Privacy
Privacy Policy
Sunny Life Hub is built to help you organize tasks, plans, routines, notes, groceries, calendars, documents, shared workspaces, optional wellness data, and AI guidance in one calm place.
Last updated: October 5, 2026What We Collect
Depending on how you use Sunny, we may collect:
- Account details, such as your email address, name, and sign-in information.
- App content, such as tasks, projects, habits, routines, notes, grocery items, recipes, calendar events, imported calendar files, planner history, settings, workspace choices, partner or family sharing choices, messages, and feedback.
- Voice and AI content, such as transcripts, prompts, responses, and voice requests when you use Sunny's AI or speech features.
- Optional connected email data, such as Gmail message headers, sender and recipient addresses, subjects, previews, message bodies, and drafts when you connect Gmail and use email features. Email summaries or details you choose to save in Sunny may also become app content.
- Optional connected calendar data, including event titles, dates, times, locations, and busy/free status from a calendar you choose to connect. Sunny keeps a private account snapshot for display and planning, with encrypted provider credentials. This connection does not read event descriptions, attachments, or attendee lists and does not change your provider calendar. Disconnecting removes Sunny's cached connection and events.
- Files and images, such as imported documents, photos, project media, feedback screenshots, or attachments you choose to upload.
- Optional wearable and wellness data, such as sleep, readiness, activity, workouts, heart rate, heart rate variability, resting heart rate, steps, active energy, SpO2, provider account status, and related daily summaries when you connect a supported provider like Oura, WHOOP, Fitbit / Google Health, or Apple Health through a supported app flow.
- Connection data, such as OAuth authorization status, provider identifiers, access scopes, sync timestamps, encrypted access tokens, and refresh tokens needed to keep a connected service working.
- Usage and device information, such as browser type, device permissions, notification or microphone settings, app errors, and general activity needed to run and improve the app.
- Optional background reminders, including an encrypted browser push subscription and reminder identifiers, scheduled times, and categories. Push jobs and notifications do not contain your task titles or calendar details. Turning off background reminders for a browser removes its subscription and pending jobs.
- Payment information handled by Stripe. Sunny does not store your full card number.
App Usage and Service Diagnostics
Sunny's owner can review account email addresses, account creation and sign-in times, AI feature counts, token totals, daily AI credit counts, and estimated provider costs to support beta testing, control spending, and operate the service. The owner usage dashboard does not include the contents of your notes, messages, prompts, recordings, files, or health records. It does not record your screen or every tap.
We also count authenticated requests and response outcomes for supported AI, email, and feedback endpoints. These diagnostic counts contain fixed feature labels and status categories, not request bodies, message text, or detailed error messages. These counts are kept for up to 30 days in the running server's memory and reset when that server restarts. Saved AI usage and account records are separate.
During onboarding, Sunny records fixed progress points, whether voice, typing, or the form was used, approximate time between progress points, completion or exit, return sessions, and fixed technical error categories. These records do not contain onboarding answers, transcripts, recordings, prompts, or screen captures. Saved onboarding diagnostics are kept for up to 90 days and are visible only to authorized Sunny owners.
Website Analytics
Sunny uses first-party website analytics to understand which public pages are visited, how visitors found Sunny, and whether actions such as opening the app or requesting beta access are completed. Analytics records may include an IP address, approximate city, country and state or regional location, a temporary browser-session identifier, referral source, page path, device category, and event time. Raw IP addresses are restricted to authorized Sunny owners and are configured for removal after approximately 90 days; broader location and aggregate event totals may be retained longer. Approximate city, country and region may be supplied by Sunny's hosting infrastructure or determined through an IP geolocation service provider. IP-based location may be affected by mobile networks, proxies, or VPNs. This measurement does not use analytics cookies. Analytics records do not include names, email addresses, beta-request messages, or form answers. Sunny honors supported Global Privacy Control and Do Not Track signals by not recording these marketing analytics events.
How We Use It
We use this information to:
- Provide the Sunny app and keep your data synced across devices.
- Power AI planning, voice commands, transcription, and speech features.
- Provide the optional email workspace and user-requested email search, summaries, drafting, sending, and moving messages to Trash.
- Connect supported wearable or health services that you choose to link, sync the data you authorize, and summarize wellness patterns inside Sunny.
