Last Updated: June 2026
Protecting your personal data is a top priority for us. This Privacy Policy informs you about how we process your information when using Davo Workspace.
The entity responsible for data processing under the EU General Data Protection Regulation (GDPR) and international privacy frameworks is:
To provide you with the services of Davo Workspace, we process the following data categories:
Davo is not a medical device and is intended solely for administrative, stimulus-reduced organizational assistance. Users are strictly requested **not to input any sensitive personal data, medical diagnoses, or mental health histories** into the platform. We do not intentionally collect or process data falling under Art. 9 GDPR or sensitive health-related data definitions under US state privacy laws.
1. Performance of Contract (Art. 6(1)(b) GDPR): Your account, chat contents, and file processing are handled strictly to fulfill our software provision obligations (SaaS).
2. Legitimate Interests (Art. 6(1)(f) GDPR): Logging anonymized consent parameters represents our legitimate legal interest in establishing a verifiable defense chain against potential liability claims in global jurisdictions, including the United States.
1. To process and structure your data, text and files are transmitted via secure, encrypted TLS APIs to external artificial intelligence infrastructures.
2. Under strict Data Processing Agreements (DPA), we guarantee that your data **is never utilized for training public AI models** and is deleted or cached strictly within your private database environment after execution.
1. Access and Collected Data: When you register or log in to Davo using your Google account (Google Sign-In), we only request your primary Google email address and your basic profile information (name, profile picture). If you also activate the optional Google Calendar synchronization feature in your profile, the software accesses the appointment data of your primary Google calendar via the Google API in read-only mode (calendar.events.readonly). No other sensitive data, contacts, or Google Drive contents are requested or read.
2. Purpose of Data Use: Your profile and email data are used exclusively to create your user account, to uniquely authenticate you during login, and to provide you with secure access to the Davo Workspace. The optional calendar data is processed purely temporarily to display your upcoming appointments chronologically on your personal timeline within the Davo Workspace and to structure them in a distraction-free manner.
3. Compliance with Google Policies (Limited Use): Davo's use and transfer to any other app of information received from Google APIs will adhere to Google API Services User Data Policy, including the Limited Use requirements.
4. No Transfer, Disclosure, or Use for AI Training: Your user data obtained via Google will at no time be shared with, sold to, transferred to, or disclosed to third-party providers or advertising networks. All Google user data is processed in strict isolation and is completely excluded from being transmitted to external AI infrastructures (as described in § 5). No data obtained via Google APIs will ever be used to train large language models (AI).
5. Data Protection Mechanisms for Sensitive Data: The protection of your Google user data is ensured by modern security standards. All data transmissions between Google, our application, and your browser take place via encrypted HTTPS connections (SSL/TLS). Access to the internal databases is strictly restricted and secured against unauthorized external access.
6. Retention and Deletion of Google Data: Your Google profile data is stored as long as your user account with us is active. If you deactivate the calendar synchronization in your profile, all temporarily loaded appointment data will be discarded immediately. You can completely and irrevocably delete your entire user account and all associated Google data at any time either independently via the Davo Workspace user interface or by sending an informal email to support@askdavo.com.
Depending on your location (GDPR/UK-GDPR/CCPA/APPI), you have the right to request **Access, Rectification, Portability, and Complete Erasure (Right to be Forgotten)** of your data. You may irrevocably delete your chats or account at any time within the platform UI, which immediately purges the information from our active MySQL servers.