Privacy Policy
Last Updated: March 2026
Effective Date: October 23, 2024
Contact Information
- Email: privacy@ignitd.ai
- Address: Australia (full address available on request)
- Data Protection Contact: For privacy concerns, contact us at privacy@ignitd.ai. We will respond within 30 days as required by applicable privacy laws.
1. Introduction
This Privacy Policy explains how ignitd.ai ("we," "our," or "us") collects, uses, discloses, and protects your personal information when you use our AI-powered productivity platform, including our web application and browser extension (collectively, the "Service").
This policy applies globally and is designed to align with applicable privacy laws, including the Australian Privacy Act 1988, the EU General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other applicable requirements.
By using our Service, you consent to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our Service.
2. Information We Collect
2.1 Personal Information
- Account Information: Email address, name, and unique user identifier (via our authentication provider)
- Profile Data: Any additional profile information you choose to provide
- Contact Information: Email address for communications and support
2.2 Usage Data
- Content Data: Plans, tasks, and goals are stored securely in your account. Your content is encrypted at rest and access is restricted to your account context.
- Anonymised Analytics: We collect anonymised metadata such as feature usage patterns and task completion rates. We apply privacy-preserving techniques to minimise exposure of user content in analytics workflows.
- Interaction Data: How you use our features, pages visited, and time spent
- Performance Data: Application performance metrics and error logs (without user content)
2.3 Technical Data
- Device Information: Device type, operating system, browser type
- Network Information: IP address, internet service provider
- Log Data: Server logs, error reports, and diagnostic information
2.4 Cookies and Tracking
- Essential Cookies: Required for authentication and core functionality
- Analytics Cookies: Help us understand usage patterns (optional, with consent where required)
- Functional Cookies: Remember your preferences and settings (optional)
- Marketing Cookies: Used for advertising and marketing (optional, with consent where required)
For full details on how we use cookies, see our Cookie Policy.
3. How We Collect Information
3.1 Direct Collection
- When you create an account
- When you input content into our text areas and forms
- When you use our browser extension to capture content
- When you contact us for support or feedback
- When you participate in surveys or provide feedback
3.2 Automatic Collection
- Through cookies and similar technologies
- Through analytics services
- Through error tracking services
- Through server logs and system monitoring
3.3 Third-Party Services
We use the following categories of third-party services to provide and improve our Service:
- Authentication Provider: User authentication and account management
- Hosting and Infrastructure: Application hosting, analytics, and performance monitoring
- Error Tracking: Error reporting and performance monitoring
- Database Services: Secure data storage with access controls
- AI Processing: We send content you submit to AI service providers for task extraction and processing. Provider data handling is governed by their respective API terms. Where supported, we configure controls to reduce data retention and restrict use for model training.
- Integration Services (Notion, Todoist, Google Calendar): When you explicitly choose to connect an integration and export your data, we send your task data to that service via their API. We only access the resources you explicitly authorise. You control which integrations are connected and can disconnect them at any time. We never automatically export your data without your explicit action.
- Google API Services: Our application accesses your Google user data (such as calendar events) via Google API Services to enable task export and synchronisation features. We only access the specific data you authorise through the Google OAuth consent screen.
4. Legal Basis for Processing (GDPR)
For users in the European Union, we process your personal data based on the following legal grounds:
- Consent: When you opt in to analytics cookies or marketing communications
- Contract Performance: To provide our core service and fulfil our terms of service
- Legitimate Interest: To improve our service, prevent fraud, and ensure security
- Legal Obligation: To comply with applicable laws and regulations
5. How We Use Your Information
5.1 Service Provision
- To authenticate users and secure accounts
- To store and retrieve your plans and tasks (encrypted with restricted access controls)
- To provide AI-powered task extraction and plan processing
- To enable core application functionality and features
- To export your plans to third-party services when you explicitly choose to do so
Privacy Commitment: We design our systems to minimise access to your content. Your plans are stored encrypted in your account, and operational access is restricted to cases such as security, abuse prevention, and support workflows. For analytics, we use aggregated and anonymised data where possible.
Google API Data: We use information obtained via Google APIs to provide and improve user-facing features in ignitd.ai. We do not use Google user data for advertising. Access to this data is restricted and only permitted when necessary for support, security, abuse prevention, or legal compliance.
5.2 Product Improvement
- To analyse usage patterns and improve user experience
- To identify and fix bugs and technical issues
- To develop new features and functionality
- To optimise application performance and reliability
5.3 Legal Compliance
- To prevent abuse and ensure fair usage through rate limiting
- To comply with applicable privacy laws and regulations
- To respond to legal requests and protect our rights
- To maintain security and prevent unauthorised access
6. Information Sharing and Disclosure
6.1 Third-Party Services
We share information with third-party service providers in the following categories:
- Authentication: User authentication and account management
- Infrastructure: Hosting, analytics, and performance monitoring
- Error Tracking: Error reporting and performance monitoring
- Database: Secure data storage
- AI Processing: Processing of submitted content for task extraction
- Integrations: Task export to Notion, Todoist, and Google Calendar (only when you explicitly connect and choose to export)
Export Integrations: We only send your data to integration services when you explicitly choose to export. You control which integrations you connect, and you can disconnect them at any time. We never automatically export your data without your explicit action.
