Privacy Policy
Fiona · Last updated 27 August 2026
Fiona is a personal task-scheduling assistant used through Telegram and connected to Google Calendar. It is a private tool used by its owner, not a public service. This policy describes exactly what it accesses, where that data goes, and how to stop it.
Data it accesses
-
Google Calendar events — via the
calendar.eventsscope only. It reads existing events to find free time and avoid clashes, and creates or updates events for tasks you confirm. It cannot create or delete calendars, and it has no access to Gmail, Drive, Contacts, Photos, or any other Google service. - Messages you send it on Telegram — the tasks you describe, your answers to its check-ins, and the reasons you give when something did not get done.
Data it stores
Tasks, their estimated and actual durations, the times proposed and confirmed, and a record of check-in answers. This is stored in a database on a private server controlled by the owner, and backed up off-site in encrypted form.
Services that process this data
The assistant does not operate in isolation, and this section is the part worth reading closely.
| Service | What it receives |
|---|---|
| Google Calendar | Event reads and writes, as described above. |
| Google Gemini API | The text of your messages and relevant calendar event titles and times, in order to interpret what you are asking for. This runs on the paid tier, where Google states that submitted data is not used to train its models. |
| Telegram | All messages between you and the assistant, as the platform carrying the conversation, subject to Telegram's own privacy policy. |
| Backup storage provider | Encrypted backup files only. Data is encrypted on the server before it is uploaded, so the provider cannot read its contents. |
Your data is not sold, shared for advertising, or used for analytics, and it is not made available to anyone other than the services listed above, each of which receives only what it needs to do its job.
How long it is kept
- Task and scheduling history — kept for as long as the assistant is in use. This history is what allows it to notice patterns over time, which is a core purpose of the tool.
- Records of requests sent to the language model — kept for 90 days, then deleted.
Security
- Access to Google is limited to the narrowest scope that works: calendar events only.
- The assistant responds to exactly one Telegram account. Messages from any other account are discarded without being processed.
- Credentials are stored on the server with access restricted to the account that runs the service.
- Backups are encrypted before leaving the server.
Revoking access
You can withdraw the assistant's access to your Google Calendar at any time, without needing the assistant itself, at myaccount.google.com/permissions. Access stops immediately. Data already stored can be deleted on request using the contact below.
Changes to this policy
If what the assistant does with data changes, this page is updated and the date at the top changes with it.
Contact
Questions about this policy, or requests to delete stored data: samichealakinyoola99@gmail.com