On this page
Scope and who is responsible
This Privacy Policy applies when you use Tjati's mobile applications, website, support channels and related products or services that link to it (together, the “Service”). It does not govern a third party's own service, even when you connect that service to Tjati.
Tjati (“Tjati,” “we,” “us” or “our”) operates the Service and is the controller of personal information covered by this policy unless a different notice says otherwise. You can contact us at [email protected].
If you use Tjati through an organization that manages your account, that organization may control some account settings or content and may be a separate controller. Ask the organization about its practices.
Information we collect
The information Tjati handles depends on the features, integrations and permissions you choose. We may process the following categories:
| Category | Examples | Primary reason |
|---|---|---|
| Account and profile | Account and authentication identifiers, email, username, full name, avatar, profile details, preferences and account activity. | Create and secure your account, sync your experience, communicate with you and provide support. |
| Productivity content | Areas, goals, projects, tasks, habits, reminders, notes, focus or flow sessions, schedules and related metadata you add to Tjati. | Store, organize, sync and present the content and operate the features you request. |
| AI and conversation content | Prompts, chats, attachments, model and usage metadata, generated responses, action confirmations, memories, preferences and observations derived to personalize the Service. | Generate requested responses, remember relevant context, suggest or perform confirmed actions, maintain safety and troubleshoot the feature. |
| Connected-service data | With your authorization, mail and calendar content and metadata, connected-account identity, OAuth tokens, requested scopes and synchronization state. | Provide the integration you enable, such as finding mail, preparing a draft reply, creating tasks inside Tjati from a message, and reading calendar events. |
| Voice, files and media | Audio or transcripts submitted to voice features; documents, extracted text, chunks or embeddings; files and photos you choose to upload or save. | Transcribe speech, understand requests, retrieve relevant document context, generate outputs and save content at your direction. |
| Device, usage and diagnostics | App version, device and operating-system details, IP address, timestamps, product interactions, performance measurements, crash information, push notification token, app-install or device-derived identifiers, and an account or member identifier. | Operate, debug, secure and improve the Service, understand feature reliability and prevent abuse. |
| Subscription information | Store transaction or entitlement identifiers, product, plan, renewal and subscription status. The app store processes the payment credentials. | Unlock paid features, restore purchases, maintain entitlements and support billing questions. |
| Communications | Support messages, feedback, survey responses and information you include when contacting us. | Answer requests, resolve problems, learn from feedback and maintain a record of the communication. |
| Launch waitlist | The email address you enter in the waitlist form on tjati.com, the date and time you entered it, and which call-to-action on the page you used. Nothing else about the visit is kept with it. | Tell you, once, that Tjati is available. |
Some content may reveal sensitive information because productivity tools can reflect health, finances, relationships, beliefs, precise plans or other private matters. Tjati does not require you to provide sensitive information. Please only add content you are comfortable processing through the features you select.
We do not receive your full payment-card number from Apple or another app marketplace. We may receive subscription, transaction, product, storefront and entitlement information needed to provide and support the purchase.
Where information comes from
- Directly from you, when you create an account, add content, speak to Tjati, upload a file, configure a preference, contact support or otherwise use the Service.
- From your device, through operating-system permissions, app events, local settings, logs and diagnostics.
- From services you connect, such as Google mail and calendar, only after you authorize the connection and requested scopes.
- From service providers and app marketplaces, such as an identity provider, subscription platform, analytics or crash-reporting service.
- From inferences generated for you, such as relevant memories, preferences, relationships between your items or suggested actions based on your content and use.
Operating-system permissions control access to features such as the microphone, notifications and saving generated media. You can change these permissions in your device settings, though disabling one may stop the corresponding feature.
How and why we use information
We use information only when we have a valid reason. The legal basis depends on where you live and the particular context.
| Purpose | What this covers | Legal basis where applicable |
|---|---|---|
| Provide the Service | Operate accounts, sync content, deliver requested AI, voice and integration features, and support subscriptions. | Performance of our agreement with you. |
| Personalize the Service | Remember preferences, rank relevant information and adapt suggestions to your activity. | Performance of our agreement; legitimate interests in making the Service useful; consent where required. |
| Communicate | Send service, security, account, billing and support communications, and optional marketing where offered. | Performance of our agreement; legitimate interests; legal obligations; consent for marketing where required. |
| Protect and improve | Monitor reliability, debug errors, prevent fraud or abuse, audit actions and develop or evaluate features. | Legitimate interests in running a secure and effective service; legal obligations; consent where required. |
| Comply with law | Respond to valid legal requests, enforce rights, resolve disputes and keep records required by law. | Legal obligation and legitimate interests in protecting Tjati, members and others. |
Where we rely on legitimate interests, we consider the impact on your rights and use the information only when those interests are not overridden by your rights. Where we rely on consent, you may withdraw it at any time. Withdrawal does not affect processing that was lawful before it was withdrawn.
