Privacy Policy for Athesus Vision
1. Introduction
Welcome to Athesus Vision ("we", "our", "us", or "the Application"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, store, and protect your data when you use our desktop automation application.
By using Athesus Vision, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Account Information
When you create an account or sign in, we collect:
- Email address (when you sign in with Google or create an account)
- Name and profile picture (from your Google account, if applicable)
- User ID (automatically generated for your account)
- Subscription information (tier, billing cycle, payment status)
2.2 Gmail Data (Optional - Only if You Grant Access)
If you choose to connect your Gmail account:
- We access Gmail only to send emails on your behalf when you explicitly request it
- We DO NOT read, store, or analyze your email content
- We DO NOT access your inbox or existing emails
- We DO NOT share your Gmail data with any third parties
- All email operations are processed locally on your computer
- You can revoke Gmail access at any time through your Google Account settings
2.3 Usage Data
We collect data about how you use the application:
- Task history (automation tasks you've run - stored locally)
- Token usage (for billing and subscription management)
- Error logs (for debugging and improving the application - no personal data included)
- Feature usage statistics (which features you use most)
2.4 Technical Data
- Device information (operating system, screen resolution)
- Application version (to ensure compatibility)
- Performance metrics (to optimize the application)
3. How We Use Your Information
3.1 Gmail Access
- Send emails when you explicitly request via the application
- All email operations are initiated by YOU through the application interface
- We never send emails without your explicit command
- We never access your emails for any other purpose
3.2 Account Management
- Authenticate your identity and maintain your session
- Track subscription status and token usage for billing
- Provide customer support and respond to your inquiries
- Send important service updates and notifications
3.3 Application Improvement
- Analyze usage patterns to improve features
- Debug errors and fix technical issues
- Develop new features based on user needs
4. Gmail API Compliance
Athesus Vision's use of information received from Gmail APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Limited Use Disclosure:
- We only use Gmail data to send emails that you explicitly request
- We do not use Gmail data for serving advertisements
- We do not transfer Gmail data to third parties (except as necessary to send emails via Gmail's servers)
- We do not use Gmail data for any purpose unrelated to providing email functionality
- Gmail data is not used to determine creditworthiness or for lending purposes
5. Data Storage and Security
5.1 Where Your Data is Stored
- Local Storage: Task history, automation logs, and most application data is stored locally on your computer
- Cloud Storage: Only account information, subscription data, and token usage statistics are stored on our secure servers
- No Email Storage: We never store your email content on our servers
5.2 Security Measures
- Encryption: All data transmitted between your computer and our servers is encrypted using HTTPS/TLS
- Secure Authentication: We use industry-standard OAuth 2.0 for Google sign-in
- Access Controls: Strict access controls limit who can access your data
- Regular Security Audits: We regularly review and update our security practices
5.3 Data Protection
- We never sell your personal data to third parties
- We never share your data for advertising purposes
- We only share data when required by law or with your explicit consent
6. Third-Party Services
Athesus Vision integrates with the following third-party services:
6.1 Google Services
- Google OAuth: For account authentication (Google's Privacy Policy applies)
- Gmail API: For sending emails (only if you grant access)
- You can review Google's privacy policy at: https://policies.google.com/privacy
6.2 Payment Processing
- GoCardless: For subscription payments (GoCardless Privacy Policy applies)
- We do not store your payment card details
- You can review GoCardless's privacy policy at: https://gocardless.com/privacy/
6.3 AI Services
- OpenRouter/OpenAI/Ollama: For AI-powered automation features
- Task descriptions may be sent to AI services for processing
- No personal identifying information is sent to AI services
7. Your Rights and Choices
You have the following rights regarding your personal data:
7.1 Access
- You can request a copy of all personal data we hold about you
- Contact us at support@athesus.app to request your data
7.2 Correction
- You can update your account information at any time in the application settings
- Contact us to correct any inaccurate data
7.3 Deletion
- You can request deletion of your account and all associated data
- We will delete your data within 30 days of your request
- Some data may be retained for legal or billing purposes
7.4 Revoke Access
- Gmail Access: Revoke at any time via Google Account settings (https://myaccount.google.com/permissions)
- Application Access: Uninstall the application to stop all data collection
7.5 Data Portability
- You can request an export of your data in a machine-readable format (JSON)
- Contact us to request a data export
7.6 Opt-Out
- You can opt out of non-essential emails in your account settings
- You cannot opt out of critical service notifications
8. Data Retention
8.1 Active Accounts
- Your data is retained while your account is active
- Local data (task history, logs) is stored on your computer indefinitely
8.2 Deleted Accounts
- Account data is permanently deleted within 30 days of account deletion
- Billing records may be retained for up to 7 years for legal compliance
8.3 Gmail Access
- Gmail access tokens can be revoked instantly via your Google Account
- We do not retain any Gmail data after you revoke access
9. Children's Privacy
Athesus Vision is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately and we will delete it.
10. International Data Transfers
Your data may be transferred to and processed in countries other than your own. We ensure that all international data transfers comply with applicable data protection laws, including GDPR for EU users.
11. Cookies and Tracking
Athesus Vision is a desktop application and does not use cookies. We do not track your browsing activity outside of the application.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. When we make significant changes:
- We will update the "Last Updated" date at the top of this policy
- We will notify you via email or in-app notification
- Continued use of the application after changes constitutes acceptance of the updated policy
13. Legal Basis for Processing (GDPR)
For users in the European Union, we process your data based on:
- Consent: When you grant access to Gmail or sign up for the service
- Contract: To provide the services you've subscribed to
- Legitimate Interest: To improve our services and prevent fraud
- Legal Obligation: To comply with applicable laws and regulations
14. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us:
Email: support@athesus.app
Website: https://athesus.app
Address: [Your business address if applicable]
For data protection inquiries (EU users), you can also contact our Data Protection Officer at: privacy@athesus.app
15. Complaints
If you are not satisfied with how we handle your personal data, you have the right to lodge a complaint with your local data protection authority.