Skip to legal content
Tjati
AI agentsAbout
Back home
Back to TjatiPrivacy at Tjati

Privacy Policy

This policy explains what information Tjati handles, why we handle it, which service providers may receive it, and the choices available to you. It applies to the Tjati apps, websites and related services.

Effective July 15, 2026Last updated July 15, 2026
Your content

You keep ownership of the tasks, notes, messages, files and other content you provide.

No ad business

Tjati does not sell personal information or use it for cross-context behavioral advertising.

Your controls

Export, disconnect integrations, adjust permissions, or request account deletion from the app or support.

On this page

  1. 01Scope and who is responsible
  2. 02Information we collect
  3. 03Where information comes from
  4. 04How and why we use information
  5. 05AI processing and automated features
  6. 06Voice, audio, files and photos
  7. 07Mail, calendar and other integrations
  8. 08When we disclose information
  9. 09Sale, advertising and tracking
  10. 10Subscriptions and payments
  11. 11Retention
  12. 12Account deletion
  13. 13Security
  14. 14Your rights and choices
  15. 15International transfers
  16. 16Children
  17. 17Changes to this policy
  18. 18Contact us
On this page
  1. 01Scope and who is responsible
  2. 02Information we collect
  3. 03Where information comes from
  4. 04How and why we use information
  5. 05AI processing and automated features
  6. 06Voice, audio, files and photos
  7. 07Mail, calendar and other integrations
  8. 08When we disclose information
  9. 09Sale, advertising and tracking
  10. 10Subscriptions and payments
  11. 11Retention
  12. 12Account deletion
  13. 13Security
  14. 14Your rights and choices
  15. 15International transfers
  16. 16Children
  17. 17Changes to this policy
  18. 18Contact us

The short version

Tjati needs account information and the content you choose to provide to organize your life and deliver requested features. AI, voice, mail and calendar features can send relevant content to specialized providers when you use them. We use vendors to run the Service, not to build advertising profiles about you. The detailed terms below control if this summary and the rest of the policy conflict.

01

Scope and who is responsible

This Privacy Policy applies when you use Tjati's mobile applications, website, support channels and related products or services that link to it (together, the “Service”). It does not govern a third party's own service, even when you connect that service to Tjati.

Tjati (“Tjati,” “we,” “us” or “our”) operates the Service and is the controller of personal information covered by this policy unless a different notice says otherwise. You can contact us at [email protected].

If you use Tjati through an organization that manages your account, that organization may control some account settings or content and may be a separate controller. Ask the organization about its practices.


02

Information we collect

The information Tjati handles depends on the features, integrations and permissions you choose. We may process the following categories:

Categories of information Tjati handles
CategoryExamplesPrimary reason
Account and profileAccount and authentication identifiers, email, username, full name, avatar, profile details, preferences and account activity.Create and secure your account, sync your experience, communicate with you and provide support.
Productivity contentAreas, goals, projects, tasks, habits, reminders, notes, focus or flow sessions, schedules and related metadata you add to Tjati.Store, organize, sync and present the content and operate the features you request.
AI and conversation contentPrompts, chats, attachments, model and usage metadata, generated responses, action confirmations, memories, preferences and observations derived to personalize the Service.Generate requested responses, remember relevant context, suggest or perform confirmed actions, maintain safety and troubleshoot the feature.
Connected-service dataWith your authorization, mail and calendar content and metadata, connected-account identity, OAuth tokens, requested scopes and synchronization state.Provide the integration you enable, such as finding mail, preparing a draft reply, creating tasks inside Tjati from a message, and reading calendar events.
Voice, files and mediaAudio or transcripts submitted to voice features; documents, extracted text, chunks or embeddings; files and photos you choose to upload or save.Transcribe speech, understand requests, retrieve relevant document context, generate outputs and save content at your direction.
Device, usage and diagnosticsApp version, device and operating-system details, IP address, timestamps, product interactions, performance measurements, crash information, push notification token, app-install or device-derived identifiers, and an account or member identifier.Operate, debug, secure and improve the Service, understand feature reliability and prevent abuse.
Subscription informationStore transaction or entitlement identifiers, product, plan, renewal and subscription status. The app store processes the payment credentials.Unlock paid features, restore purchases, maintain entitlements and support billing questions.
CommunicationsSupport messages, feedback, survey responses and information you include when contacting us.Answer requests, resolve problems, learn from feedback and maintain a record of the communication.
Launch waitlistThe email address you enter in the waitlist form on tjati.com, the date and time you entered it, and which call-to-action on the page you used. Nothing else about the visit is kept with it.Tell you, once, that Tjati is available.