AI processing and automated features
Tjati uses artificial-intelligence and machine-learning systems to understand requests, produce responses, extract or retrieve relevant information, personalize suggestions and help create or update items. Depending on the feature and current configuration, providers may include OpenAI, Anthropic, Google, xAI, Groq and Cohere. Model and provider selection can change as the Service evolves.
Using an AI feature can transfer personal data and Your Content to a third-party AI service. We use AI inputs and outputs to provide the feature, maintain context, enforce safety, investigate failures and improve the operation of Tjati. Where law requires consent for a transfer or purpose, that processing is subject to the required consent. We do not use connected Google account data for advertising.
Provider retention and use depend on the provider, API product, contractual terms and configuration used for a request. We evaluate and configure providers for business or API use where available, but this policy is not a promise that every provider uses identical retention controls. Do not enter information you are not authorized to share.
AI output can be incomplete, inaccurate or similar to output provided to others. Review important output and proposed actions before relying on them. When Tjati asks you to confirm a change, your confirmation authorizes that action. Tjati is not designed to make legal, medical, financial, employment, emergency or other high-impact decisions for you.
AI memories and personalization
Tjati may derive and store preferences, summaries or observations from your activity to preserve useful context between sessions. You can correct source content, remove relevant content or ask support about available memory controls. Removing a memory may not change prior outputs or records that must be retained for security or legal reasons.
Shared conversations
If you create a share link for a conversation, anyone who obtains the link may be able to view the shared content until the link is revoked, expires or is otherwise disabled. Check the conversation and attachments before sharing, do not include information you lack permission to disclose, and revoke the link when it is no longer needed.
Voice, audio, files and photos
Voice and transcription
When you activate a voice feature, Tjati processes microphone audio to transcribe your request and to speak its reply back to you. Audio is buffered only for the duration of the request; Tjati does not keep a stored recording of your voice. Transcription is provided by Groq, with Deepgram used for streaming transcription in some languages. The spoken reply is synthesized by Cartesia; if Cartesia is unavailable, the reply is spoken on your device instead, using your iPhone's own speech synthesis, and no audio or text leaves your device for that fallback. A transcript and any resulting conversation or actions may be stored as part of your content. Provider configuration can change as the Service evolves.
Documents and retrieval
Files you upload may be stored, scanned for technical processing, converted to text, divided into chunks and represented as numerical embeddings so Tjati can retrieve relevant passages. Extracted text may be sent to an embedding or model provider, which can include Google or Cohere depending on deployment. Deleting a file or account starts the deletion process described below, subject to technical, security and legal retention.
Photos and saved media
If you ask Tjati to save generated media, the app may request permission to add the item to your photo library. The permission shown by your operating system controls that device action. Tjati does not infer broader photo-library access from a write-only permission.
Mail, calendar and other integrations
You choose whether to connect an external account. Tjati requests the OAuth permissions needed for the features you enable, and the provider shows them before you authorize access. Today those features are read-and-draft only: Tjati reads your mail and your calendar and can prepare a mail draft for you. It does not send mail, and it does not create, change or delete calendar events.
- What you can connect today. Gmail and Google Calendar. Outlook Mail and Microsoft Calendar are coming soon; until they are available, Tjati holds no Microsoft account credentials and retrieves no Microsoft mail or calendar data.
- The permissions we request. Google shows these five and no others:
calendar.calendarlist.readonlyandcalendar.events.readonly, to read your calendars and their events;gmail.readonly, to read your mail;gmail.compose, to prepare a draft; andgmail.settings.basic, which we use for one narrow check — confirming that a From address you ask for is a verified send-as identity on your own account before a draft is created. - Tokens and identity. We store connected-account identifiers, granted scopes and OAuth credentials. OAuth tokens are encrypted at rest.
- Mail. Tjati may retrieve message headers, participants, labels, snippets, bodies and attachments needed for a requested feature. Mail bodies used for on-demand tools may be held in a short-lived cache generally measured in minutes; selected metadata and results may persist until no longer needed or the integration is purged. Tjati can prepare a draft reply for you; sending it is your action, taken by you in your own mail client.
- Calendar. Tjati may retrieve calendars, events, participants, timing, descriptions and related metadata so it can summarize your day and plan around what is already booked. Calendar access is read-only: Tjati does not add, move or remove anything in a connected calendar.
