SummerCloude

Aide Calendar — Privacy Policy

SummerCloude · Last updated: 20 June 2026

This Privacy Policy explains how SUMMERCLOUDE PTE. LTD. ("SummerCloude", "we", "us"), a company registered in Singapore, handles personal data in connection with the Aide Calendar mobile application for iPhone and iPad ("the App"). This Privacy Policy is written with reference to Singapore's Personal Data Protection Act 2012 (PDPA) and Apple's App Store privacy requirements.

1. What Aide Calendar does

Aide Calendar lets you turn text, screenshots, photos, voice recordings and shared content into calendar events and tasks. To do that, it uses a SummerCloude-operated backend at aidecalendar.summercloude.app (a Cloudflare Worker) which forwards your content to AI providers for extraction, then returns structured events and tasks that are stored within the App and synced across your devices via the same backend.

Sections 4 and 5 explain exactly what leaves your device and to whom.

2. Our approach

3. Account and authentication data

When you sign in, we receive and store on our backend:

Email one-time codes are sent by Resend, Inc. (resend.com), our transactional email provider, under their Privacy Policy. Resend receives your email address solely to deliver the verification code.

Google sign-in uses OAuth 2.0 with PKCE, routed through our backend. Google receives the OAuth exchange under Google's Privacy Policy. We receive only your Google-account email and a unique identifier; we do not receive your Google password or any other Google account data.

4. Data sent to our backend for extraction

When you ask the App to extract an event or task, the relevant content is sent over an encrypted (HTTPS) connection to aidecalendar.summercloude.app, which acts as a proxy: it adds API credentials and forwards the request to the AI providers listed in Section 5. Depending on the input type, this content is:

Our backend does not operate its own database of your raw inputs. Cloudflare collects standard edge logs (IP address, time, response status) used to deliver the service and protect against abuse, under Cloudflare's Privacy Policy.

5. Third-party AI providers we use

Your explicit consent comes first. Before your first AI capture, the App shows a one-time consent screen that names the providers below, explains what each receives, and requires your explicit "I understand and agree" before any AI extraction can take place. You can review the same disclosure at any time via Settings → About → "AI & Privacy". Withdrawing consent is operationally equivalent to deleting your account — see Section 13.

To turn your content into structured events and tasks, our backend sends it to the following third-party AI providers (large language models and speech-to-text), in line with Apple App Review Guideline 5.1.2(i):

Both providers may temporarily retain API inputs and outputs to detect abuse — typically up to 30 days, after which the data is deleted from their systems. We have configured our OpenAI organisation to minimise logging beyond this default. If you do not want your content processed by these providers, do not submit it through the App.

A note on sensitive content. Whatever you share — text, image, or voice — is sent to the AI provider(s) listed above for the time it takes to extract your event. We recommend you avoid sharing sensitive personal information through the App — for example medical details, account numbers, passwords, or other information you would not normally share with a third-party service. Everything you submit — typed text, images, and voice — is sent to OpenAI, our primary AI provider; if OpenAI is unavailable, your text and images may instead be processed by Anthropic Claude as a backup.

6. Data stored on our backend

In addition to account data (Section 3), our backend stores the following data associated with your account:

We do not read the content of your events and tasks in the ordinary course of running the service — it is stored so we can sync it across your devices and assemble your data export. It is protected in transit (HTTPS) and at rest by our infrastructure provider, but it is not end-to-end encrypted, which means it is technically accessible to us.

7. Data that stays on your device

8. Cross-device sync

Your saved events, tasks, and capture history are synced to our backend so they are available on every device you sign in to. Sync happens automatically on launch and when you receive a silent push notification indicating a change on another device. You can sign out to stop sync on a device; signing out clears the locally cached events, tasks, and capture records from that device.

Your app preferences (appearance, default alert and duration times, week start, time format, and voice recognition language) are also stored on our backend, but only to seed your settings once when you first sign in on a new device. After that, each device keeps its own settings — changing a preference on one device does not automatically update it on another.

9. iOS permissions the App requests

Each permission is requested only when the matching feature is used, and only for the purpose described:

9a. Contacts

Aide Calendar can link a person mentioned in a capture to someone in your address book, so you can quickly call, message, or email them. This is optional and works as follows:

10. App Attest

To prevent abuse of our paid backend, the App uses Apple's App Attest framework to verify that requests come from a genuine, unmodified copy of Aide Calendar running on a real Apple device. Our backend stores only a per-device public key and a monotonic counter for this purpose. App Attest data does not identify you personally.

