Netty.Today — Privacy Policy
Effective date: 23 August 2026. (Analytics section added.) This Policy replaces all earlier privacy statements (including the 2020 “nettyos.com” text).
This Privacy Policy explains what personal data the Service (netty.today and its applications) collects, why, and what rights you have. The data controller is Nikita Danilov, sole proprietor (the “Operator”, “we”); contact details are in the Contacts section. Terms defined in the Terms of Service have the same meaning here.
Who may use the Service
The Service is intended for users aged 16 or older and is currently offered to users outside Russia. We do not knowingly collect data from children under 16. A separate edition for users in Russia, with data stored in Russia, its own privacy notice and operator, is in preparation.
What we collect
We practise data minimisation — we collect only what the Service needs.
You give us:
- Account data: e-mail address (your login) and a display name. A password is stored only as a salted hash — we never see it. If you sign in with Google, we receive your Google account e-mail, name and avatar.
- Your content: tasks, goals, habits, projects, boards, lists, comments, and — if you use Places — place names, coordinates and reminder radius that you set on the map. This content may include whatever you type into it.
- Team/social data: your display name and avatar are visible to people you share boards or lists with, to your teams, and — if you enable the activity feed — to your contacts.
- Optional avatar image you upload.
Collected automatically:
- Technical/session data: IP address, browser and device type (user-agent) and timestamps of sign-ins — used for security, sessions (“your devices”) and abuse prevention.
- Push subscription identifiers, if you enable push notifications.
- Local, on-device only: the app keeps a copy of your data and interface settings in your browser’s
localStorage/IndexedDB, and a device-local usage log that never leaves your device. This is functional storage, not tracking.
We do NOT: show ads, set advertising cookies or pixels, sell your data, or profile you for advertising. The only analytics we run is Google Analytics — described below.
Analytics (Google Analytics)
We use Google Analytics 4 to understand how the Service is used (which pages are opened, on what devices, where sign-up stumbles) and to tell real people from the bots attacking registration. Analytics receives anonymised usage events (e.g. "page opened", "task created", "sign-up failed: unreachable domain") and technical context (device type, browser, language, country). We never send your e-mail, name, task contents or any other personal data; page addresses are stripped of codes and parameters before leaving the browser. Google processes this data; Google Analytics advertising features (personalisation, ad-profile linking) are fully and permanently disabled.
Consent and the analytics cookie. On your first visit analytics runs cookie-free — events are anonymous and not linked across visits. The bar at the bottom of the screen asks for your choice: "Accept" allows the analytics cookie (_ga — it lets us see returns and retention), "Essentials only" keeps the cookie-free mode forever. Neither choice changes how the Service works. You can change your choice at any time — the bar will reappear.
Cookies and local storage
The Service stores functional data on your device (authentication tokens, language, interface state, an offline copy of your data) — no consent is legally required for strictly necessary storage. The analytics cookie is set only after you press "Accept" (see the section above). Google sign-in may set its own cookies, and only if you choose to use it. You can clear this storage any time via your browser or by signing out.
Why we process data, and legal bases
| Purpose | Data | Legal basis (GDPR) |
|---|---|---|
| Provide the Service (accounts, your content, sync, teams) | account, content, technical | Performance of a contract |
| Security, sessions, abuse & fraud prevention | technical/session | Legitimate interests |
| Transactional e-mail (confirmation and password-reset codes) | Performance of a contract | |
| Optional reminder & notification e-mails/push | e-mail, push, preferences | Consent / your settings (toggle any time) |
| Billing (once paid plans launch) | contact + payment-provider data | Contract / legal obligation |
| Legal compliance | account, technical | Legal obligation / legitimate interests |
Where we rely on consent, you can withdraw it at any time in Settings → Notifications without affecting the lawfulness of prior processing.
Notification and reminder e-mails
Reminder and notification e-mails are service messages tied to your own tasks and settings, not marketing. Every such e-mail contains a link to Settings → Notifications and an unsubscribe (List-Unsubscribe) header, so you can turn them off. Security e-mails (confirmation and reset codes) cannot be turned off while you have an account.
Sharing and processors
We do not sell personal data. We share it only with:
- Service providers (processors) acting on our instructions: cloud hosting (Amazon Web Services), e-mail delivery, and — once paid plans launch — a payment provider. Payment card details are handled by the payment provider, not by us.
- Other users, only what you deliberately share (your name/avatar and the boards, lists or cards you share with them).
- Authorities, where required by law or to protect rights and safety.
- AI assistants you connect over the MCP protocol — only after you grant access in the browser, and only for the data those tools request on your behalf.
International transfers and hosting
The Service is hosted in the European Union (AWS, Frankfurt, Germany). Where data is transferred internationally, we rely on appropriate safeguards such as the European Commission’s Standard Contractual Clauses.
Retention
We keep your data while your account is active. When you delete your account (or ask us to), we delete your personal data and content within 30 days, except (a) data others retained because you shared it with them, within the Service, (b) records we must keep by law (e.g. tax/billing records once billing exists), and (c) encrypted backups, purged on a rolling schedule. Read notifications are swept automatically after 60 days and older ones after 180 days.
Your rights
Depending on your jurisdiction (GDPR/UK GDPR and similar laws) you have the right to access, correct, delete, restrict or object to processing, to data portability, and to withdraw consent. You can edit your profile and toggle notifications in the app; for deletion or a data export, use the in-app control where available or e-mail the address in Contacts — we respond within 30 days. You may also lodge a complaint with your local data-protection authority.
Account and data deletion
You can delete your account right in the app and on the web: Settings → Profile → “Delete account” (confirmed with your password or a mail code). The request opens a 14-day cancellation window — the account keeps working the whole time, and the request can be cancelled from any signed-in device. Once the window passes, the following is deleted permanently: your profile, tasks, goals, habits, personal projects and boards, places, shared lists, comments, notifications, integrations and sign-in methods. Team cards you shared with other members remain their working material — your identifiers are scrubbed from them. If you cannot access the app, request deletion by e-mailing the address in the Contacts section — we honour it within the same timeline.
Security
We use encryption in transit (TLS), hashed passwords (bcrypt), signed short-lived access tokens with refresh-token rotation, per-session device management and strict access controls between our services. No system is perfectly secure; keep your devices and credentials safe.
Changes to this Policy
We may update this Policy. For material changes we will give notice in the app or by e-mail before they take effect and update the “Effective date” above.
Contact / data requests: see Contacts.
This Policy is drafted in English; translations (including Russian) are for convenience and the English version prevails.
