Delegate OS
Legal · Privacy

Privacy Policy

Effective: June 16, 2026

Delegate OS, Inc. (“Delegate OS,” “we,” “our,” or “us”) provides a macOS application and supporting cloud infrastructure that allow you to delegate tasks across your connected accounts (collectively, the “Service”). This Privacy Policy explains what information we collect, how we use it, who we share it with, and the choices you have, including how we handle data we access from your connected Google, Microsoft, and Slack accounts. By using the Service, you agree to this Policy.

1. Information you provide

When you create an account we collect your name, email address, and authentication identifier (typically via Google or another OAuth identity provider). When you subscribe, our payment processor (Stripe) collects billing details on our behalf; we do not store full payment card numbers.

When you connect an external service (Gmail, Google Calendar, Google Drive, Google Contacts, Slack, Outlook, Microsoft Teams, iMessage, or others added over time), you grant the Service the OAuth scopes you select. Those tokens are stored encrypted, scoped to your user, and used solely to execute the actions you delegate. You may revoke any integration at any time from your dashboard.

2. Connected accounts and the data we access

When you connect an account, you authorize the Service to access and act on that account to carry out the instructions you give. We request the narrowest scopes that support the features we offer, and you can decline any scope on the provider’s consent screen (some features will then be unavailable). Depending on what you connect and the permissions you grant, the data we access includes:

  • Gmail — full read and write access. We can read, search, draft, send, label, archive, and mark your messages as read so we can summarize your inbox, tell you whether someone has replied, and send and organize mail on your instruction. We do not request the scope that permanently deletes mail.
  • Google Calendar — full read and write access. We can read your events and create, update, and delete events so we can answer questions about your schedule and book, move, or cancel meetings on your instruction.
  • Google Drive — full read and write access. We can search, open, create, edit, rename, move, and trash files so we can find and work with the documents you reference.
  • Google Contacts — read-only access to your contacts and Workspace directory, used only to resolve names you mention (for example, matching “Jessica” to the right person). We do not modify your contacts.
  • Microsoft (Outlook, Teams) and Slack — comparable read and write access to messages, calendar, and channels, used only to carry out the actions you delegate on those platforms.
  • iMessage — read and send access on your Mac, used to surface and send the messages you delegate; to include your incoming texts in Catchup and draft replies to the ones that need one (see “Catchup for iMessage” below); and, if draft personalization is enabled (see “Draft personalization” below), to read your recent outbound messages so we can draft in your writing style.

Draft personalization (writing style)

To make drafts sound like you, the Service can process your recent outbound messages to learn your writing style — your openings, sign-offs, level of formality, and emoji use — and reuse that voice when it drafts on your behalf. This is on by default, and you can turn it off at any time in Settings › Privacy on the dashboard or in the Mac app’s settings; turning it off stops any further upload immediately.

  • What is uploaded: for writing-style learning, only messages you sent (never messages others sent you), capped at the most recent 200 per recipient over the last 90 days for up to your top 50 recipients. URLs, email addresses, and phone numbers are stripped on your Mac before upload. (Reading your incoming texts is a separate feature, Catchup for iMessage, described below.)
  • Where it is stored: on your dedicated, per-user storage partition, retained for up to 90 days, and used solely to draft messages for you.
  • Not used for training: these messages are never used to train, fine-tune, or improve any artificial-intelligence model — they are read only as context at the moment a draft is composed.

Catchup for iMessage (incoming messages)

When Catchup runs, the Service can read your incoming iMessages — messages other people sent you — so it can surface the ones that need a reply and draft a response in your voice. This requires Full Disk Access, which you grant during setup; granting it is your permission for this use, and you can turn the feature off at any time in Settings › Privacy on the Mac app. It is limited to one-to-one conversations; group chats are skipped.

