What this application is
Spiral is a self-hosted tool that runs on the owner's own hardware. It connects to Google services using OAuth so that it can read and organise the owner's own mail, calendar, files and contacts, and act on them on his instruction.
What data it accesses
When the owner grants access, Spiral may use these Google API scopes:
- Gmail (read, modify, send): to read the owner's own mail, draft replies, and send messages only where the owner has explicitly approved the send.
- Google Calendar: to read and create the owner's own calendar events.
- Google Drive, Docs and Sheets: to read and write files in the owner's own Drive.
- Contacts (read-only): to look up people the owner already knows.
How data is handled
- Google data is used only to perform the task the owner asked for at that moment.
- Copies of data are stored only on the owner's own devices, in his own accounts, under his control.
- No Google user data is sold, rented, or shared with any third party.
- No Google user data is used for advertising, profiling, or training machine-learning models.
- OAuth tokens are stored on the owner's own machine and are never published or transmitted anywhere other than to Google's own APIs.
Retention and deletion
Data lives in the owner's own accounts and is deleted when he deletes it. Access can be revoked at any time at myaccount.google.com/permissions, which immediately ends Spiral's access; local tokens are then deleted from the machine.
Limited Use disclosure
Spiral's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Contact
Questions about this policy: toluhunterdev@gmail.com