1. Who We Are and Scope of This Policy
Eutunia is currently operated by Dennis Yao (姚順) in his personal capacity (the "Service" or "we"). This policy describes personal data collection, processing, use, and related choices when you visit eutunia.com and its subdomains or use the Service.
Data comes from content provided by you or workspace members, third-party services you authorize, and records generated by features. When providing other people's data or using meeting audio or video recording, you or your team should confirm the necessary permissions, notices, and consent.
Contact email: dennis.yao@eutunia.com.
2. What Data We Collect
Depending on the features you use, the categories of data processed are:
- Account and workspace data: name, email, Google account avatar, workspace and role information, and customer companies, contacts, tasks, notes, interaction records, and content drafts added by you or members.
- Google sign-in and authorization data: basic identity information from Google; access tokens, refresh tokens, granted scopes, and service connection status when connecting integrations.
- Gmail data: when you connect a mailbox and use contact scanning, recent thread senders, recipients, Cc, subjects, times, interaction counts, and Google-provided snippets are read to identify business contacts and company domains. Full email bodies, subjects, and snippets are not included in the contact import from this scanning flow. Scan results include contacts and interaction counts; confirming an import saves selected contact names, emails, and company domains. Sending processes the recipients, subject, and content you confirm, and stores interaction records such as send time, subject, and Gmail thread ID.
- Calendar and meeting data: calendar event titles, times, attendees, meeting links, and the audio, video, transcripts, speaker information, and analysis results produced when you use calendar or meeting-recording features. AI features may also process relevant customer context, historical interactions, meeting goals, and content you enter.
- Google Drive data: the customer folder configuration feature uses the configuring person's Google authorization to read the designated item's ID, name, type, trash status, shared drive ID, resource key, and shortcut details to validate the folder location. The workspace stores the configured folder ID, display name, and configuration and update records.
- Other integration data: channels, messages, member information, and connection data processed according to the feature and granted permissions when using integrations such as Slack.
- Technical and operational records: cookies, preferences in browser local storage, and IP addresses, device and browser information, request, error, security, website traffic and performance, and usage records that service operation may generate.
You can choose not to provide data or grant integration permissions. Without data necessary to create or verify an account, registration or sign-in may not be possible. Not connecting an integration affects features that depend on it.
3. How We Use Data
Data is used for the following purposes related to the Service:
- Creating and verifying accounts and managing workspaces and access permissions.
- Storing, displaying, and managing customer, contact, interaction, meeting, task, and draft data added by you or members.
- Providing the contact scanning and import, email sending, calendar, meeting-recording, and customer folder configuration features you use.
- Providing enabled AI features such as summaries, content drafts, and meeting analysis.
- Measuring website traffic and performance, and handling service requests, errors, abuse, security incidents, and usage management.
- Meeting applicable legal obligations and handling disputes where legally necessary.
For these purposes, data is received, recorded, retrieved, displayed, analyzed, and transmitted as needed through the Service and the software, APIs, and storage systems of providers it uses. Google user data is subject to the additional restrictions in the next section.
4. Special Notes on Google User Data
The relevant Google permissions and uses covered by this policy are:
openid,userinfo.email, anduserinfo.profile: Google sign-in and basic account information.gmail.readonly: the business contact and company-domain scanning described above.gmail.send: sending messages through Gmail that you review and confirm in Eutunia.calendar.events.readonly: reading calendar events to display schedules and provide enabled meeting-recording features.drive.readonly: read-only Google Drive access. Google's permission description can cover files accessible to the account. The customer folder configuration use covered by this policy reads the designated item's metadata described above and stores the folder location.
In this section, "Workspace data" means data obtained through Google Workspace permissions, including Gmail, Calendar, and Drive, and data derived from it. The following Limited Use restrictions apply to this data.
Use of Workspace data is limited to purposes disclosed in this policy and permitted by Google policy. User-facing features must be visible and prominent in the product. Workspace data must not be used for sale to data brokers, advertising, credit or lending decisions, surveillance, or creating, training, or improving AI/ML models beyond the uses permitted by Google policy, including generalized models.
Transfers of Workspace data are limited to providing the above features with user consent, necessary security or legal purposes. A transfer of Workspace data as part of a merger, acquisition, or asset sale requires the user's explicit prior consent.
Human access to Workspace data is limited to documented explicit consent to view specific data, necessary security or legal purposes, or aggregated and anonymized internal operations data permitted by Google policy and applicable law.
Calendar and meeting-recording features send the Google authorization credentials, calendar data, and meeting data needed for the feature to Recall.ai. AI analysis features send relevant transcripts and context needed for analysis to Anthropic. These uses and recipients are also subject to this section's restrictions.
Eutunia's use and transfer of Google data is subject to the Google API Services User Data Policy. Workspace data is also subject to the Limited Use requirements.
