Privacy Policy

Last Updated: August 6, 2026

1. Data Collection

Project Insights collects information necessary to provide AI-powered project analytics, milestone tracking, and task scheduling tools. This includes:

  • Account Information: Email address, display name, and profile picture provided during authentication via Google Sign-In or standard account creation.
  • Project & Task Data: Project titles, task schedules (planned start and end dates), WBS codes, cost estimates, and team assignments stored securely in Cloud Firestore.
  • Calendar Access Tokens: OAuth 2.0 authorization tokens requested when connecting your Google Calendar to synchronize task schedules.
  • AI Processing Data: Text submitted for executive summary generation, bottleneck detection, or AI subtask generation via Google Genkit.

2. How We Use Your Information

We use collected information strictly for the following purposes:

  • Providing core project management features, including Gantt charts, CPM/PERT network diagrams, and Action Center risk alerts.
  • Synchronizing planned task start and end dates directly as all-day events on authorized Google Calendars.
  • Sending in-app notifications and scheduled health checks for overdue tasks and project risk warnings.
3. Google Calendar API Data Disclosure & Protection

Project Insights integrates with Google Calendar API (https://www.googleapis.com/auth/calendar.events) to provide seamless task schedule synchronization.

a. What Google Calendar Data We Request:

  • Read & Write Access to Calendar Events: We request permission to create, edit, update, and delete calendar entries on your primary Google Calendar corresponding to project tasks assigned to you or managed by you.
  • Calendar Event Metadata: We read back event IDs generated by Google Calendar to map each event to its corresponding Firestore Task ID. We do not read, store, or inspect your unrelated personal or business calendar entries.

b. How We Use Google Calendar Data:

  • All-Day Event Creation: When a task is created or updated in Project Insights, an All-Day calendar event is created spanning from the task's planned Start Date to End Date.
  • Real-Time Schedule Sync: Modifying a task's start date, end date, status, or description in Project Insights automatically updates the corresponding Google Calendar entry in real time.
  • Event Cleanup: Deleting a task in Project Insights automatically removes the associated event from your Google Calendar.

c. How User Data is Protected:

  • Encryption at Rest & Transit: Google OAuth 2.0 access and refresh tokens are encrypted using HTTPS/TLS in transit and stored in Firebase Firestore with strict rule-based access control.
  • Zero Third-Party Sharing: We do not sell, rent, trade, or transfer your Google Calendar data to third-party advertisers, data brokers, or external platforms.
  • No AI Model Training: Your Google Calendar data is never used to train generalized artificial intelligence (AI) or machine learning models.
  • User Control & Revocation: You can disconnect Google Calendar integration at any time from your Calendar Sync Settings page, which immediately revokes token access. You can also revoke access at any time via your Google Account Permissions page.
Google API Limited Use Compliance: Project Insights' use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

4. Data Security

Your data is hosted on Google Cloud Platform with enterprise-grade encryption. We utilize Firebase Security Rules to ensure that project and calendar data is strictly isolated and only accessible to authorized team members, project managers, and organization owners.

5. Third-Party Services

Project Insights utilizes Google Gemini (via Genkit) for AI features. AI data processing is handled in accordance with Google Cloud Generative AI Privacy terms. We do not sell your personal or project data to third parties.

6. Contact Us

If you have questions about this Privacy Policy or our Google API User Data practices, please reach out to our privacy officer via the Support Center.