Some content may reveal sensitive information because productivity tools can reflect health, finances, relationships, beliefs, precise plans or other private matters. Tjati does not require you to provide sensitive information. Please only add content you are comfortable processing through the features you select.

We do not receive your full payment-card number from Apple or another app marketplace. We may receive subscription, transaction, product, storefront and entitlement information needed to provide and support the purchase.


03

Where information comes from

  • Directly from you, when you create an account, add content, speak to Tjati, upload a file, configure a preference, contact support or otherwise use the Service.
  • From your device, through operating-system permissions, app events, local settings, logs and diagnostics.
  • From services you connect, such as Google mail and calendar, only after you authorize the connection and requested scopes.
  • From service providers and app marketplaces, such as an identity provider, subscription platform, analytics or crash-reporting service.
  • From inferences generated for you, such as relevant memories, preferences, relationships between your items or suggested actions based on your content and use.

Operating-system permissions control access to features such as the microphone, notifications and saving generated media. You can change these permissions in your device settings, though disabling one may stop the corresponding feature.


04

How and why we use information

We use information only when we have a valid reason. The legal basis depends on where you live and the particular context.

Purposes and lawful bases
PurposeWhat this coversLegal basis where applicable
Provide the ServiceOperate accounts, sync content, deliver requested AI, voice and integration features, and support subscriptions.Performance of our agreement with you.
Personalize the ServiceRemember preferences, rank relevant information and adapt suggestions to your activity.Performance of our agreement; legitimate interests in making the Service useful; consent where required.
CommunicateSend service, security, account, billing and support communications, and optional marketing where offered.Performance of our agreement; legitimate interests; legal obligations; consent for marketing where required.
Protect and improveMonitor reliability, debug errors, prevent fraud or abuse, audit actions and develop or evaluate features.Legitimate interests in running a secure and effective service; legal obligations; consent where required.
Comply with lawRespond to valid legal requests, enforce rights, resolve disputes and keep records required by law.Legal obligation and legitimate interests in protecting Tjati, members and others.

Where we rely on legitimate interests, we consider the impact on your rights and use the information only when those interests are not overridden by your rights. Where we rely on consent, you may withdraw it at any time. Withdrawal does not affect processing that was lawful before it was withdrawn.


05

AI processing and automated features

Tjati uses artificial-intelligence and machine-learning systems to understand requests, produce responses, extract or retrieve relevant information, personalize suggestions and help create or update items. Depending on the feature and current configuration, providers may include OpenAI, Anthropic, Google, xAI, Groq and Cohere. Model and provider selection can change as the Service evolves.

What is sent to AI providers

When you use an AI feature, Tjati may send the prompt and the minimum context reasonably needed to answer it. That context can include selected tasks, notes, memories, connected-service content, document text, attachments, tool results, conversation history or identifiers used to trace the request. Tjati may use an observability provider such as Langfuse to record model traces and help evaluate reliability, depending on the deployment configuration.

Using an AI feature can transfer personal data and Your Content to a third-party AI service. We use AI inputs and outputs to provide the feature, maintain context, enforce safety, investigate failures and improve the operation of Tjati. Where law requires consent for a transfer or purpose, that processing is subject to the required consent. We do not use connected Google account data for advertising.

Provider retention and use depend on the provider, API product, contractual terms and configuration used for a request. We evaluate and configure providers for business or API use where available, but this policy is not a promise that every provider uses identical retention controls. Do not enter information you are not authorized to share.

AI output can be incomplete, inaccurate or similar to output provided to others. Review important output and proposed actions before relying on them. When Tjati asks you to confirm a change, your confirmation authorizes that action. Tjati is not designed to make legal, medical, financial, employment, emergency or other high-impact decisions for you.

AI memories and personalization

Tjati may derive and store preferences, summaries or observations from your activity to preserve useful context between sessions. You can correct source content, remove relevant content or ask support about available memory controls. Removing a memory may not change prior outputs or records that must be retained for security or legal reasons.

Shared conversations

If you create a share link for a conversation, anyone who obtains the link may be able to view the shared content until the link is revoked, expires or is otherwise disabled. Check the conversation and attachments before sharing, do not include information you lack permission to disclose, and revoke the link when it is no longer needed.


