Privacy Policy

Last updated: December 2025

Status Ninja ("we", "us", "our") is an independent software service operated by an individual based in Ireland. This Privacy Policy explains how we collect, use, store, and protect your information when you use the StatusNinja application and website ("Service").

By using the Service, you agree to the terms of this Privacy Policy.

1. Information We Collect

1.1 Account Information

When you sign in using Google OAuth, we collect:

  • Your email address
  • Account creation date
  • Onboarding progress
  • Optional display name
  • Your selected plan type

We do not collect or store passwords.

1.2 Billing Information (via Stripe)

When you subscribe, Stripe collects and processes:

  • Payment method details
  • Billing address (if required by Stripe)

We receive and store only:

  • Stripe Customer ID
  • Subscription ID & status
  • Trial start/end dates
  • Billing period information

We do not store full card details.

1.3 Integration Tokens (Encrypted at Rest)

To provide the Service, we store OAuth tokens:

Google: Access token, Refresh token, Token expiry

Slack: Access token, Refresh token (if provided), Workspace ID

All tokens are encrypted at rest by Supabase.

1.4 User Preferences & Settings

We store your configuration choices, including:

  • Selected calendars
  • Emoji preferences (event, OOO, focus time)
  • Workday hours and days
  • Privacy mode setting
  • Sync enabled/disabled

1.5 Operational Sync State (Ephemeral Data)

To power automated status updates, we store lightweight progress data:

  • Last synced event ID
  • Last Slack status text/emoji
  • Last sync timestamp

2. Information We Do NOT Store

StatusNinja does not store:

  • Calendar event titles
  • Event descriptions
  • Event attendees
  • Event notes
  • Google email content
  • Slack messages or message history

We only read event metadata in real time to update your Slack status.

3. How We Use Your Information

We use your data to:

  • Authenticate you via Google
  • Read calendar metadata to determine your current event
  • Update your Slack status based on rules you configure
  • Manage your subscription and billing
  • Provide customer support
  • Maintain and improve the Service

We do not sell or rent your data to third parties.

4. Third-Party Services

We integrate with the following providers:

Google Calendar API — Used to read event metadata. You may revoke access at any time at myaccount.google.com/permissions

Slack API — Used only to update your Slack status. You may revoke access in Slack App Management.

Stripe — Used to process payments and manage subscriptions.

Supabase — Used as our secure database provider.

Vercel / Railway — Used for hosting frontend and backend infrastructure.

5. Data Retention

We retain data for as long as your account is active.

When you delete your account:

  • OAuth tokens are immediately deleted
  • User settings and sync state are deleted
  • Billing data is retained only as required by Stripe and tax regulations

6. How You Can Delete Your Data

You may delete your entire account from within the app under Account → Delete Account.

You may also request deletion via email: support@statusninja.app

Deletion is permanent and cannot be undone.

7. Security

We implement the following security measures:

  • OAuth tokens encrypted at rest
  • HTTPS enforced in production
  • Minimal-scope OAuth permissions
  • No storage of event content
  • No access to Slack messages
  • Principle of least privilege throughout the system

While no online service is perfectly secure, we take reasonable steps to protect your information.

8. Your Rights (GDPR)

As an EU resident, you have rights under data protection law, including the right to access, correct, delete, and restrict or object to certain types of processing of your personal data. In practical terms, within Status Ninja you can:

  • Disconnect your Google Calendar and Slack workspace from the dashboard.

  • Permanently delete your entire Status Ninja account and associated data from the account page.

  • Manage your subscription and payment method via the billing section, which is powered by Stripe.

If you wish to exercise other rights (such as requesting a copy of your data, correcting inaccuracies, or asking questions about processing), you can contact us at: support@statusninja.app.

9. Children's Privacy

StatusNinja is not intended for use by individuals under 16.

10. Changes to This Policy

We may update this Privacy Policy occasionally. We will notify you via the app or email when significant changes occur.

11. Contact

If you have questions or concerns, email: support@statusninja.app