Privacy Policy

Last updated: March 15, 2026

1. Introduction

This Privacy Policy explains how mday.io ("we", "us", "the Service") collects, uses, and protects your personal information. We are committed to safeguarding your privacy and handling your data transparently.

2. Information We Collect

Information you provide

  • Account information: name, email address, and password when you register
  • Google OAuth: name, email, and Google profile ID if you sign in with Google
  • Payment information: billing details processed by our payment provider (we do not store full card numbers)
  • User content: tasks, time logs, notes, and settings you create in the Service

Information collected automatically

  • Usage data: pages visited, features used, and interaction patterns via Google Analytics
  • Device information: browser type, operating system, and screen resolution
  • IP address: for security, fraud prevention, and approximate location
  • Cookies: essential cookies for authentication and optional analytics cookies

3. How We Use Your Information

We use your information to:

  • Provide, maintain, and improve the Service
  • Process payments and manage subscriptions
  • Send transactional emails (account confirmation, payment receipts, subscription updates)
  • Analyze usage patterns to improve the product
  • Prevent fraud and abuse
  • Respond to support requests

We do not sell your personal data to third parties. We do not use your task content or time logs for advertising.

4. Third-Party Services

We use the following third-party services:

  • Google Analytics: for anonymous usage analytics and product improvement
  • Google OAuth: for social sign-in (only if you choose to use it)
  • Payment processor (Flitt): for processing payments securely
  • Jira (Atlassian): for task synchronization (only if you connect your Jira account)

Each third-party service has its own privacy policy. We only share the minimum data necessary for each integration to function.

5. Data Storage and Security

Your data is stored on secure servers. We use encryption in transit (HTTPS/TLS) and encrypt sensitive data at rest, including payment tokens and integration credentials. We implement access controls, regular backups, and security monitoring to protect your information.

6. Data Retention

We retain your data for as long as your account is active. If you delete your account, we will delete your personal data within 30 days, except where we are required to retain it by law (e.g., payment records for tax compliance). Anonymous, aggregated data may be retained indefinitely for analytics.

7. Cookies

We use the following types of cookies:

  • Essential cookies: required for authentication and core functionality (always active)
  • Analytics cookies: Google Analytics cookies for understanding usage patterns

You can disable analytics cookies in your browser settings. Disabling essential cookies may prevent the Service from functioning properly.

8. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access — request a copy of your personal data
  • Correction — update inaccurate personal information
  • Deletion — request deletion of your account and data
  • Export — receive your data in a portable format
  • Object — opt out of certain data processing activities

To exercise any of these rights, contact us at privacy@mday.io.

9. Children's Privacy

The Service is not intended for children under 16 years of age. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.

10. International Data Transfers

Your data may be processed in countries other than your own. We ensure appropriate safeguards are in place for international transfers of personal data, in accordance with applicable data protection laws.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify users of significant changes via email or in-app notification. The "Last updated" date at the top reflects the most recent revision.

12. Contact

For any privacy-related questions or requests, contact us at privacy@mday.io.