  • Read locally, not stored by us: your incoming texts are read on your Mac and sent to our service only to generate a draft reply. We do not store the content of other people’s messages on our servers, and we do not keep a copy of your message history beyond the drafts you review on your device.
  • Only what you approve is sent: a drafted reply is never sent until you review and approve it.
  • Not used for training: incoming-message content is never used to train, fine-tune, or improve any artificial-intelligence model — it is processed only to compose a draft at that moment.
  • AI processing: to draft a reply, the relevant message text is processed by our AI provider (Anthropic) under terms that prohibit its use for training their models.

We access connected-account content only to provide the user-facing features you request. We do not browse, mine, or process your connected accounts for any other purpose. In carrying out your instructions we may necessarily process information about third parties contained in your accounts (such as the names and email addresses of people you correspond with); we process that information solely to provide the Service. You should connect an account only if you are authorized to do so.

3. Google API Services — Limited Use

Delegate OS’s use and transfer of information received from Google APIs to any other app adheres to the Google API Services User Data Policy, including the Limited Use requirements. In particular:

  • We use Google user data (including Gmail, Calendar, Drive, and Contacts data) only to provide or improve user-facing features that are prominent in the Service.
  • We do not use Google user data to train, develop, or improve generalized or non-personalized artificial-intelligence or machine-learning models. This carve-out is absolute and is not affected by your plan or settings.
  • We do not use Google user data for advertising of any kind.
  • We do not transfer or sell Google user data, except as necessary to provide or improve the features you requested, for security purposes (such as investigating abuse), to comply with applicable law, or as part of a merger or acquisition after obtaining your explicit prior consent.
  • Humans do not read your Google user data, except where you give specific affirmative consent (for example, to debug an issue you report), where it is necessary for security or to comply with law, or where the data has been aggregated and de-identified for internal operations.

Content we access from Microsoft and Slack is handled on the same basis: processed only to deliver the features you request, and never used to train artificial-intelligence models.

4. Audio and transcripts

Speech-to-text runs entirely on your Mac. Audio captured by the microphone is transcribed locally on the Apple Neural Engine via WhisperKit. Raw audio is never transmitted to our servers, never stored on our infrastructure, and never available to us. Only the resulting text transcript and the structured action you confirm are forwarded to your dedicated instance for routing.

Transcripts and the resulting messages, drafts, calendar events, other actions, and metadata linking a message we sent on your behalf to the reply that closes it are retained on your private instance so you can audit and recall what was sent. You may delete individual records or your entire history at any time from the dashboard.

5. Information collected automatically

  • Diagnostic and crash telemetry — anonymized error reports, performance counters, and feature usage events used to fix bugs and improve the product.
  • Device and environment data — operating system version, app version, locale, and a randomly generated device identifier.
  • Service logs — IP address, request timestamps, and routing metadata generated when your Mac talks to your private instance. Retained for security and abuse-prevention.

On our website, we and our service providers may use cookies and similar technologies for technical operation, functionality, and analytics. Most browsers let you reject or remove cookies; disabling them may impair website functionality.

6. How we use your information

  • To operate, maintain, and improve the Service.
  • To execute the actions you explicitly delegate to the Service.
  • To bill you and prevent payment fraud.
  • To detect, investigate, and prevent security incidents and abuse.
  • To comply with applicable law and respond to lawful requests.

7. Artificial-intelligence models and training

To interpret your instructions and draft actions, your transcripts and the relevant context for a task are sent to third-party large-language-model providers (see Sub-processors below). We contractually require those providers to process your data only to provide inference to us and not to train their own models.

We do not use your content, transcripts, or connected-service data to train artificial-intelligence models by default. Depending on your subscription plan and/or your account settings, we may use your voice transcripts and product-usage data to train, fine-tune, or otherwise improve the models that power the Service. Where we do, we will make the applicable setting available to you and you may opt out at any time without losing access to the Service. We will not enable training on your data without the plan or setting that authorizes it.

Connected-account content — including all Google, Microsoft, and Slack data — is never used to train, develop, or improve any artificial-intelligence model, regardless of your plan or settings. We also use anonymized and aggregated information, stripped of identifiers and not linked to you, to understand usage and improve the overall experience.

We do not sell your personal information. We do not share it for cross-context behavioral advertising, and we do not use your data for third-party advertising, to determine credit-worthiness, or for lending.

