The short version
- Without an account, your schedule, appointments and settings never leave your device. The only exceptions are an email you choose to leave on the Android tester form, and the bot check that loads when you open the sign-in form.
- With an account, we store your email, your schedule and your appointments so they can appear on your other devices.
- We do not sell your data, and there are no analytics, trackers or advertising in this app.
- You can delete your account from the Settings tab, without asking us. See Deleting your account below for what is deleted and what we keep.
Deleting your account
Pie Timers is made by AibhlínnAI. You can delete your Pie Timers account, and the data held with it, whenever you like.
In the app, on Android or in a browser: open Settings, go to Account, press Delete my account, type DELETE, then press Delete permanently. It happens straight away and cannot be undone.
If you can't get into the app, email support@aibhlinn.ai from the address you sign in with and ask us to delete your Pie Timers account. We will delete it within 30 days and tell you when it's done.
Before you delete: if you pay for AibhlínnAI Premium, deleting your account does not stop the subscription on its own. Cancel it first from the link in your Paddle receipt, or email us and we will cancel it for you.
What gets deleted: your email address and sign-in details, your schedule, appointments and settings, any calendar you connected and the events we stored from it, your alert registrations, and your trial or subscription status.
What we keep:
- If you ever paid, the subscription updates Paddle sent us. They hold Paddle's customer number for you, not your email address, and we keep them for five years for tax records. Paddle keeps its own records under its own policy.
- If we gave you an access code, the code and the email address it was issued to, so it can't be used again. Ask and we will remove the email.
- An email left on the Android tester form is kept apart from your account. Ask and we will remove it, and it is deleted when testing ends.
- The sign-in log our database provider keeps, with the email address and IP address of each sign-in, for up to 30 days.
- Backups held by our database provider drop deleted data within 7 days.
- Sign-in attempt hashes are cleared within a day.
You can also remove some data without deleting your account. Disconnecting a calendar deletes its address and the events we stored from it.
1. Who is responsible
AibhlínnAI, ABN 70 810 791 817, of South Australia, Australia, is responsible for the personal information described here. Contact: support@aibhlinn.ai.
2. If you do not create an account
The app works fully offline. Your schedule, appointments and settings are stored only in your browser's local storage on that device. We cannot see them, and no request carrying them is ever sent anywhere.
There is no sign-up wall and no tracking on the free version. The only email we collect without an account is one you choose to leave on the Android tester form. We use it for two things: we add it to Google Play's tester list so Google can give you access, and we email you the install link.
3. If you create an account
We then store:
- Your email address — to sign you in and to contact you about your account.
- Your weekly schedule and appointments — so they appear on your other devices.
- Your settings — theme, alert preferences and so on.
- Push subscription details and your time zone: when you are signed in and have allowed notifications, so we know when to send alerts while the app is closed.
- Subscription status — whether you are on a trial, paying, or have complimentary access.
We also store a random ID for each device that syncs, so a device can recognise its own changes. If you sign in with Google, Google also sends us the name and profile picture link on your Google account, which we do not use. Your time zone shows roughly where you are, and we use it only to time your alerts. We do not store your precise location, your browsing behaviour, or anything you do outside this app.
4. If you connect a calendar
This is the most sensitive thing the app touches, so precision matters here.
Connecting a calendar gives us read-only access. We fetch your calendar on a schedule, take the title, start, end and location of events from yesterday to three weeks ahead, and store those so your next appointment can be shown. Nothing in this app can create, alter or delete anything in your calendar.
To do that we hold either a private iCal address or a Google refresh token. Both are effectively keys to that calendar. They are never sent back to your browser after you save them — the app can only see whether a calendar is connected, not the credential itself — and only our sync server can read them.
They are not encrypted at rest. They are held in our database, protected by row-level security and our hosting provider's disk encryption. We would rather tell you that than imply more protection than exists. You can disconnect at any time, which deletes the stored credential and, for Google, revokes our access at Google's end as well.
We only fetch events in that window, and we delete stored events older than a day.
5. Where your data is held
Account data is stored with Supabase in the ap-southeast-2 (Sydney) region. Your schedule, appointments, settings and calendar data stay in Australia.
Three exceptions, so this is not misleading. Sign-in emails are sent through Resend, and your email address passes through their systems overseas to deliver them. If you pay, Paddle handles the transaction and holds your billing details under their own policy, also overseas. If you join the Android tester list, we add your email address to Google Play's testing list, which Google holds overseas. None of them receives your schedule, your appointments or your calendar.
6. Who else touches your data
| Who | What they get | Why |
|---|---|---|
| Supabase | Everything in sections 3 and 4, and your email if you join the Android tester list | Database, sign-in and server functions |
| Resend | Your email address | Sending your sign-in code |
| Paddle | Billing details you give them directly | They are the seller; we never see your card |
| Only if you use Google sign-in or Google Calendar | Authentication and reading your calendar | |
| Google (Play Console) | Your email, if you join the Android tester list | Adding you to the Android test |
| Cloudflare | Your IP address and browser, in standard web server logs, each time the app loads; and browser signals while the sign-in form is open | Passing the app files on to your device, giving us daily visit totals (see section 9), and checking that a person, not a bot, is using the sign-in form |
| GitHub (GitHub Pages) | Your IP address and browser, in standard web server logs | Serving the app files to your device |
That is the complete list. We do not sell, rent or trade personal information to anybody, and we do not use your data to train anything.
7. Sign-in protection
To stop the sign-in form being used to send unwanted email to other people, we count recent attempts. We store only a one-way hash of the email address and IP address involved, never the values themselves, and we delete those records after a day.
8. How long we keep things
- Account data — until you delete your account.
- Calendar events — a rolling window; older than a day is deleted automatically.
- Sign-in attempt hashes — one day.
- Tester sign-up emails: until Android testing ends, or until you ask us to remove yours.
- Billing records — held by Paddle under their policy, and for as long as Australian tax law requires.
9. Cookies and tracking
The app sets no cookies and runs no tracking code: no analytics scripts, no advertising pixels, no third-party trackers, no cross-site tracking. It stores your settings in local storage and, if you sign in, a session token in your browser. That is all.
We do count visits, in total only. Cloudflare, which passes the app's files on to your device, gives us daily totals from its standard server logs: how many pages were loaded, a rough number of visitors, and which countries they came from. We see only those totals. We cannot see who you are, what you did in the app, or anything about your schedule.
10. Your rights
You can, at any time and without contacting us:
- See and change your schedule, appointments and settings from inside the app.
- Export this device's schedule, appointments and settings as a file, from Settings.
- Delete your account from Settings. See Deleting your account for what is kept. This is immediate and cannot be undone.
If you would prefer we did that for you, or you want a copy in another format, write to support@aibhlinn.ai and we will respond within 30 days.
If you are in the EU or UK you also have the rights given by the GDPR, including objection, restriction and portability, and the right to complain to your local supervisory authority. In Australia you may complain to the Office of the Australian Information Commissioner.
11. Children
This app is not directed at children under 16. We do not knowingly collect their information. If you believe a child has created an account, tell us and we will delete the account.
12. Data breaches
If personal information is exposed in a way likely to cause you serious harm, we will notify you and the relevant regulator as required by the Notifiable Data Breaches scheme, and we will tell you plainly what happened.
13. Changes
If we change this policy in a way that materially affects you, we will email you before any change takes effect. The date at the top always reflects the current version.