- Disconnecting. Disconnecting removes or invalidates Tjati's locally held connection credentials and stops new access. You may also need to revoke Tjati in the provider's account settings; provider-side revocation can take time to propagate.
Google user data
Tjati's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including its Limited Use requirements. Google user data is used to provide or improve user-facing features that are prominent in Tjati. We do not use Google user data for advertising, and human access is limited to circumstances permitted by that policy, such as with your affirmative agreement, for security, to comply with law, or when data is aggregated and anonymized for internal operations.
Google and any other service you later connect remain responsible for their own privacy practices. Their terms govern your account with them.
When we disclose information
We do not disclose personal information simply because it has commercial value. We disclose it only as needed for the following purposes:
- Identity and account services, including Clerk, to authenticate accounts and manage identity information.
- Hosting, databases and delivery, including infrastructure such as Neon/Postgres, Upstash (caching, rate limiting, background job queues and other short-lived operational data) and Cloudflare (including R2 storage for uploaded documents), to store and transmit Service data.
- AI, transcription, embedding and observability providers, such as the providers described in the AI and voice sections, to process a request or monitor system quality.
- Analytics and diagnostics, including PostHog hosted in the European Union for product analytics and Sentry for crash and performance diagnostics. These tools may receive product events, device or diagnostic data and a member or account identifier. Tjati configures Sentry not to send name or email as default personally identifying information, though diagnostic events may contain device, network and contextual data. Neither tool offers us a way to selectively delete one member's history on request — see Account deletion below for what that means for you.
- Subscription and app services, including RevenueCat and Apple, to manage entitlements, and Expo push notification services, to deliver notifications.
- Email delivery, including Resend. Automated email is not active in this release — this processor is disclosed for completeness and receives no message content from Tjati today.
- The launch waitlist, which keeps the address you enter on tjati.com in Cloudflare D1, a database restricted to the European Union, and uses Cloudflare Turnstile to keep automated submissions out. Turnstile examines the browser making the submission to decide whether it is a person; it is not an advertising or cross-site tracking tool, and Tjati stores nothing it returns.
- Connected services, when you direct Tjati to read from an account you connect, or to prepare a draft in it.
- Other people you choose, when you share a link, invite a collaborator or otherwise direct Tjati to disclose content.
- Professional advisers and authorities, when reasonably necessary to obtain advice, comply with law, respond to valid process, protect safety, investigate abuse or enforce our rights.
- Business transfers, as part of a merger, financing, acquisition, reorganization, bankruptcy or sale of assets, subject to appropriate confidentiality and notice where required.
Providers may process information only for the services they provide to us, subject to their contracts and applicable law. A provider may also act as an independent controller for limited activities, such as an app marketplace's transaction administration, under its own policy.
Sale, advertising and tracking
Tjati does not sell personal information for money or other valuable consideration, and does not share personal information for cross-context behavioral advertising as those terms are defined by applicable United States privacy laws. We do not use an advertising SDK to serve targeted ads in the Tjati app.
Disclosing information to the service providers described above so they can operate the Service is not a sale or targeted-advertising disclosure. Product analytics can measure how Tjati is used, but it is not used by Tjati to follow you across unrelated businesses for advertising. If these practices change, we will update this policy and provide any legally required opt-out controls before the change applies.
Subscriptions and payments
Apple processes purchases made through the App Store. Tjati and RevenueCat receive transaction, receipt and entitlement information needed to activate and maintain your subscription, but not the full payment credentials submitted to the store. Apple's privacy policy governs its payment processing.
Deleting your Tjati account does not automatically cancel an App Store subscription. Cancel through the subscription controls in your Apple account. Support can help you locate the relevant controls but cannot override the store's billing or refund decision.
Retention
We keep each category of information only for as long as reasonably necessary for the purposes described in this policy. The period varies based on the feature and context. We consider:
- whether your account or a requested feature is active and the information is needed to provide it;
- the amount, nature and sensitivity of the information and the risk of harm from unauthorized use or disclosure;
- security, fraud-prevention, audit, dispute-resolution and service-recovery needs;
- technical deletion cycles, including caches, logs and encrypted backups; and
- tax, accounting, consumer-protection and other legal obligations.
Short-lived buffers and caches are generally cleared automatically when their operational purpose ends. Account and user content can be kept while your account is active. Subscription and transaction records, security logs, support records and evidence needed to establish or defend claims may be kept longer where necessary. Backups are isolated from routine use and age out under backup cycles unless preservation is legally required.
When information is no longer needed, we delete it, de-identify it or isolate it from further use until deletion is possible.