- Support partner and family sharing features you choose to enable.
- Provide reminders, alerts, onboarding, account repair, settings, document tools, and workspace recovery features.
- Process subscriptions, trials, coupons, and billing through Stripe.
- Debug issues, respond to feedback, improve the product, and keep the service secure.
Optional Gmail Connection
Connecting Gmail is optional. If you approve access, Sunny uses the Gmail API to
list and search messages, open relevant messages, create drafts, send email only
after your confirmation, and move selected messages to Trash. Sunny does not
permanently delete Gmail messages. The Gmail permission requested for these
features is gmail.modify.
Sunny retrieves email data to provide the email features you use. When you ask Sunny to summarize an inbox, plan from an email, or help write a reply, relevant message content and your instructions may be processed by Sunny's server and its AI provider, including OpenAI, to fulfill that request. We do not use Gmail data to serve ads, sell it, or train or improve a general-purpose AI model. Gmail data is not used for unrelated marketing analytics.
Sunny stores connection details and encrypted authorization tokens on its server to maintain the connection. Your email messages and Gmail drafts remain in your Gmail account; Sunny does not maintain a separate full copy of your inbox. Content you choose to save in Sunny, including chat responses, summaries, tasks, or notes derived from email, may remain in your Sunny account until you delete it or request help with deletion.
You can disconnect Gmail in Sunny or revoke Sunny's access in your Google Account. Disconnecting removes Sunny's saved authorization tokens and stops new Gmail access; it does not delete messages or drafts in Gmail or content already saved in Sunny. For help accessing or deleting Sunny data, email hello@sunnylifehub.com.
Sunny's use of information received from Google Workspace APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.
Website Requests
When you ask Sunny to contact a business through a public website form, Sunny saves an encrypted inquiry draft and reads the form. Your proposed contact details and message stay in Sunny until you approve the fields and destination in the review screen. Approved details are then sent to that website and its form-processing services. Standard forms run on Sunny's Render backend; interactive forms, when enabled, use Browserless browser infrastructure. Browserless can process the visited website and the approved form fields. CAPTCHA, account login, payment, signatures and required file uploads need a separate website step. Saved request job records are retained for up to 30 days, and unsubmitted reviews expire after seven days. Copies in your chats, notes or exports follow those items' normal retention. You can cancel a request before submission starts and include retained request records in your account data export. A request already sent cannot be recalled. Sunny records whether the website confirmed receipt; confirmation does not mean the business accepted an appointment or quoted a price.
Google User Data: Sharing, Transfers, and Disclosures
This section applies to data Sunny receives through Google APIs, including Gmail account and connection details, message headers and content, drafts, authorization tokens, and information derived from that data, such as email summaries. Sunny shares, transfers, or discloses this data to the following recipients for the purposes described below, not for those recipients' unrelated advertising or marketing purposes.
- Render (application hosting): Sunny's backend runs on Render. Google account connection details, authorization tokens, and the email data needed for your request are processed on this infrastructure to connect to Gmail, retrieve messages, and carry out the email features you use.
- Cloudflare (network delivery and security): Requests to Sunny's hosted service pass through Cloudflare's network. Cloudflare processes network information and traffic that may contain Google data in transit to deliver and protect the service.
- Supabase (account database and storage): Supabase stores your linked email address, connection status, granted permissions, sync details, and encrypted Google authorization tokens. It also stores email-derived chat history, summaries, notes, tasks, or other content saved to your Sunny account for account synchronization and the features you use. This is not a separate full backup of your Gmail inbox.
- OpenAI (AI and voice processing): When you use Sunny's email assistance, relevant email subjects, senders, recipients, message content, your instructions, and associated conversation context may be sent to OpenAI to produce summaries, planning help, drafts, or replies. If you discuss email by voice or request a spoken response, related audio, transcripts, or response text may also be processed by OpenAI. Sunny does not send Google OAuth access or refresh tokens to the AI provider. AI processing does not imply zero retention; see OpenAI's API data controls for its processing and retention practices.
- Google and the email recipients you select: Sunny sends the message and addressing information you approve to Google's Gmail API to create drafts or send email. Sending delivers that information to the To, Cc, and Bcc recipients you select and their email service providers. Saving a draft alone does not send it to those recipients.