06

Voice, audio, files and photos

Voice and transcription

When you activate a voice feature, Tjati processes microphone audio to transcribe your request and to speak its reply back to you. Audio is buffered only for the duration of the request; Tjati does not keep a stored recording of your voice. Transcription is provided by Groq, with Deepgram used for streaming transcription in some languages. The spoken reply is synthesized by Cartesia; if Cartesia is unavailable, the reply is spoken on your device instead, using your iPhone's own speech synthesis, and no audio or text leaves your device for that fallback. A transcript and any resulting conversation or actions may be stored as part of your content. Provider configuration can change as the Service evolves.

Documents and retrieval

Files you upload may be stored, scanned for technical processing, converted to text, divided into chunks and represented as numerical embeddings so Tjati can retrieve relevant passages. Extracted text may be sent to an embedding or model provider, which can include Google or Cohere depending on deployment. Deleting a file or account starts the deletion process described below, subject to technical, security and legal retention.

Photos and saved media

If you ask Tjati to save generated media, the app may request permission to add the item to your photo library. The permission shown by your operating system controls that device action. Tjati does not infer broader photo-library access from a write-only permission.


07

Mail, calendar and other integrations

You choose whether to connect an external account. Tjati requests the OAuth permissions needed for the features you enable, and the provider shows them before you authorize access. Today those features are read-and-draft only: Tjati reads your mail and your calendar and can prepare a mail draft for you. It does not send mail, and it does not create, change or delete calendar events.

  • What you can connect today. Gmail and Google Calendar. Outlook Mail and Microsoft Calendar are coming soon; until they are available, Tjati holds no Microsoft account credentials and retrieves no Microsoft mail or calendar data.
  • The permissions we request. Google shows these five and no others: calendar.calendarlist.readonly and calendar.events.readonly, to read your calendars and their events; gmail.readonly, to read your mail; gmail.compose, to prepare a draft; and gmail.settings.basic, which we use for one narrow check — confirming that a From address you ask for is a verified send-as identity on your own account before a draft is created.
  • Tokens and identity. We store connected-account identifiers, granted scopes and OAuth credentials. OAuth tokens are encrypted at rest.
  • Mail. Tjati may retrieve message headers, participants, labels, snippets, bodies and attachments needed for a requested feature. Mail bodies used for on-demand tools may be held in a short-lived cache generally measured in minutes; selected metadata and results may persist until no longer needed or the integration is purged. Tjati can prepare a draft reply for you; sending it is your action, taken by you in your own mail client.
  • Calendar. Tjati may retrieve calendars, events, participants, timing, descriptions and related metadata so it can summarize your day and plan around what is already booked. Calendar access is read-only: Tjati does not add, move or remove anything in a connected calendar.
  • Disconnecting. Disconnecting removes or invalidates Tjati's locally held connection credentials and stops new access. You may also need to revoke Tjati in the provider's account settings; provider-side revocation can take time to propagate.

Google user data

Tjati's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including its Limited Use requirements. Google user data is used to provide or improve user-facing features that are prominent in Tjati. We do not use Google user data for advertising, and human access is limited to circumstances permitted by that policy, such as with your affirmative agreement, for security, to comply with law, or when data is aggregated and anonymized for internal operations.

Google and any other service you later connect remain responsible for their own privacy practices. Their terms govern your account with them.


08

When we disclose information

We do not disclose personal information simply because it has commercial value. We disclose it only as needed for the following purposes:

  • Identity and account services, including Clerk, to authenticate accounts and manage identity information.
  • Hosting, databases and delivery, including infrastructure such as Neon/Postgres, Upstash (caching, rate limiting, background job queues and other short-lived operational data) and Cloudflare (including R2 storage for uploaded documents), to store and transmit Service data.
  • AI, transcription, embedding and observability providers, such as the providers described in the AI and voice sections, to process a request or monitor system quality.
  • Analytics and diagnostics, including PostHog hosted in the European Union for product analytics and Sentry for crash and performance diagnostics. These tools may receive product events, device or diagnostic data and a member or account identifier. Tjati configures Sentry not to send name or email as default personally identifying information, though diagnostic events may contain device, network and contextual data. Neither tool offers us a way to selectively delete one member's history on request — see Account deletion below for what that means for you.
  • Subscription and app services, including RevenueCat and Apple, to manage entitlements, and Expo push notification services, to deliver notifications.
  • Email delivery, including Resend. Automated email is not active in this release — this processor is disclosed for completeness and receives no message content from Tjati today.
  • The launch waitlist, which keeps the address you enter on tjati.com in Cloudflare D1, a database restricted to the European Union, and uses Cloudflare Turnstile to keep automated submissions out. Turnstile examines the browser making the submission to decide whether it is a person; it is not an advertising or cross-site tracking tool, and Tjati stores nothing it returns.
  • Connected services, when you direct Tjati to read from an account you connect, or to prepare a draft in it.
  • Other people you choose, when you share a link, invite a collaborator or otherwise direct Tjati to disclose content.
  • Professional advisers and authorities, when reasonably necessary to obtain advice, comply with law, respond to valid process, protect safety, investigate abuse or enforce our rights.
  • Business transfers, as part of a merger, financing, acquisition, reorganization, bankruptcy or sale of assets, subject to appropriate confidentiality and notice where required.

