Privacy notice
Your data, in plain language.
Dory helps you turn commitments into a clear, workable list. This notice explains what Dory stores, when it reads connected services, which vendors may process data, and how to export or delete your account.
Your choices matter
Email review is off by default. Dory does not automatically scan email unless you explicitly enable Morning review in Settings. Manual Scan now is also a user-initiated action.
What Dory stores
- Tasks and settings: titles, notes, due dates, effort and priority signals, working preferences, focus-session timing, and achievements.
- Connected-service data: Google identity metadata and encrypted refresh tokens, plus calendar, Gmail, Drive, or Notion-derived content that you submit or explicitly ask Dory to use.
- Review and briefing data: proposed email action items and briefing content retained to show you what Dory found and let you Keep or Dismiss it.
- Attachments and access tokens: files attached to your tasks and hashed personal/API token credentials. Raw personal tokens are shown only once when created.
- Agreement record: when you create an account, Dory records that you accepted these terms and this notice — the version and the time — so there is a clear record of what you agreed to. It's included in your data export.
How data is used and shared
Dory uses this information to provide task capture, prioritization, calendar planning, briefings, email review, and related features you choose. Dory does not sell your personal data.
- Supabase hosts the application database, authentication, and file storage.
- Vercel hosts the application and its serverless functions and may receive request/response traffic and runtime logs.
- Anthropic may receive task, briefing, or email-review content when an AI feature using it runs. Email content is sent only as part of a user-enabled or user-initiated email feature.
- Google provides the Calendar, Gmail, and Drive APIs through access you grant. Calendar write access is used only when you activate Push-to-Calendar.
- Groqreceives a short audio clip only when you explicitly use Dory's voice capture. Z.ai is used only when the deployment owner configures it; it does not receive raw email content.
Retention and deletion
Tasks and account settings remain while your account is active. Email review items remain until Keep, Dismiss, or account deletion. Raw briefing payloads are automatically tombstoned after 90 days; derived briefing fields may remain while they support product features. Connected refresh tokens are removed when you unlink the account or delete Dory.
Provider-managed backups may retain deleted records until the provider's backup-retention window expires.
Your rights and controls
- Download your tasks as readable Markdown, or export all Dory account data as complete machine-readable JSON, from Settings.
- Correct, edit, or dismiss content in the app.
- Disable email review and disconnect connected accounts.
- Delete your account and associated data from Settings.
To use these controls, sign in to Dory. For questions or privacy requests outside those controls, contact the Dory security owner through the disclosure channel listed inSECURITY.md.
This notice is the public summary of Dory's Data-Retention-and-Privacy-Policy.md. It is reviewed annually and whenever a new personal-data category is introduced.