Eutunia's use and transfer of information received from Google Workspace scopes will adhere to the Google User Data Policy, including the Limited Use requirements.
5. Data Recipients
Depending on the feature and necessary processing purpose, data recipients include:
- Workspace members: data added to the workspace is visible according to product permissions, including import results, interactions, meeting data, and configured folder locations. This sharing does not give other members an individual's Gmail or Drive authorization credentials.
- Service providers: Vercel, Supabase, and Cloudflare provide hosting, database, authentication, or website infrastructure; Google and Slack process their respective integrations; Recall.ai processes calendars and meeting recording; Anthropic processes AI analysis; Inngest processes background jobs; Resend processes service emails. Data provided to each provider depends on the feature used. Google data processing is subject to the policies described in section 4.
- Legally authorized recipients: recipients necessary to meet applicable law or lawful requests from courts or competent authorities, or handle security incidents or disputes as permitted by law.
Data processing associated with an operator change, merger, acquisition, or asset sale is governed by applicable law. Transfers of Workspace data also require the prior consent described in section 4.
6. Where Data Is Processed
Data may be processed in Taiwan, the United States, Japan, and regions where the above providers deliver their services. Processing locations depend on the services used and their infrastructure, and data protection rules may differ between regions. Applicable law and the Google data restrictions in section 4 continue to apply to cross-border transfers.
7. Data Retention and Deletion
- Retention period: account, workspace, integration, and saved content data is retained for the period necessary to provide the features used. When the purpose ends or the retention period expires, data is deleted or its processing or use stops as required by applicable law. Deletion requests are handled under applicable law and Google policy. Retention exceptions must meet conditions allowed by applicable law or Google policy; system limitations do not remove required deletion obligations.
- Disabling services and revoking authorization: disabling an individual Google service in Eutunia changes only its enabled setting in the current workspace. It does not automatically revoke Google authorization or delete access tokens, refresh tokens, or Recall.ai calendar connections. Disabling Calendar and stopping a meeting-recording connection are also separate actions.
- Google revocation: you can revoke Eutunia's authorization in your Google Account. Revocation and deletion of saved data are separate actions. Revocation does not automatically delete imported contacts, sending records, folder locations, or completed meeting data.
- Deletion requests: use deletion features provided in the product, or email dennis.yao@eutunia.com and specify the data or account. Requests require necessary identity, authority, and applicable-condition checks and are handled under section 8. Shared workspace data may involve other people's rights and legally necessary retention.
- Backups, logs, and third-party records: their handling may not occur at the same time as changes to live data and is subject to the relevant systems and legal retention conditions. Legal obligations to delete or stop processing or use still apply.
8. Your Choices and Rights
Under applicable law, you may request access or review, a copy, supplementation or correction, cessation of collection, processing, or use, and deletion of personal data.
You can:
- Use the individual integration and meeting-recording connection controls provided in the product.
- Revoke Eutunia's Google authorization on your Google Account third-party connections page.
- Use available deletion features, or email dennis.yao@eutunia.com with the account and data involved to make the requests above.
Requests may require reasonable proof of identity, representative authority, or workspace permissions. Decisions, time limits, necessary charges, and lawful grounds for refusal, restriction, or retention are governed by applicable law. Reasons or notices are provided where legally required.
If data was provided by a business or team, that organization may need to confirm processing matters it is responsible for. You may still contact us at the email above. This policy does not exclude or restrict personal data rights that cannot lawfully be waived in advance.
9. Cookies and Local Storage
Sign-in services use cookies to maintain sessions. The website uses browser local storage to remember language choices and Cloudflare Web Analytics website code to measure traffic and page performance. Cloudflare processes the related technical data. You can manage or clear cookies and local storage through browser settings; disabling them may affect sign-in or saved preferences. Restrictions on advertising uses of Workspace data are in section 4.
10. Data Security
The Service uses HTTPS transmission and account and workspace permission controls. Data security measures and incident handling are governed by applicable law and Google policy. This does not mean any system, provider, or transmission method can guarantee freedom from risk, and does not affect legally required responsibilities.
11. Minors
The Service is designed for business work and is not directed at children. Data involving minors and eligibility to use the Service are subject to applicable law and any required legal representative consent. Questions may be sent to the email in this policy.
12. Changes to This Policy
Policy revisions appear on this page with an updated date. If new or changed data processing requires additional notice or consent under applicable law or Google policy, those requirements apply before that processing starts.
13. Contact
- Service name: Eutunia
- Operator: Dennis Yao (姚順), operating in a personal capacity
- Email: dennis.yao@eutunia.com
- Website:
https://eutunia.com
This policy describes data processing and related rights. It is not a commitment to features that are not provided or to a particular service level.