- People you choose to share with: If you put an email-derived summary, note, task, or other content in a shared Sunny area, or choose to send or export it, the people you select can receive that content. Connecting Gmail alone does not give other Sunny users access to your mailbox or authorization tokens.
- Resend and Sunny support (feedback you submit): If you include Google data in an in-app feedback message or screenshot, Resend delivers that submission to Sunny's support inbox, where authorized support personnel and their email provider can receive it. Supabase stores the submitted feedback. Resend is not used to read your Gmail inbox or send mail from your connected Gmail account.
Service providers receive Google data to deliver the features you authorize and operate and secure those services. Providers for unrelated functions, such as payment processing or marketing analytics, do not receive Gmail message content through the Gmail integration. If you include email content in a support request, feedback report, or screenshot, the support personnel and providers handling that request may receive the content you submit. Review that content before sending it.
Sunny does not sell Google user data, disclose it to data brokers or advertising networks, use it for targeted advertising or credit decisions, or use it to train or improve general-purpose AI or machine-learning models. These limits also apply to information derived from Google data. We do not permit our service providers to use Google user data for these purposes on our behalf.
Human access to Google data is restricted to specific content you agree to share for support, access necessary to investigate security issues or abuse, or access required by law. We may disclose the necessary data to security service providers or competent authorities for those security or legal purposes. A transfer as part of a business sale or merger would require your prior explicit consent. The general service-provider descriptions elsewhere in this policy do not expand these Google-data permissions.
Wearable and Health Connections
Wearable and health integrations are optional. If you connect a provider such as Oura, WHOOP, Fitbit / Google Health, or Apple Health, Sunny may request permission to read selected wellness data from that provider. The exact data available depends on the provider, your device, your account, and the permissions you approve.
Sunny uses this data for personal organization and wellness reflection, such as showing sleep, recovery, activity, or HRV patterns. Sunny is not a medical device, healthcare provider, or emergency service, and wearable data should not be used as a substitute for professional medical advice.
You can disconnect a provider in Sunny where supported, and you may also revoke access through the provider's own account or app settings. Disconnecting stops new syncs, but previously synced Sunny data may remain in your account unless deleted or removed through a support request.
AI and Voice Processing
When you use AI or voice features, your prompts, transcripts, app context, and generated responses may be processed by AI or voice providers, including OpenAI. App context may include relevant tasks, habits, calendar items, notes, files, settings, memories, relevant connected email content, and optional wellness summaries when needed to answer your request. Do not enter sensitive information you do not want processed by these services.
AI Is Not Professional Advice
AI-generated guidance may be incorrect, incomplete, or outdated and should not be relied on for medical, legal, financial, investment, tax, emergency, or other professional decisions. Sunny is meant to support planning and organization, not replace qualified professionals or emergency services.
Sharing With Other People
Sunny includes partner and family sharing features. Only areas you choose to share should be visible to connected people, such as shared groceries, calendar items, projects, tasks, notes, habits, messages, or routines. Private areas should stay private unless you explicitly share them. Avoid adding sensitive wellness, financial, or personal information to shared areas unless you intend the connected people to see it.
Service Providers
Sunny relies on trusted service providers to run the product, including hosting, database, AI, voice, payment, domain, email, analytics or diagnostics, and connected wearable or health services you authorize. These providers process data as needed to provide their services to Sunny.
Your Choices
- You can sign out of the app at any time.
- You can disconnect optional wearable or health providers and revoke provider access in the provider's own settings.
- You can disconnect Gmail in Sunny or revoke Sunny's access in your Google Account.
- You can control microphone and notification permissions in your browser or device settings.
- You can avoid AI and voice features if you do not want content sent to AI providers.
- You can request help with data access or deletion by emailing hello@sunnylifehub.com.
Security
We use reasonable safeguards for a developing product, but no online service is perfectly secure. Please use a strong password and avoid storing extremely sensitive information in Sunny. OAuth tokens for connected email and health providers are stored separately from normal app content and protected with server-side safeguards.
Children
Sunny is not intended for children under 13.
Changes
We may update this policy as Sunny grows. If we make important changes, we will update this page and may provide additional notice in the app or by email.
Questions? Email hello@sunnylifehub.com.