Privacy
How OTO uses Google data
Connecting Google is optional. OTO Life asks separately for the permissions needed for each feature and uses the resulting data only to provide that visible feature to you.
| Permission | Data accessed | How OTO uses it |
|---|---|---|
| Account identity | Google account identifier, display name and email | Label and manage the connection |
| Calendar read | Calendar names and event schedule metadata | Show calendars, availability and conflicts |
| Calendar events write | The event fields needed for a confirmed change | Create, update or delete only the event the user approves |
| Gmail metadata | Subject, sender, time, status and identifiers | Show a bounded inbox summary; no bodies or attachment content |
| Drive metadata | Name, type, modified time, size and identifiers | Show a bounded file list; no file content or sharing lists |
Storage, sharing and AI
Google data is stored in your private, owner-scoped OTO account. OAuth tokens and sync cursors are encrypted and handled only by server-side connector code. OTO does not sell Google data or use it for advertising.
Calendar events are synchronised into a separate OTO projection for deterministic calendar display, agenda, availability and conflict checks. Google remains the source of truth, and imported events are not silently converted into native OTO events. Availability-only mode excludes event titles and links.
OTO does not use Google data to train or improve general-purpose AI models. In the current implementation, Google Calendar, Gmail and Drive records are not sent to OpenAI, Anthropic or another LLM provider.
When you disconnect, OTO attempts to revoke the Google token and deletes its local encrypted credentials, permission grants, synchronisation state and imported calendar, email and file metadata. Only a minimal disconnect audit record without imported content remains. Account deletion removes the remaining owner-linked connector records.
The use of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
See our Privacy Policy, or contact privacy@otovios.com to request access or deletion.