Privacy Policy
Last updated: 21 May 2026
Who we are
Project Context Interface ("PCI", "we", "us") is operated by João Pinto, a freelance developer. You can reach us at joaopedropinto910@gmail.com.
What data we collect
When you use PCI, we collect and process the following:
- Account information — your name and email address, obtained via Google or Microsoft OAuth.
- Email content — subject lines, senders, recipients, and bodies of emails you choose to connect via Gmail or Outlook.
- Calendar events — event titles, times, attendees, and descriptions from your connected Google or Outlook calendar.
- Meeting recordings and transcripts — audio recordings and auto-generated transcripts of meetings you choose to record via the in-app bot.
- Uploaded documents — PDFs and other files you upload to the reference library.
- Tasks and notes — task titles, descriptions, due dates, and vault notes you create inside the app.
- Usage data — model usage counts for billing and quota management. We do not collect analytics or tracking cookies.
How we use your data
- To provide the core service: indexing your documents, emails, and meetings so the AI assistant can answer questions about your projects.
- To generate AI-powered summaries, task suggestions, and search results using the content you connect.
- To authenticate you and maintain your session.
- To track model usage for quota enforcement.
We do not sell your data, use it to train AI models, or share it with third parties except as described below.
Subprocessors
We share data with the following third-party services to operate the product:
| Processor | Purpose | Data shared |
|---|---|---|
| MongoDB Atlas | Database storage | All user content |
| Anthropic | AI responses (Claude) | Document text, email content, meeting transcripts, chat messages |
| OpenAI | AI responses and embeddings (optional) | Same as above, only if selected model is an OpenAI model |
| Google Gemini | AI responses (optional) | Same as above, only if selected model is a Gemini model |
| OAuth authentication, Gmail, Calendar, Tasks | OAuth tokens, email and calendar content | |
| Microsoft | OAuth authentication, Outlook, Calendar, Tasks | OAuth tokens, email and calendar content |
| Recall.ai | Meeting recording and transcription | Meeting audio, bot metadata |
Data retention
Your data is retained for as long as your account is active. If you delete a document, task, or meeting recording, it is removed from our database immediately. If you wish to delete your entire account and all associated data, contact us at joaopedropinto910@gmail.com.
Your rights
Depending on where you are located, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Object to or restrict certain processing
- Data portability
To exercise any of these rights, contact us at joaopedropinto910@gmail.com. We will respond within 30 days.
Cookies and tracking
We use a single session cookie issued by NextAuth.js to keep you signed in. We do not use advertising cookies, third-party analytics, or tracking pixels.
Security
All data is transmitted over HTTPS. OAuth access tokens are stored encrypted in the session cookie and are never written to the database. We apply principle-of-least-privilege scoping to all database queries.
Changes to this policy
If we make material changes, we will update the "Last updated" date at the top of this page. Continued use of the service after changes constitutes acceptance of the updated policy.
Contact
Questions or concerns? Email us at joaopedropinto910@gmail.com.