Privacy Policy

Last updated: June 27, 2026

Remember: To-do List/Calendar ("the App") is developed by Colin Toft. This policy describes how the App handles your information.

Data Storage

All your events, settings, and app data are stored locally on your device. The App does not have its own servers and does not transmit your data to any server operated by the developer.

Google User Data (Google Calendar Integration)

The App offers an optional Google Calendar sync feature. It is off until you choose to connect your Google Account, and you can disconnect it at any time from the App's settings. When you connect, you authenticate directly with Google via OAuth 2.0, and the App never sees or stores your Google password. The sections below describe exactly how the App accesses, uses, shares, stores, retains, and deletes your Google user data.

Data Accessed. With your explicit consent, the App requests the Google Calendar OAuth scopes (calendar.readonly and calendar.events) and accesses only your Google Calendar data. Specifically, it accesses the list of your calendars and your calendar events together with their details (event titles, descriptions, dates, times, recurrence rules, and the organizer/attendee status used to determine whether an event is editable in the App). The App reads your existing events and creates, updates, or deletes events that you add or change within the App. The App does not access Gmail, Drive, Contacts, your location, or any other Google service or data.

Data Usage. Your Google Calendar data is used for a single purpose: to sync events two-way between your Google Calendar and the App on your device, so that the events you view and edit in the App stay consistent with your Google Calendar. To do this, the App communicates directly with Google's Calendar API to read your events and to send the changes you make in the App. Aside from that exchange with Google, your data is processed and stored only on your device, never on any server operated by the developer. Your Google user data is never used for advertising, profiling, or any purpose unrelated to providing the calendar-sync feature you requested.

Data Sharing. Your Google user data is never sold and is never shared with, sold to, or disclosed to any third party. The App contains no advertising or analytics SDKs that receive this data. The only transfer that occurs is the App on your device communicating directly with Google's own APIs to perform the sync you requested. The App does not use Google user data to develop, improve, or train generalized or non-personalized artificial-intelligence or machine-learning models. The App's access to, use of, and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Data Storage & Protection. The App applies several measures to protect the confidentiality of your Google user data. All communication between the App and Google, both when you sign in and when your calendar is synced, takes place over encrypted HTTPS (TLS) connections, so your data is protected while in transit. Your Google Calendar data, along with the OAuth access and refresh tokens used to sync it, is stored only locally on your device, inside the App's private storage area that the operating system keeps isolated from other applications (app sandboxing). On modern devices this on-device storage is encrypted at rest by the operating system whenever a device passcode or biometric lock is enabled. Sign-in uses Google's OAuth 2.0, so the App never handles your Google password and instead relies on a revocable access token that you can invalidate at any time. The developer operates no servers, so your Google user data is never transmitted to, processed by, or stored on any server controlled by the developer, which means there is no central database of user data that could be exposed.

Data Retention & Deletion. Because all of this data lives only on your device, it is retained only for as long as the App is installed and connected to your Google Account. You can delete it at any time by: (a) disconnecting your Google Account in the App's settings, which removes the App's stored Google credentials and tokens, deletes the calendar events the App imported onto your device, and stops all syncing; (b) deselecting an individual calendar, which removes the events imported from that calendar; or (c) deleting the App from your device, which erases all of its local data. You can additionally revoke the App's access to your Google Account at any time from your Google Account permissions page. Removing the local copy does not delete the original events in your Google Calendar.

Notifications

The App may request permission to send local notifications to remind you of upcoming events. These notifications are scheduled entirely on your device and do not involve any external push notification service operated by the developer.

Widgets

The App provides home screen and lock screen widgets that display your events. Widget data is stored in a shared app group on your device and is not transmitted externally.

Diagnostics & Crash Reports

To help fix bugs, the App can send diagnostic reports to the developer through Sentry, a third-party error-monitoring service that processes the reports on the developer's behalf:

Analytics & Tracking

The App does not collect analytics, usage data, or behavioral tracking, and contains no advertising or tracking SDKs. The only information that can leave your device is the optional, anonymized diagnostics and crash reports described above, and only with your consent.

Data Collection Summary

Apart from the optional Google Calendar sync and the optional, anonymized diagnostics and crash reports described above, the App does not collect, store, or transmit your personal data to external servers. All your events and settings remain on your device.

Children's Privacy

The App does not knowingly collect any personal information from children. Since no data is collected from any user, the App is safe for users of all ages.

Changes to This Policy

If this privacy policy is updated, the revised version will be posted at this URL with an updated date.

Contact

If you have questions about this policy, please get in touch via the support form.