Privacy
Your record is yours.
Perfly exists to keep a trustworthy record of your work over years. That only works if you trust us with it — so privacy isn't fine print here, it's the product.
What we store
- Your account email (for sign-in).
- The notes you log, and the structured items Perfly generates from them.
- Basic settings (off-work time, timezone).
- If you connect an optional work service: the connected account or workspace identifier, your selected resources, encrypted credentials, and the lightweight activity records described below.
Optional connected services
Perfly accesses these services only after you choose to connect them. Their data is used to draft your day and create your personal work outputs:
- Google Calendar — event titles, start and end times, event links, and your own RSVP status from your primary calendar. Your RSVP status is used only to exclude events you declined and is not stored.
- GitHub — your GitHub identity, selected repository names and metadata, commit subject lines, and pull request titles, status, timestamps, and links for activity attributed to you. Perfly does not store source code, diffs, issue or pull request bodies, or secrets.
- Jira — your Atlassian account identity, selected Jira sites, and lightweight issue metadata for changes made by your account, including issue summary, key, project, status, type, changed field names, timestamp, and link.
- Notion — your Notion user and workspace identifiers, titles of shared pages for selection, and the title, URL, and last-edited time of a selected page only when you were its last editor.
Perfly does not create, modify, or delete content in these services. The connected services are independent data sources: Perfly does not send data from one connected service to another. You can disconnect any service at any time to stop future access.
What we never do
- We never train AI models on your data.
- We don't sell your data or use it for advertising.
- We request the minimum event scope (
calendar.events.owned.readonly) and query only your primary calendar.
How it's protected
- Encrypted in transit (TLS) and at rest.
- OAuth credentials, refresh tokens, and user-provided GitHub access tokens are stored encrypted.
- Calendar API requests are limited to your primary calendar and events you have not declined.
Service providers we use
To operate Perfly, we use a small set of providers only as needed:
- Authentication and database infrastructure — account access and secure data storage.
- Hosting and delivery infrastructure — operating and delivering the service.
- Google Gemini — turns your notes and connected activity metadata into your structured items, reports, and résumé outputs. Not used to train generalized models on your data.
- Analytics providers — the limited, content-free analytics described below.
Google Workspace API data
For Google Calendar, Perfly requests only event titles, start and end times, event links, and your own RSVP status from your primary calendar. Your RSVP status is used only to exclude events you declined and is not stored. Perfly does not request other attendees' names or email addresses, event descriptions, attachments, shared or subscribed calendars, or write access.
The use of information received from Google Workspace APIs will adhere to theGoogle User Data Policy, including theLimited Use requirements. Google Workspace API data is processed only to provide the requesting user with Perfly's visible daily drafts, history summaries, reports, and résumé features. It is not used to train generalized AI or machine learning models.
Analytics
We use Google Analytics (GA4) to track content-free page views and feature usage. We use Microsoft Clarity session recordings and click/scroll heatmaps only on the public marketing site; Clarity is not loaded in the authenticated Perfly app and does not receive your work records or connected Google Calendar data. We don't use these tools for advertising, and we don't sell this data.
Your control
You can export your data or delete your account at any time from Settings. Deleting removes your record from our database.
Contact
Questions about privacy? Email [email protected].