Privacy Policy

SceneTasks stores your tasks so you can use SceneTasks. That is the whole business model, and this page is the long version of that sentence.

Last updated: July 19, 2026. Applies to scenetasks.com and the SceneTasks app.

The quick version

The rest of this page is the detail behind those five sentences.

What we collect

How we protect it

Your data lives on servers we operate in the United States, encrypted in transit (TLS) and at rest (per-user AES-256-GCM envelope encryption for your written content, encrypted storage for OAuth tokens). Encrypted backups replicate continuously to object storage and roll off within 14 days. Access on our side is limited to what the Who can see your data section describes, and security-relevant actions land in your visible audit trail.

What we never do

Google user data

If you connect a Google account, this section describes exactly how that data is handled, as required by the Google API Services User Data Policy.

What we access. Only what the feature you enabled needs:

How we use it. Solely to provide the features you see: signing you in, showing and two-way syncing your tasks as bubbles on your canvas, planning your week around your existing calendar events, and putting your tasks on your calendar when you ask. Nothing else. No advertising, no profiling, no purposes unrelated to the app's visible functionality.

Sharing. We never sell Google user data or share it with data brokers or advertisers. It is processed only by the subprocessors that run the service: our hosting provider (Hetzner) stores it as described below, and our backup storage (Cloudflare R2) holds encrypted backups. If, and only if, you invoke an AI feature (for example "plan my week"), the specific task or event text that feature needs is processed by Anthropic to generate your result and is not used to train AI models. Google user data is never transferred to any third party for advertising, for training AI models, or for any purpose other than providing the feature you requested.

Storage and protection. Task titles, notes, and checklists synced from Google are encrypted at rest with a key unique to your account (AES-256-GCM envelope encryption); your Google OAuth tokens are stored encrypted as well. Everything travels over TLS. Access on our side is limited as described in Who can see your data below, and security-relevant events are written to an audit trail you can view in Settings.

Retention and deletion. Google data lives in your account only while the connection is useful to you:

SceneTasks' use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Microsoft user data

A Microsoft connection (sign-in, To Do task sync, Outlook calendar) is handled under exactly the same rules as the Google section above: we access only what the feature you enabled needs, use it only for the app's visible features, share it with no one beyond the subprocessors that run the service, encrypt the synced content and tokens the same way, and delete it on the same unlink, revoke, and account-deletion paths.

AI features

The AI features (smart sort, quick add, subtask suggestions, plan my week, the procrastination coach, and weekly review) are optional and only run when you ask. When you invoke one, the relevant text (the items you're sorting, a task's title and notes, or a short list of task titles, plus your calendar events for plan my week) is sent to our AI provider, Anthropic, to generate the result.

If you never touch the AI features, none of your content is ever sent to an AI provider.

Your own AI connections (MCP)

If you connect an AI client of your choosing (ChatGPT, Claude, an IDE) to SceneTasks over MCP, the tasks you ask it about are sent to the AI provider you chose, under your account with them, not through us. You enable it, and you can revoke it anytime in Settings → Connections.

Email

Email is the one place your task text can leave our servers in cleartext: to deliver any email we hand its contents to Resend, which retains it briefly for delivery logs. Our emails are written to avoid this. The reminder digest tells you how many tasks need attention with a link to open the app, not their names. Including task names in the digest is an explicit opt-in (Settings → Notifications), off by default, and the only case where your task titles are emailed.

Error monitoring and diagnostics

To find and fix bugs we use Sentry. When something errors, on the server or in your browser, diagnostic data (the error and a stack trace, the URL, browser and OS, timing) is sent to Sentry. If you're signed in, the report is tagged with your account (id, name, and email) so we can tell which accounts an error affects and follow up if needed. We do not send your IP address, and server profiling captures only our own code's execution timing, never your task content.

Sentry may also capture a short session replay, but only in two cases: when a browser error occurs (the moments around the crash), or when you tick "record" while filing a bug report (and only for that report; you can stop it anytime). Either way all text is masked and all images and media are blocked, so it records layout and clicks, not your task content. We never record normal browsing.

While we're in beta: if you opt in to session recording (the toggle in the beta banner, off by default), Sentry records your interactions including, unlike normal operation, your task text, to help us reproduce problems. You can turn it off anytime, and these beta recordings are deleted when we leave beta. Recordings are stored by Sentry under their security controls (we can't encrypt them with your key). If you never opt in, none of your task content is recorded.

Sharing

Share links expose exactly the slice you choose (a task, a project, or your whole canvas) to whoever holds the link, or only to the member you pin. Links are revocable in the share dialog and can expire automatically.

Who can see your data

Your rights and your data's lifecycle

GDPR gives you most of these rights by law; we extend them to everyone.

Service providers

We rely on a small set of processors, each only for its stated purpose: Hetzner (server hosting), Cloudflare (CDN, edge, and encrypted backup storage via R2), Stripe (payments), Anthropic (AI features, only when you use them), Sentry (error monitoring), Resend (transactional email), and, only when you connect them, Google and Microsoft (task and calendar sync). We don't sell or share your data with anyone else.

Children

SceneTasks is not directed at children under 13, and we don't knowingly collect their data. If you believe a child has created an account, contact us and we'll delete it.

Changes to this policy

If we change this policy, the update appears here with a new date at the top. For material changes that reduce your protections we'll tell you in the app before they take effect.

Contact

Questions or requests: [email protected].