Data practices

Privacy policy

Effective 9 October 2026. This policy describes Toren’s Assistant, a private Google Workspace integration operated by Toren Wallengren for personal use.

Information accessed

Depending on granted permissions and the task, the integration may access Gmail messages and metadata; calendar events; Drive files and metadata; Google Docs and Sheets content; and contacts. OAuth access and refresh tokens are used to maintain authorized access. Permissions may allow changes as well as reading; actions are governed by the owner’s instructions and configured approval rules.

How information is used

Information is used for personal assistance, including reviewing and drafting email, planning appointments, locating information, summarizing documents, and working with spreadsheets. Information is not sold or used to serve advertisements.

AI processing and service providers

Relevant Google data may be included in requests to configured external AI providers, including OpenAI or Anthropic, to perform requested assistance. Provider processing and retention depend on the service, account settings and applicable provider terms. This policy does not promise that all processing stays on the operator’s server or that providers retain no data.

Assistant responses and reminders may be delivered through the operator’s configured messaging service, such as Telegram. These services process transmitted content under their own policies. Google supplies the connected APIs; GitHub Pages hosts this informational website.

Storage and retention

OAuth credentials are stored in the private assistant environment, not in this website’s repository. Conversation history, summaries, task records, logs and cached content may be retained in that environment for continuity and troubleshooting. There is no automatic fixed deletion period; the operator can review and delete retained records. Deleting local records does not necessarily delete copies in messaging services, provider systems or backups.

Control and deletion

The owner can revoke the integration’s Google access through Google Account connections. Revocation stops future authorized API access but does not automatically delete previously retained records. Deletion requests or privacy questions can be directed to the operator using the contact route below.

Google API Limited Use

The integration’s use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Google user data must not be used to develop, improve or train generalized AI or machine-learning models. Any configured processing service must be used consistently with these restrictions.

This website

These static pages contain no Google login, analytics scripts, advertising or application cookies. The hosting provider may process standard request information, such as IP addresses and browser details, to operate the site. See GitHub’s privacy statement.

Contact and updates

Operator: Toren Wallengren. Contact via the website repository’s issue tracker; do not post private account information, credentials or sensitive content there. The policy may be updated when the integration’s data practices change.