11. Subscriptions and payments

Aide Calendar offers an optional in-app Pro subscription (monthly or annual) delivered through Apple's StoreKit. All payment, billing, renewal and refund handling takes place between you and Apple under Apple's Privacy Policy and the App Store terms. We never see your credit-card number, Apple account password, or other payment credentials. The App sends Apple's StoreKit transaction ID to our backend, which verifies it against Apple's App Store Server API to confirm your subscription tier. Apple processes this verification under their own privacy terms.

12. Data export

You can request a copy of your data from within the App (Settings → Account → Export Data). Our backend assembles a ZIP archive of your account data and makes it available for download in-app and by email. Download links are valid for 7 days, after which you can request a new export.

13. Account deletion

You can permanently delete your account from within the App (Settings → Account → Delete Account). The flow we require depends on whether you have an active subscription and how old your account is:

In all cases, deletion permanently removes your account data, captured events and tasks, capture records, and blob files from our backend. After deletion, signing in with the same Apple, Google, or email identity creates a fresh account with no prior data.

Apple subscriptions are not cancelled by account deletion. Your Pro subscription, if any, is managed by Apple. To cancel it, go to Settings → Apple ID → Subscriptions on your iPhone. Deleting your Aide Calendar account alone does not stop Apple from billing future renewals.

14. Information you send us by email

If you contact us at [email protected], we receive your email address and any information you choose to share. We use this solely to respond to your enquiry and to keep a record of our correspondence. We do not add you to any marketing list.

15. Information we do not collect

16. Apple App Store data

Apple may collect download, crash and aggregated usage information under its own privacy terms when you download the App. If you choose to share anonymous diagnostics with app developers in your iOS settings, Apple may forward non-identifying crash and performance reports to us so we can fix bugs.

16a. Diagnostic error reports

Separately from Apple's diagnostics, the App itself sends a short, pseudonymous error report to our backend whenever something goes wrong on a screen you can see. Each report contains:

These reports never include your event content, photos, voice recordings, or direct identifiers like your name, email, or raw account id. They exist solely to help us fix bugs. The identifier is a one-way hash — the raw user id cannot be recovered from it — but because it is the same hash each time, it links your reports to your account, so they are erased when you delete your account.

You can turn diagnostic reports off at any time: Settings → About → Send diagnostic reports in the App.

17. Data retention

18. International transfers

Our backend runs on Cloudflare's global edge network. Our AI providers (Anthropic, OpenAI) and our email provider (Resend) are based in the United States. By using the App you acknowledge that your account data and content submitted for extraction may be processed in jurisdictions outside Singapore, including the United States.

For users in the European Economic Area, Switzerland, or the United Kingdom, the following safeguards apply:

19. Your privacy rights

SummerCloude is the data controller for your personal data; our AI and email providers act as our processors under our instructions. If you are an individual whose personal data we hold, you may contact us to:

Depending on where you live, you may have additional rights under your local laws — for example Singapore's PDPA, the EU and UK GDPR, the California Consumer Privacy Act (CCPA/CPRA), Canada's PIPEDA, Australia's Privacy Act, or New Zealand's Privacy Act. These may include the right to access, correct, delete, export (data portability), or object to or restrict certain processing, and to withdraw consent. We honor these requests for all users wherever they live: the in-app Export Data and Delete Account tools cover access, portability, and erasure directly, and you can contact us for anything else. We do not sell your personal data, and we do not share it for cross-context behavioral advertising.

Send any such request to [email protected]. You may also delete your account directly from within the App, which removes all personal data we hold about you from our backend.

20. Children's privacy

Aide Calendar is intended for users 16 and over. We do not knowingly collect personal data from anyone under 16. If you are a parent or guardian and believe your child under 16 has created an account — or you otherwise become aware that someone under 16 has signed up — please contact us at [email protected]. We will look into the report and, where we confirm the account holder is under 16, delete the account and its data.

21. Changes to this Policy

We may update this Privacy Policy from time to time. Material changes will be reflected by an updated date at the top of this page.

22. Contact

For any privacy-related question or request, please contact our Data Protection contact at [email protected].

SUMMERCLOUDE PTE. LTD. — registered in Singapore.