Privacy Policy
Last updated: April 16, 2026
sidanclaw ("we", "us", "our") is operated by Sidan Lab. This policy explains what data we collect when you use the sidanclaw personal AI assistant at sidan.ai and through connected messaging platforms, how we use it, and your rights.
1. What we collect
Account information
sidanclaw uses Google OAuth 2.0 for authentication. When you sign in, we receive your name, email address, and profile picture from your Google account. We use this solely to create and identify your account. We do not receive or store your Google password.
Conversations and memory
sidanclaw stores your conversation messages and the memories it extracts from them. Memories are structured summaries of your preferences, facts, and context — they are what allow the assistant to improve over time. Conversations and memories are associated with your account and are not shared with other users.
Connected services (optional)
If you connect third-party services such as Google Calendar, Gmail, Notion, or Slack, we access only the data required to perform the actions you request. Specifically:
- Google Calendar: read and manage calendar events and tasks on your behalf.
- Gmail: compose and send emails on your behalf. We do not read or access your inbox.
- Google Docs, Sheets & Slides: read and edit documents, spreadsheets, and presentations that you share with the assistant via link. We do not browse or search your Google Drive.
- Notion: read and write pages in workspaces you authorize.
- Slack: read and send messages in workspaces you authorize.
We do not bulk-download, index, or train on data from connected services. Responses from connected services may be briefly cached (up to 24 hours) to reduce redundant API calls and improve performance; these caches expire automatically. Access tokens are stored encrypted and can be revoked at any time from your settings.
Analytics
We collect anonymous, metadata-only analytics events (e.g., feature usage counts, error rates, response latency) to improve the service. Analytics events do not contain message content or personal data.
2. How we use your data
- To provide and improve the sidanclaw assistant service.
- To maintain your memory across conversations so the assistant becomes more helpful over time.
- To execute actions you request through connected services (sending emails, creating calendar events, etc.).
- To diagnose errors and improve reliability using anonymous analytics.
We do not sell your data. We do not use your conversations or memories to train AI models.
3. Data storage and security
Your data is stored in Google Cloud Platform (GCP) infrastructure in the Asia-East region. Databases are encrypted at rest and in transit. Access to production systems is restricted to authorized personnel with multi-factor authentication.
We retain your data for as long as your account is active. When you delete your account, all associated data (conversations, memories, connector tokens) is permanently deleted within 30 days.
4. Data sharing
We share data with third parties only in the following cases:
- AI model provider:your conversation messages are sent to Google's Gemini API to generate responses. Google processes this data under its API terms and does not retain it for training.
- Connected services: when you use a connector, relevant data is sent to that service to execute your request (e.g., sending an email via Gmail).
- Legal requirements: we may disclose data if required by law or to protect our rights.
5. Google API Services User Data Policy
sidanclaw's use and transfer of information received from Google APIs to any other app adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Specifically, sidanclaw:
- Only uses Google user data to provide and improve user-facing features visible to you.
- Does not transfer Google user data to third parties except as necessary to provide the service, with your explicit consent, or for security/legal purposes.
- Does not use Google user data for serving advertisements.
- Does not allow humans to read your Google user data unless you provide affirmative consent, it is necessary for security purposes (e.g., investigating abuse), or it is required by law.
6. Your rights
Delete your memories
You can delete individual memories or all memories at any time from Settings > Privacy in the app.
Delete your account
You can delete your entire account and all associated data (conversations, memories, connected service tokens) from Settings > Privacy. Deletion is permanent and cannot be undone.
Revoke connected services
You can disconnect any connected service at any time from Settings > Connectors. This revokes our access and deletes the stored access token.
Export your data
Contact us at contact@sidan.io to request an export of your data.
7. Cookies
We use essential cookies only: authentication tokens and session identifiers. We do not use third-party tracking cookies or advertising pixels.
8. Children
sidanclaw is not intended for children under 13. We do not knowingly collect data from children.
9. Changes to this policy
We may update this policy from time to time. Material changes will be communicated through the app. The "last updated" date at the top of this page reflects the most recent revision.
10. Contact
For questions about this policy or your data, contact us at contact@sidan.io. See also our Terms of Service.