Providers may process information only for the services they provide to us, subject to their contracts and applicable law. A provider may also act as an independent controller for limited activities, such as an app marketplace's transaction administration, under its own policy.


09

Sale, advertising and tracking

Tjati does not sell personal information for money or other valuable consideration, and does not share personal information for cross-context behavioral advertising as those terms are defined by applicable United States privacy laws. We do not use an advertising SDK to serve targeted ads in the Tjati app.

Disclosing information to the service providers described above so they can operate the Service is not a sale or targeted-advertising disclosure. Product analytics can measure how Tjati is used, but it is not used by Tjati to follow you across unrelated businesses for advertising. If these practices change, we will update this policy and provide any legally required opt-out controls before the change applies.


10

Subscriptions and payments

Apple processes purchases made through the App Store. Tjati and RevenueCat receive transaction, receipt and entitlement information needed to activate and maintain your subscription, but not the full payment credentials submitted to the store. Apple's privacy policy governs its payment processing.

Deleting your Tjati account does not automatically cancel an App Store subscription. Cancel through the subscription controls in your Apple account. Support can help you locate the relevant controls but cannot override the store's billing or refund decision.


11

Retention

We keep each category of information only for as long as reasonably necessary for the purposes described in this policy. The period varies based on the feature and context. We consider:

  • whether your account or a requested feature is active and the information is needed to provide it;
  • the amount, nature and sensitivity of the information and the risk of harm from unauthorized use or disclosure;
  • security, fraud-prevention, audit, dispute-resolution and service-recovery needs;
  • technical deletion cycles, including caches, logs and encrypted backups; and
  • tax, accounting, consumer-protection and other legal obligations.

Short-lived buffers and caches are generally cleared automatically when their operational purpose ends. Account and user content can be kept while your account is active. Subscription and transaction records, security logs, support records and evidence needed to establish or defend claims may be kept longer where necessary. Backups are isolated from routine use and age out under backup cycles unless preservation is legally required.

When information is no longer needed, we delete it, de-identify it or isolate it from further use until deletion is possible.

The launch waitlist

Until Tjati is generally available, tjati.com offers a launch waitlist. We keep the address you enter until Tjati opens and you have been told, or until you ask us to remove it, whichever comes first. It is held on its own, in a Cloudflare D1 database restricted to the European Union, separate from any Tjati account. No IP address, country, device details, browser details or referring page is stored alongside it, and it is not added to a marketing profile.

Removing a waitlist address is not instant

Write to [email protected] and we delete the row outright — there is no second copy, no archive and no soft delete. One limitation deserves to be named rather than glossed over: the database keeps a rolling point-in-time recovery window, which Cloudflare calls Time Travel, and a restore inside that window would return the database to a moment before your removal. Until the window has passed, the deletion is real but not yet irreversible. We do not use a restore to bring a removed address back, and we will tell you the current window length if you ask.


12

Account deletion

You can start account deletion from the privacy controls in the Tjati app or request help at [email protected]. We may ask you to verify control of the account before acting. Deletion is intended to be irreversible, so export content you want to keep first; the app currently supports JSON and Markdown exports.

What a deletion request does

A verified deletion request closes your Tjati product account and removes your content and account data from our productivity, chat, document and AI systems, following an ordered process across every system that holds it. Information may remain briefly in caches, security records and encrypted backups while that process runs, and we may retain limited information where necessary to comply with law, prevent fraud, resolve disputes or enforce agreements. Data another person received through a share link, sent message or external integration may remain under that person's or provider's control.