8. Sub-processors

We use the following sub-processors to operate the Service. Each is contractually bound to maintain confidentiality and security commensurate with our own:

  • Amazon Web Services (us-east-2) — hosting of your dedicated instance, storage, networking, and authentication (Cognito).
  • Anthropic, PBC — large language model inference. Requests are proxied through our infrastructure with per-user metering; the content of your prompts and responses is processed under Anthropic’s commercial terms and is not used to train Anthropic’s models.
  • Stripe, Inc. — subscription billing and payment processing.
  • Brave Software — web and news search lookups (only the search query is forwarded; no user identity and no connected-account content).
  • Google LLC — Gmail, Calendar, Drive, Contacts, and Gemini (“Nano Banana”) image generation, used only when you connect those services.
  • Microsoft Corporation — Outlook and Teams, used only when you connect those services.

9. Data location and retention

Your dedicated instance is provisioned in AWS us-east-2 (Ohio, USA). Account metadata is stored in the same region. We do not retain raw audio recordings. We fetch connected-account content (such as Gmail, Calendar, and Drive data) on demand to carry out your instructions and do not maintain a separate copy of it on our servers beyond the transcript and record of the action you confirmed. Account data is retained for the life of your account; deleted records and deleted accounts are purged from primary storage within 30 days and from backups within 90 days, except where retention is required by law.

10. Security

We use industry-standard safeguards including TLS 1.2+ in transit, AES-256 at rest, KMS envelope encryption for OAuth tokens, per-user instance isolation, and least-privilege IAM. No system, however, is perfectly secure. You are responsible for safeguarding your account credentials, devices, and the services you connect to Delegate OS. That includes keeping your Mac up to date, using a strong account password, enabling multi-factor authentication on your identity provider, and revoking integrations you no longer use. We strongly recommend you do all of the above. We are not liable for losses caused by your failure to secure your own credentials or devices, by malware on your Mac, or by your decision to grant Delegate OS access to a particular connected service.

11. Your choices

  • Access and export. You may export your account data from the dashboard.
  • Deletion. You may delete individual records, disconnect integrations, or permanently delete your account from the dashboard. Disconnecting an integration revokes our access to that account going forward.
  • Correction. You may update your profile and connected accounts at any time.
  • Training opt-out. Where your plan or settings would allow us to use your transcripts or usage data to train or improve models, you may opt out at any time from your settings, as described in Section 7.
  • Marketing communications. Transactional emails (security alerts, billing) are required while your account is active. You may opt out of all other email.

12. Regional rights

California (CCPA / CPRA)

California residents have the right to know, access, correct, and delete personal information we hold, and to opt out of any “sale” or “sharing.” We do not sell personal information and do not share it for cross-context behavioral advertising as those terms are defined under the CCPA. To exercise your rights, email hello@delegateos.ai.

European Economic Area, United Kingdom, Switzerland

If you are in the EEA, UK, or Switzerland, you have rights under the GDPR / UK GDPR including access, rectification, erasure, restriction, portability, and objection. Our lawful basis for processing is performance of contract (to provide the Service), legitimate interests (to secure and improve the Service), and consent (where required for optional features, including any use of your transcripts for training). You may withdraw consent at any time. To exercise your rights, email hello@delegateos.ai. You may also lodge a complaint with your local supervisory authority.

13. International transfers

Our primary infrastructure is located in the United States. If you access the Service from outside the U.S., your data will be transferred to and processed in the U.S. Where required, we rely on Standard Contractual Clauses or other approved transfer mechanisms.

14. Children

The Service is not directed to and may not be used by anyone under 18. We do not knowingly collect personal information from children. If you believe a child has provided us with information, please contact us and we will delete it.

15. Changes to this Policy

We may update this Policy from time to time. If we make material changes we will notify you by email or in-app notice at least 14 days before the changes take effect. Your continued use of the Service after the effective date constitutes acceptance.

16. Contact

Questions, requests, or complaints? Email hello@delegateos.ai. You also have the right to lodge a complaint with your local data protection authority.