← Back to Home

    Privacy Policy

    Last updated: February 9, 2026

    1. Introduction

    Connection Companion ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service at connectioncompanion.com (the "Service").

    Please read this privacy policy carefully. By using the Service, you agree to the collection and use of information in accordance with this policy.

    2. Information We Collect

    2.1 Information You Provide

    • Account Information: When you sign in with Google, we receive your name, email address, and profile picture.
    • Google Calendar Data: If you choose to connect your Google Calendar, we access your calendar list, event details (titles, times, locations, descriptions), and free/busy information. See Section 8 for details.
    • Conversation Data: Text conversations you upload for analysis.
    • User Content: Any content you create, upload, or share through the Service.
    • Communications: Feedback, support requests, and other communications with us.

    2.2 Information Collected Automatically

    • Usage Data: How you interact with the Service, features used, and time spent.
    • Device Information: Browser type, operating system, and device identifiers.
    • Log Data: IP address, access times, and pages viewed.

    3. How We Use Your Information

    We use the information we collect to:

    • Provide, maintain, and improve the Service
    • Analyze conversations and generate insights as requested by you
    • Process your requests and respond to your communications
    • Send you technical notices, updates, and support messages
    • Detect, prevent, and address technical issues and security threats
    • Comply with legal obligations

    4. Data Security and Encryption

    We implement industry-standard security measures to protect your data:

    • End-to-End Encryption: Sensitive conversation data is encrypted using strong cryptographic protocols based on the Signal Protocol.
    • Forward Secrecy: We use the Double Ratchet algorithm to provide forward secrecy, ensuring that even if encryption keys are compromised in the future, past communications remain protected.
    • Secure Storage: Data is stored on secure cloud infrastructure with encryption at rest.
    • Access Controls: Strict access controls limit who can access your data.
    • Regular Audits: We regularly review our security practices and update them as needed.

    5. Data Sharing and Disclosure

    We do not sell your personal information. We may share your information only in the following circumstances:

    • Service Providers: With trusted third-party services that help us operate the Service (e.g., cloud hosting, analytics).
    • Legal Requirements: When required by law or to respond to valid legal requests.
    • Safety: To protect the rights, property, or safety of Connection Companion, our users, or the public.
    • Business Transfers: In connection with a merger, acquisition, or sale of assets.

    6. Your Rights and Choices

    You have the right to:

    • Access: Request a copy of your personal data.
    • Correction: Request correction of inaccurate data.
    • Deletion: Request deletion of your data (subject to legal retention requirements).
    • Portability: Request your data in a portable format.
    • Opt-out: Opt out of certain data collection and marketing communications.

    To exercise these rights, please contact us at help@connectioncompanion.com.

    7. Data Retention

    We retain your personal information for as long as necessary to provide the Service and fulfill the purposes described in this policy. When you delete your account, we will delete or anonymize your personal information within 30 days, unless we are required to retain it for legal purposes.

    8. Google Calendar Integration

    Connection Companion offers an optional Google Calendar integration. You may connect or disconnect your Google Calendar at any time from the Settings page. When connected, we request the following Google OAuth scopes:

    • calendar.readonly: Used to retrieve your list of calendars so you can choose which one to sync with, query your free/busy times to suggest available scheduling slots, and check for conflicts with existing events when you schedule a plan.
    • calendar.events: Used to create a calendar event when you publish a plan or are accepted as an attendee, update the calendar event when plan details (time, location, description) change, and delete the calendar event when a plan is unpublished or cancelled.

    8.1 How We Use Google Calendar Data

    Google Calendar data is used solely to provide and improve the scheduling features of the Service. Specifically:

    • Display your available calendars so you can select which calendar to sync plans with.
    • Show your free/busy times to suggest optimal scheduling slots for plans.
    • Warn you of scheduling conflicts when you create or modify a plan.
    • Automatically create, update, and delete calendar events to keep your plans in sync with your calendar.
    • Check whether linked calendar events still exist to keep plan status accurate.

    We do not use Google Calendar data for advertising, marketing, user profiling, or any purpose unrelated to providing or improving the Service's scheduling functionality. We do not sell, share, or transfer Google Calendar data to third parties, except as necessary to provide the Service (e.g., secure cloud storage).

    8.2 Storage and Security of Google Calendar Data

    Google Calendar OAuth tokens (refresh and access tokens) are encrypted using AES-256-GCM before being stored in our database. Calendar event metadata (such as event IDs and links) is stored alongside plan data to maintain synchronization. We do not store the full contents of your calendar; we only query event data in real time when needed for conflict checking and availability suggestions.

    8.3 Revoking Access

    You can disconnect your Google Calendar at any time from Settings > Integrations. When you disconnect, we revoke the OAuth tokens and delete all stored calendar connection data, including encrypted tokens and calendar metadata. You can also revoke access directly from your Google Account permissions page.

    9. Third-Party Services

    Our Service may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies.

    We use the following third-party services:

    • Google Sign-In: For authentication (subject to Google's Privacy Policy)
    • Google Calendar API: For calendar integration as described in Section 8 (subject to Google's Privacy Policy)
    • Firebase: For data storage and hosting (subject to Google Cloud's Privacy Policy)
    • OpenAI/Anthropic: For AI-powered analysis (conversation data is processed but not stored by these providers for training)

    10. Children's Privacy

    The Service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete that information.

    11. International Data Transfers

    Your information may be transferred to and processed in countries other than your own. These countries may have different data protection laws. By using the Service, you consent to the transfer of your information to these countries.

    12. Changes to This Policy

    We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. We encourage you to review this Privacy Policy periodically.

    13. Contact Us

    If you have any questions about this Privacy Policy or our privacy practices, please contact us:

    Email: help@connectioncompanion.com

    Website: connectioncompanion.com

    Terms of Service•Home