Privacy Policy

N8N Personal Assistant · Last updated: 6 September 2026

1. Who operates this application

This application is operated by a single private individual for their own personal and professional use. It is not a commercial service, has no customers, and accepts no registrations. The operator is also its only user.

Contact: sibrag1001@gmail.com

2. What data the application accesses

The application connects to a single Google Account — the operator's own — after the operator explicitly grants access through Google's standard consent screen. It accesses only the following:

DataPurpose
Email messages in the connected mailbox Producing summaries and digests for the operator; identifying messages that need a reply
Draft messages Creating draft replies that the operator reviews and sends manually
Mailbox labels Sorting and marking processed messages
Basic account identity (email address) Identifying which mailbox is connected

The application does not access contacts, calendar, files, location, payment information, or any other Google service beyond the mailbox described above.

3. How the data is used

Message content is processed solely to produce summaries and draft replies for the operator. It is never used for advertising, profiling, analytics, resale, model training, or any purpose unrelated to the operator's own correspondence.

No message is sent, deleted, or modified without the operator's explicit action. The application prepares drafts only.

4. Where the data is stored

All processing happens on a private server physically located in the operator's office in Tashkent, Uzbekistan. The service is not published to the public internet and is reachable only from the operator's own devices over a private encrypted network.

Message data is stored in a local database on that server, protected by full-disk and application-level access controls. Stored credentials are encrypted at rest.

5. Third parties

Data is not sold, rented, or shared with any third party.

To produce summaries and drafts, the text of messages may be sent to large language model providers (Google and Anthropic) over encrypted connections, acting solely as processors on the operator's instruction. Before transmission, personally identifying details — names, contract and policy numbers, tax identifiers, phone numbers and monetary amounts — are replaced with placeholders on the local server. These providers do not receive the original identifiers, do not retain the data for their own purposes, and do not use it to train models.

6. Retention and deletion

7. Limited Use disclosure

This application's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

8. Security

The server is not exposed to the public internet. Remote access requires authentication on a private network. Access tokens and API keys are stored encrypted and are never written into logs or shared. Backups are kept locally and are not transferred to third parties.

9. Children

The application is not directed at children and has no users other than its operator.

10. Changes

If this policy changes, the updated version will be published on this page with a new revision date.