (OAuth). This includes:

You may also subscribe to public, read-only calendar feeds (.ics URLs) you provide — these don't require an account login, and we only read event data from the URL you supply.

You can disconnect a linked calendar account at any time from Settings, and separately revoke MyCompanion's access from your Google or Microsoft account security settings.

1.3 Document Data

If you connect a Google Drive or Microsoft OneDrive workspace folder, we read the contents of files within that folder to generate summaries, key takeaways, and suggested actions using an AI model. We do not permanently store the full text or contents of your documents. Only the AI-generated summary, takeaways, and suggested actions are saved to our database, and the summary/takeaways are encrypted at rest. The underlying document content is read at the time of processing and is not retained by us afterward (though it may be temporarily processed by our AI provider — see Section 3).

1.4 To-Do and Accountability Data

If you use the accountability features, we store the to-do items and recurring tasks you create, their completion status, and a log of which daily digest/reminder/review touchpoints have been sent, so we don't send duplicates.

1.5 Conversation Data

We store your chat messages with the companion so your conversation history persists across sessions and devices.

1.6 Communications

If accountability features are enabled, we send you email digests, event reminders, and evening check-in nudges via our email provider, Resend. We also send account-related emails (e.g., password reset, email confirmation) through the same provider.

1.7 Usage and Technical Data

Our hosting providers (see Section 4) may automatically log standard technical information, such as IP address, browser type, and request timestamps, for security and reliability purposes.


2. How We Use Your Information

We use the information above to:

We do not sell your personal information, and we do not use your calendar or document content for advertising.


3. How Your Information Is Processed by AI

To generate replies, summaries, and suggestions, relevant portions of your calendar data, document content, to-do list, and conversation history are sent to Google (Gemini) for processing. This processing happens in real time to generate a response; refer to that provider's own privacy terms for how they handle data submitted through their API. We do not use your data to train third-party foundation models beyond what that provider's standard API terms specify.


4. Third Parties We Share Data With

We share information with the following categories of service providers, only as needed to operate the Service:

| Provider | Purpose | Data Involved | |---|---|---| | Google | Calendar access, Drive document access, OAuth sign-in | Calendar events, document content (transient), account identity | | Microsoft | Outlook calendar access, OneDrive document access, OAuth sign-in | Calendar events, document content (transient), account identity | | Google (Gemini) | Generating replies, summaries, and suggestions | Calendar, document, to-do, and conversation content relevant to each request | | Supabase | Database hosting, authentication | All account, calendar, document-insight, to-do, and conversation data | | Resend | Transactional and digest/reminder email delivery | Your email address and the content of the email being sent | | Vercel, Render | Application hosting | Standard request/technical logs |

We require these providers to handle your data consistently with the purposes described here. We do not permit them to use your data for their own independent purposes beyond providing their service to us.

We may also disclose information if required by law, or to protect the rights, property, or safety of NFEL Technologies, our users, or others.


5. Data Retention

We retain your account data for as long as your account is active. Document insights, to-dos, and conversation history are retained until you delete them individually or delete your account. OAuth tokens for a linked calendar or workspace account are retained until you unlink that account or delete your account.

If you delete your account (see Section 7), we will delete your personal data within 30 days, except where we're required to retain certain records for legal or security purposes.


6. Data Security

We use industry-standard safeguards to protect your information, including encrypted connections (HTTPS/TLS) for all data in transit, database-level access controls, and encryption at rest for AI-generated document insights. No method of transmission or storage is 100% secure, and we cannot guarantee absolute security.


7. Your Rights and Choices

Depending on your location, you may have rights to access, correct, export, or delete your personal information. You can:

You can also revoke MyCompanion's access to your Google or Microsoft account directly from those providers' own account security/permissions pages at any time, independent of any action within our app.


8. Children's Privacy

The Service is not directed to children under 16, and we do not knowingly collect personal information from them. If you believe a child has provided us with personal information, contact us and we will delete it.


9. International Data Transfers

Your information may be processed and stored in countries other than your own, including the United States — specifically, Supabase's AWS us-east-2 (Ohio) region for our database and authentication, Render's Oregon (US West) region for our application backend, and Vercel's iad1 (Washington, D.C.) region for our frontend — through the providers listed in Section 4. By using the Service, you consent to this transfer.


10. Changes to This Policy

We may update this Privacy Policy from time to time. We'll update the "Last updated" date above and, for material changes, provide additional notice (such as an email or in-app notification).


11. Contact Us

Questions about this Privacy Policy or your data can be sent to contact@myclosecompanion.com.


This document is a draft template based on MyCompanion's actual data flows as of the date it was generated. It is not legal advice. Please have it reviewed by a qualified attorney before publishing, particularly to confirm compliance with any privacy regulations (e.g., GDPR, CCPA) applicable to your users, and to fill in the bracketed placeholders.