Analytics history is a known, named exception

Deletion does not currently remove your history from PostHog, our product-analytics provider — it has no mechanism we can call to delete one member's analytics history, so it survives indefinitely. Your account identifier attached to Sentry, our crash-diagnostics provider, is not deleted immediately either; it expires on Sentry's own retention schedule, which we have set to as short as the plan allows (currently up to about 90 days). Neither exception is a promise we are still working to keep quietly — they are limitations of those providers' own tools, and we record them on every deletion so the gap is never silent.

Subscription cancellation is separate

Deleting Tjati does not cancel an Apple App Store subscription. Cancel the subscription in your Apple account to stop future renewal. Removing the app from your device also does not cancel a subscription.

If you used Sign in with Apple or another identity provider, you may also revoke Tjati from that provider's account settings. If an automated deletion does not complete or you need assistance, contact support and we will investigate the affected systems.


13

Security

We use administrative, technical and organizational measures designed to protect personal information. These include transport encryption, access controls, environment separation, encrypted storage for OAuth credentials, logging and monitoring intended to detect failures or abuse, and controls applied by our hosting and service providers. Our database, cache and document-storage providers encrypt data at rest by default as part of their own infrastructure.

No service can guarantee perfect security. Tjati is not represented as end-to-end encrypted, and information must be readable by our systems and selected providers when necessary to deliver features. Protect your account and device, use strong authentication, review share links, and tell us promptly at [email protected] if you believe your account or information is at risk.


14

Your rights and choices

Depending on where you live, you may have the right to request access to, correction of, deletion of or a portable copy of personal information; object to or restrict certain processing; withdraw consent; and appeal a refusal. You may also have the right not to receive discriminatory treatment for exercising a privacy right.

  • Access and export. Use available app controls to export content in JSON or Markdown, or contact support for another privacy request.
  • Correction. Update editable profile and content fields in the app. Contact support if a field cannot be corrected there.
  • Integrations. Disconnect an integration in Tjati and revoke it through the external provider when appropriate.
  • Device permissions. Change microphone, photo-save and notification permissions in your operating-system settings.
  • Communications. Use the unsubscribe control in optional marketing messages. We may still send account, security, billing and service notices.
  • Deletion. Follow the process in the Account deletion section above.
  • Launch waitlist. Email support to be removed from the waitlist. The Retention section above describes what removal does and the recovery window that applies to it.

European Economic Area, United Kingdom and Switzerland

You may complain to your local data-protection authority and may have the rights described above under applicable data-protection law. We encourage you to contact us first so we can try to resolve the concern.

United States state privacy rights

Residents of states with applicable comprehensive privacy laws may request the rights provided by those laws. Tjati does not sell personal information or share it for cross-context behavioral advertising. We do not use or disclose sensitive personal information to infer characteristics for unrelated purposes. An authorized agent may submit a request where permitted; we may verify the agent's authority and your identity.

Submit a request to [email protected]. Describe the right and account involved. We will verify, respond and provide an appeal route as required by applicable law. We may deny or limit a request where an exemption applies and will explain when legally required.


15

International transfers

Tjati and its providers may process information in countries other than the one where you live. Those countries may have different data-protection laws. Where required, we rely on safeguards such as an adequacy decision, approved standard contractual clauses or another lawful transfer mechanism, and apply supplementary measures appropriate to the transfer.

You may contact us for more information about the safeguard relevant to your information, subject to confidentiality and legal restrictions.


16

Children

Tjati is not directed to children under 13, and we do not knowingly collect personal information from a child under 13. You must also meet any higher minimum age required in your country to consent to online services; where local law permits a younger person to use the Service only with parental authorization, that authorization is required.

If you believe a child has provided personal information in violation of this section, contact [email protected]. We will investigate and take appropriate steps.


17

Changes to this policy

We may update this policy as Tjati, our providers or legal requirements change. The “Last updated” date shows when this version was revised. If a change materially affects your rights or how we use personal information, we will provide notice through the Service, by email or by another legally required method before the change takes effect where required.

Your continued use after an update takes effect means the updated policy applies to later processing. Where consent is required for a new purpose, we will request it rather than rely only on continued use.


18

Contact us

Questions, privacy requests and complaints can be sent to Tjati using the address below. Include enough information for us to identify the relevant account and request, but do not send passwords, full payment-card details or highly sensitive content by email.

Tjati privacy and support

[email protected]
Tjati

Run your life by talking to it.

© 2026 Tjati

Product

FeaturesHow it worksAI agents

Company

AboutManifestoSupport

Legal

PrivacyTerms