TaskFox
FeaturesIntegrationsPricing
Open TaskFox

Privacy Policy

Effective date: July 21, 2026
Service: taskfox.ru
Contact: taskfoxai@gmail.com

Data TaskFox processes

TaskFox processes Telegram account identifiers and profile information, messages from Telegram Business chats explicitly connected by the user, and task data derived from those messages, including a task title, deadline, priority, source chat and completion status.

When a user connects Google, TaskFox stores the OAuth scopes granted by the user and an OAuth refresh token. Short-lived Google access tokens are held in memory only. When the user exports an item, TaskFox may store the identifier and link returned by Google for the created Calendar event or Google Task.

How Google user data is used

TaskFox requests only calendar.events and tasks. These permissions are used solely to create a Google Calendar event or Google Task selected by the user. TaskFox does not list, read, modify or delete the user's existing Google Calendar events or Google Tasks.

Google user data is not sold, used for advertising, used to build advertising profiles, or used to train generalized AI or machine-learning models. Google OAuth tokens and data returned by Google APIs are not sent to external AI providers.

Sharing, transfer and disclosure

TaskFox transfers data to Google LLC only as necessary to complete the OAuth flow and the user-requested creation of a Calendar event or Google Task. TaskFox uses infrastructure providers, including Yandex Cloud for application hosting and, when configured, Upstash for persistent storage. These providers process data only to operate and secure TaskFox and may not use it for their own advertising purposes.

Telegram message excerpts may be processed by the configured AI service provider solely to identify tasks. This does not include Google OAuth tokens or data received from Google APIs. TaskFox does not disclose personal or Google user data to other third parties except when required by law, necessary to investigate abuse or a security incident, or explicitly requested by the user.

Data protection mechanisms

  • HTTPS/TLS protects data transmitted between the user, TaskFox and external APIs.
  • Production secrets and OAuth credentials are kept outside the public source code and are available only to the application process and authorized operators.
  • Google refresh tokens are not displayed in the user interface or written to application logs; short-lived access tokens are not persisted.
  • The OAuth callback uses a signed, time-limited state value to prevent unauthorized account linking.
  • TaskFox follows least-privilege access and requests only the two scopes required for user-initiated export.
  • Persistent infrastructure is access-controlled, and operational access is limited to maintenance, security and user-requested support.

Retention, deletion and revocation

Task and account data is retained while the user uses TaskFox. A user can remove their tasks and settings in the Mini App. Disconnecting Google revokes the Google token and removes the stored Google connection from TaskFox. A user may also revoke access from their Google Account permissions page. Deletion or access requests may be sent to taskfoxai@gmail.com.

Google API Services User Data Policy

TaskFox's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.


Политика конфиденциальности

Дата вступления в силу: 21 июля 2026 года
Сервис: taskfox.ru
Контакт: taskfoxai@gmail.com

TaskFox обрабатывает идентификатор и профиль Telegram, сообщения только из явно подключённых пользователем Telegram Business чатов и извлечённые из них сведения о задачах. После подключения Google сервис хранит выданные разрешения и refresh token. Краткосрочный access token используется только в памяти.

Разрешения calendar.events и tasks используются исключительно для создания выбранного пользователем события Google Calendar или задачи Google Tasks. TaskFox не читает список существующих событий и задач Google, не продаёт данные, не использует их для рекламы и не передаёт Google-токены или полученные от Google данные внешним AI-провайдерам.

Данные передаются Google LLC только для OAuth и выполнения запрошенного пользователем экспорта. Для работы инфраструктуры используются Yandex Cloud и, если настроено, Upstash. Фрагменты сообщений Telegram могут обрабатываться настроенным AI-провайдером только для распознавания задач; Google-токены и данные Google API в такую обработку не входят.

Передача защищена HTTPS/TLS. Секреты хранятся вне публичного кода; refresh token не показывается в интерфейсе и не записывается в логи; OAuth callback защищён подписанным ограниченным по времени параметром state; доступ операторов ограничен обслуживанием, безопасностью и запрошенной пользователем поддержкой.

Пользователь может удалить задачи и настройки в Mini App, отключить Google в TaskFox или отозвать доступ в настройках Google-аккаунта. Запросы на доступ и удаление принимаются по адресу taskfoxai@gmail.com.

© 2026 TaskFoxTerms of Use