Legal

Privacy Policy

Last updated: September 2026.

Note: this is a plain-language draft written to be honest and specific about what Dayrail actually does, not a substitute for legal advice. Before relying on it — including for Stripe's subscription requirements or Google's OAuth verification review — have it checked by a lawyer familiar with privacy law in the jurisdictions where you have users.

What we collect

When you sign in with Google, Dayrail receives your name, email address, and a profile identifier from Google. If you grant Calendar access, Dayrail also receives read and write access to your Google Calendar events.

Dayrail stores the tasks you create (title and duration), the times you schedule them, and, for tasks you schedule, the identifier of the Google Calendar event created for that task. This data is stored in Dayrail's database, hosted on Cloudflare.

How we use your Google Calendar data

Dayrail requests Google Calendar access to:

Dayrail does not read, modify, or delete calendar events that you did not create through Dayrail, other than displaying their time and title so you can see your day.

What we don't do

Data retention and deletion

Your task and schedule data is retained for as long as your account is active. If you'd like your account and associated data deleted, contact us at the address below and we'll remove it.

Cookies

Dayrail uses a signed session cookie to keep you logged in, and a small cookie to remember whether you've seen today's morning planning screen. Neither is used for advertising or tracking across other sites.

Third-party services

Dayrail is built on Cloudflare (hosting and database) and Google (sign-in and Calendar API). Each has its own privacy policy governing how they handle data on their end.

Changes to this policy

If this policy changes materially, we'll update the date at the top of this page.

Contact

Questions about this policy or your data can be sent to hello@dayrail.app.