Google API Services Limited Use Disclosure: ignitd.ai's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
6.2 Data Sharing Principles
- We do not sell your personal information to third parties
- We do not share your information for marketing purposes without consent
- We only share information necessary for service provision
- All third-party services are bound by data protection agreements
6.3 International Data Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place, including:
- Standard contractual clauses for EU data transfers
- Adequacy decisions where applicable
- Data protection agreements with all service providers
6.4 Chrome Extension Privacy
The ignitd.ai Chrome extension is designed with privacy in mind. This section explains how the extension handles your data.
What the Extension Does
The extension allows you to send text you select on a web page to your ignitd.ai account for processing. You can do this from the right-click context menu.
Data Collection
The Chrome extension collects and processes the following data when you choose to use it:
- Selected Content: Text you explicitly select and choose to send to ignitd.ai
- Source URL: The URL of the page where the selected content came from (used for context)
Privacy Commitment: The extension is designed to process only content you explicitly choose to send. It does not collect unrelated page content and does not track your browsing activity across websites.
How We Use Your Data
- Selected content is sent to ignitd.ai to provide the processing feature you requested
- Source URL is used to preserve context for your selected content
- We do not use extension data for advertising or behavioural profiling
Data Storage
- Extension data is stored only as needed to complete the send-to-ignitd.ai action
- Content sent through the extension is handled under the same account and security controls that apply to your ignitd.ai service data
- You can clear extension data at any time via Chrome's extension settings
Extension Permissions
The extension requests only the permissions necessary to provide its core functionality:
- activeTab: To access selected content from the current tab when you choose to send it
- scripting: To process selected content on supported pages
- storage: To temporarily store data needed to complete the send action
- contextMenus: To provide a "Send to ignitd.ai" option in the right-click menu
- host_permissions (ignitd.ai): To communicate securely with the ignitd.ai web application
These permissions are used only for the stated purposes and are not used for tracking, profiling, or unrelated data collection.
Third-Party Services
- ignitd.ai web application: Processes selected content you send from the extension
- Integration APIs (Notion, Todoist, Google Calendar): If you choose to connect integrations and export data in ignitd.ai, exports are handled through the ignitd.ai web application based on your explicit actions
Your Rights
- You can uninstall the extension at any time via Chrome's extension management page
- You control what content you send (only content you explicitly select)
- You can clear extension data via Chrome's extension settings
- You control when and whether your data is exported from ignitd.ai integrations
Contact
For questions about the Chrome extension's privacy practices, contact us at privacy@ignitd.ai.
7. Data Security and Protection
7.1 Technical Safeguards
- Encryption: All data transmission uses HTTPS/TLS encryption. Data is encrypted at rest.
- Database Security: Row-level security policies restrict data access to authorised accounts
- Input Validation: Protection against cross-site scripting and injection attacks
- Access Controls: Authentication-based access with session management
- Rate Limiting: Protection against abuse and unauthorised access
7.2 Organisational Safeguards
- Data protection impact assessments for new features
- Incident response procedures
- Security reviews and testing on a periodic basis
- Principle of least privilege for operational access
7.3 Data Retention
- Account Data: Retained while your account is active
- Content Data: Retained until you delete it or close your account
- Analytics Data: Anonymised and retained for up to 2 years
- Log Data: Retained for up to 1 year for security purposes
8. Your Rights and Choices
8.1 General Rights
- Access: Request a copy of your personal information
- Correction: Update or correct inaccurate information
- Deletion: Request deletion of your personal information
- Portability: Export your data in a machine-readable format
- Objection: Object to processing based on legitimate interests
8.2 Regional-Specific Rights
Australian Privacy Act
- Right to access and correct your personal information
- Right to complain about a breach of the Australian Privacy Principles
- Right to request anonymity or pseudonymity where practicable
GDPR (European Union)
- Right to access, rectify, or erase personal data
- Right to data portability
- Right to object to processing
- Right to restrict processing
- Right to withdraw consent
CCPA (California)
- Right to know what personal information is collected
- Right to delete personal information
- Right to opt out of the sale of personal information
- Right to non-discrimination for exercising privacy rights
8.3 How to Exercise Your Rights
To exercise any of your rights, please contact us at:
- Email: privacy@ignitd.ai
- Response Time: We will respond within 30 days
- Verification: We may need to verify your identity before processing your request
- No Cost: We do not charge for reasonable requests
9. Children's Privacy
Our Service is not intended for children under 13 years of age (or under 16 in the EU). We do not knowingly collect personal information from children under these ages. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately.
If we discover that we have collected personal information from a child below the applicable age threshold without verifiable parental consent, we will delete that information promptly.
10. Privacy Complaints
10.1 How to File a Complaint
If you have concerns about how we handle your personal information, you can:
- Contact us directly at privacy@ignitd.ai
- Use our feedback form in the application
- Contact your local data protection authority
10.2 Regulatory Authorities
Australia
Office of the Australian Information Commissioner (OAIC) Website: oaic.gov.au Phone: 1300 363 992
European Union
Your local data protection authority Find yours at: edpb.europa.eu
United States (California)
California Attorney General Website: oag.ca.gov
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by:
- Posting the new Privacy Policy on this page
- Updating the "Last Updated" date at the top of this policy
- Sending you an email notification for material changes
- Displaying a notice in our application for significant changes
Your continued use of our Service after any changes constitutes acceptance of the new Privacy Policy.
12. Contact Us
If you have any questions about this Privacy Policy or our privacy practices, please contact us:
- General Inquiries: privacy@ignitd.ai
- Data Protection Contact: privacy@ignitd.ai
Response Time: We will respond to all privacy inquiries within 30 days as required by applicable privacy laws.
This Privacy Policy is effective as of October 23, 2024, and was last updated in March 2026.