Effective July 9, 2026. Whensdays is a scheduling app at whensdays.com, operated by Whensdays LLC ("we", "us"). This page explains what we collect and how it's used.
If you choose to connect Google Calendar, we request read-only access (the calendar.readonly scope) and use it solely to:
We never modify your calendar, never share its contents with other users (others see only busy/free effects on your availability, not event details), and never use it for advertising. OAuth tokens are encrypted at rest (AES-256-GCM). Disconnecting your calendar in the app deletes the stored tokens immediately.
Apple Calendar (CalDAV): if you connect Apple Calendar, you provide an app-specific password (never your main Apple password). We store it AES-256-GCM encrypted, use it read-only against Apple's calendar servers for the same two purposes above, and delete it immediately when you disconnect. Published calendar links (the fallback option) are stored as the URL you pasted.
Whensdays' use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
We send transactional email only (invites, reminders, activity digests, cancellations) via our email provider. Every email includes a one-click mute link, and digests keep volume low. We do not send marketing email or share your address.
Your data is kept while your account is active. To delete your account and its data, or for any privacy question, email [email protected] and we'll complete it within 30 days.
If this policy changes materially, we'll note it here with a new effective date.