Privacy Policy
Last updated: March 18, 2026
1. Overview
Synagize ("we," "our," or "the app") is a desktop and web productivity application. We are committed to protecting your privacy. This policy explains what data we collect, how we use it, and your choices.
2. Local-First Architecture
Synagize is designed as a local-first application. By default, all your data — tasks, events, notes, contacts, and settings — is stored locally on your device in a SQLite database. We do not have access to this data unless you explicitly enable cloud sync.
3. Data We Collect
When using the desktop app without cloud sync: We collect no data. Everything stays on your device.
When you connect a Google account: We request access to your Google Calendar data via OAuth 2.0. We store your OAuth tokens locally on your device using encrypted storage (Electron safeStorage). Your calendar events are synced between Google Calendar and your local database. We never transmit your Google data to our servers.
When you enable cloud sync: Your planner data (tasks, events, notes) is transmitted to and stored on our cloud infrastructure to enable cross-device synchronization. This data is encrypted in transit (TLS) and at rest.
4. Third-Party Services
We integrate with Google Calendar via the Google Calendar API. When you connect your Google account, Google's own privacy policy applies to the data within their services. We access only the scopes you explicitly authorize (calendar, contacts, or email) and use this data solely to display and synchronize it within Synagize.
5. Data Retention
Local data persists until you delete it or uninstall the application. Cloud-synced data is retained as long as your account is active. You may delete your cloud data at any time from the app settings. When you disconnect a third-party account (e.g., Google), all locally synced data from that account is removed from your device.
6. Security
OAuth tokens are encrypted using your operating system's secure storage (macOS Keychain, Windows Credential Manager, or Linux libsecret). All network communication uses HTTPS/TLS. We do not store passwords — authentication with third-party services uses OAuth 2.0 with PKCE.
7. Your Rights
You may at any time:
- Disconnect any connected account from Settings
- Disable cloud sync to keep all data local
- Delete your local database by uninstalling the app
- Request deletion of cloud-synced data by contacting us
8. Changes to This Policy
We may update this privacy policy from time to time. Changes will be posted on this page with an updated revision date.
9. Contact
If you have questions about this privacy policy, please contact us at privacy@synagize.com.