Google API Services User Data Policy Compliance
Amble Time's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
- Data Accessed: If you choose to connect your Google Calendar, Amble Time requests access to read your calendar events (titles, start/end times, and descriptions).
- Data Usage: We use this data exclusively to display your schedule within the Amble Time dashboard and to calculate your daily energy capacity and load.
- Data Sharing: We do not share, sell, or transfer your Google user data to any third-party brokers, advertisers, or AI training models. Your data is used strictly to provide the core scheduling features visible to you within the app.
- Data Storage & Protection: Your Google Calendar data is transmitted securely via HTTPS and stored in our secure database. It is accessible only to you through your authenticated account.
- Data Retention & Deletion: We retain this data only as long as your Google integration is active. You can disconnect your Google Calendar or delete your Amble Time account at any time within your settings, which will instantly and permanently delete all associated Google data from our servers.
1. Who We Are
Amble Time (“we”, “us”, or “our”) is a productivity and energy-management application designed to help you plan your day in a way that honours your nervous system. This Privacy Policy explains what information we collect, how we use it, and the choices you have.
By using Amble Time you agree to the practices described in this policy. If you have questions, please contact us at ian@ambletime.com.
2. Information We Collect
Account information
When you create an account (via our authentication provider, Clerk), we store your email address and a unique user identifier. We do not store your password — authentication is managed entirely by Clerk.
Task and scheduling data
We store the tasks, schedules, and preferences you create inside Amble Time so that your plan persists across sessions.
Energy and onboarding profile
We collect answers to onboarding questions about your working hours, chronotype, cycle tracking preferences, and felt-sense energy check-ins. This information is used solely to personalise your scheduling experience inside the app.
Wearable and biometric data (e.g. Oura Ring)
If you choose to connect a compatible wearable (such as the Oura Ring), we may receive sleep, readiness, and activity metrics via that device's API.
Important: Wearable data is used exclusively within the Amble Time application to generate your daily capacity forecast. It is never shared with third parties, never used for advertising, and never sold — under any circumstances.
3. How We Use Your Information
- To operate and improve the Amble Time service.
- To generate personalised scheduling recommendations and capacity forecasts based on your energy profile and wearable data.
- To send transactional communications (e.g. account notices).
- To diagnose technical problems and monitor service reliability (via anonymised error-tracking through Sentry).
- To understand aggregate usage patterns so we can improve the product (via PostHog analytics, with IP anonymisation enabled).
4. We Do Not Sell Your Data
We do not sell, rent, or trade your personal data to any third party. This includes your task data, health metrics, and wearable readings. We do not use your data to build advertising profiles or share it with data brokers.
5. Data Sharing
We share data only with the sub-processors required to operate the service:
- Neon (database) — stores your tasks, profile, and scheduling data on encrypted servers.
- Clerk (authentication) — manages secure sign-in and account identity.
- OpenAI — receives task descriptions for AI scheduling suggestions and voice transcription. No health or wearable data is sent to OpenAI.
- Sentry — receives anonymised error reports to help us fix bugs.
- PostHog — receives anonymised usage events (with IP anonymisation enabled) for product analytics.
- Oura API — when you connect your ring, we read sleep and readiness data on your behalf. We do not write to the Oura API or share your Oura data with anyone.
All sub-processors are bound by data processing agreements and are required to handle data securely and in accordance with applicable law.
6. Data Retention
We retain your data for as long as your account is active. You can permanently delete your account and all associated data at any time from Dashboard → Settings → Delete Account. Upon deletion, your tasks, profile, energy data, and wearable readings are removed from our database within 30 days. Anonymised aggregate analytics are not deleted as they contain no personally-identifying information.
7. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access a copy of the personal data we hold about you.
- Correct inaccurate data.
- Delete your data entirely — you can do this yourself in the app at any time, or by emailing us.
- Object to or restrict certain types of processing.
- Withdraw consent (for example, disconnecting your wearable integration) at any time without affecting past use.
- Port your data — contact us and we will provide a machine- readable export.
To exercise any of these rights, email ian@ambletime.com. We will respond within 30 days.
8. Cookies and Local Storage
Amble Time uses browser localStorage to persist your in-app preferences (such as onboarding progress and theme selection). We use session cookies required by Clerk for authentication. We do not use advertising or tracking cookies.
9. Security
All data in transit is encrypted via TLS. Data at rest is encrypted by our database provider. We use industry-standard authentication practices via Clerk, including secure token handling. No system is perfectly secure, and we encourage you to use a strong, unique password for your account.
10. Children's Privacy
Amble Time is not directed at children under 13 years of age. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us so we can delete it.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new policy at this URL and, where appropriate, by sending you an email notice. The “last updated” date at the top of this page tells you when the most recent revision was made.
12. Contact
If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us at:
Amble Time
Email: ian@ambletime.com