The launch waitlist
Until Tjati is generally available, tjati.com offers a launch waitlist. We keep the address you enter until Tjati opens and you have been told, or until you ask us to remove it, whichever comes first. It is held on its own, in a Cloudflare D1 database restricted to the European Union, separate from any Tjati account. No IP address, country, device details, browser details or referring page is stored alongside it, and it is not added to a marketing profile.
Account deletion
You can start account deletion from the privacy controls in the Tjati app or request help at [email protected]. We may ask you to verify control of the account before acting. Deletion is intended to be irreversible, so export content you want to keep first; the app currently supports JSON and Markdown exports.
What a deletion request does
A verified deletion request closes your Tjati product account and removes your content and account data from our productivity, chat, document and AI systems, following an ordered process across every system that holds it. Information may remain briefly in caches, security records and encrypted backups while that process runs, and we may retain limited information where necessary to comply with law, prevent fraud, resolve disputes or enforce agreements. Data another person received through a share link, sent message or external integration may remain under that person's or provider's control.
If you used Sign in with Apple or another identity provider, you may also revoke Tjati from that provider's account settings. If an automated deletion does not complete or you need assistance, contact support and we will investigate the affected systems.
Security
We use administrative, technical and organizational measures designed to protect personal information. These include transport encryption, access controls, environment separation, encrypted storage for OAuth credentials, logging and monitoring intended to detect failures or abuse, and controls applied by our hosting and service providers. Our database, cache and document-storage providers encrypt data at rest by default as part of their own infrastructure.
No service can guarantee perfect security. Tjati is not represented as end-to-end encrypted, and information must be readable by our systems and selected providers when necessary to deliver features. Protect your account and device, use strong authentication, review share links, and tell us promptly at [email protected] if you believe your account or information is at risk.
Your rights and choices
Depending on where you live, you may have the right to request access to, correction of, deletion of or a portable copy of personal information; object to or restrict certain processing; withdraw consent; and appeal a refusal. You may also have the right not to receive discriminatory treatment for exercising a privacy right.
- Access and export. Use available app controls to export content in JSON or Markdown, or contact support for another privacy request.
- Correction. Update editable profile and content fields in the app. Contact support if a field cannot be corrected there.
- Integrations. Disconnect an integration in Tjati and revoke it through the external provider when appropriate.
- Device permissions. Change microphone, photo-save and notification permissions in your operating-system settings.
- Communications. Use the unsubscribe control in optional marketing messages. We may still send account, security, billing and service notices.
- Deletion. Follow the process in the Account deletion section above.
- Launch waitlist. Email support to be removed from the waitlist. The Retention section above describes what removal does and the recovery window that applies to it.
European Economic Area, United Kingdom and Switzerland
You may complain to your local data-protection authority and may have the rights described above under applicable data-protection law. We encourage you to contact us first so we can try to resolve the concern.
United States state privacy rights
Residents of states with applicable comprehensive privacy laws may request the rights provided by those laws. Tjati does not sell personal information or share it for cross-context behavioral advertising. We do not use or disclose sensitive personal information to infer characteristics for unrelated purposes. An authorized agent may submit a request where permitted; we may verify the agent's authority and your identity.
Submit a request to [email protected]. Describe the right and account involved. We will verify, respond and provide an appeal route as required by applicable law. We may deny or limit a request where an exemption applies and will explain when legally required.
International transfers
Tjati and its providers may process information in countries other than the one where you live. Those countries may have different data-protection laws. Where required, we rely on safeguards such as an adequacy decision, approved standard contractual clauses or another lawful transfer mechanism, and apply supplementary measures appropriate to the transfer.
You may contact us for more information about the safeguard relevant to your information, subject to confidentiality and legal restrictions.
Children
Tjati is not directed to children under 13, and we do not knowingly collect personal information from a child under 13. You must also meet any higher minimum age required in your country to consent to online services; where local law permits a younger person to use the Service only with parental authorization, that authorization is required.
If you believe a child has provided personal information in violation of this section, contact [email protected]. We will investigate and take appropriate steps.
Changes to this policy
We may update this policy as Tjati, our providers or legal requirements change. The “Last updated” date shows when this version was revised. If a change materially affects your rights or how we use personal information, we will provide notice through the Service, by email or by another legally required method before the change takes effect where required.
Your continued use after an update takes effect means the updated policy applies to later processing. Where consent is required for a new purpose, we will request it rather than rely only on continued use.
Contact us
Questions, privacy requests and complaints can be sent to Tjati using the address below. Include enough information for us to identify the relevant account and request, but do not send passwords, full payment-card details or highly sensitive content by email.
Tjati privacy and support
[email protected]