← Daythread
Privacy
Last updated September 5, 2026
What Daythread is
Daythread is a workspace for a small business: it connects the accounts the business chooses (email, Instagram, WhatsApp, a text number, a calendar) and turns what arrives into conversations, bookings, payments and follow-ups. The business that creates a workspace is the controller of the customer data inside it; Daythread processes that data on its behalf.
Connected accounts
You connect accounts through each provider’s own authorization screen (Google, Meta) or, for Apple Calendar, an app-specific password you create at Apple. Daythread stores the resulting access credentials encrypted at rest and uses them only to do what you asked: read and send messages on the connected channel, read busy time on and write bookings to the selected calendar. Daythread never asks for, stores, or sees your provider account password. Disconnecting an account erases the stored credential, revokes the grant with the provider where the provider supports it (Google), and stops all future access and sync immediately.
Gmail: with the scopes you approve, Daythread reads your inbox and sends replies from your address. Daythread’s use of Google user data complies with the Google API Services User Data Policy, including the Limited Use requirements: Gmail data is used only to provide the inbox features you see, is never used for advertising, and is never sold or transferred to third parties except as needed to provide the service (for example, an AI model when you use an AI feature, see below).
Messages, contacts, bookings, payments
Daythread stores the messages that arrive on connected channels, the people who sent them, and the bookings, payments and notes you create. Classification (priority, automated, promotional, vendor) is metadata Daythread computes; it never deletes a message to keep an inbox tidy. Card payments are processed by Stripe; Daythread stores the amount, status and Stripe’s identifiers, never card numbers.
AI features
Summaries, reply drafts and lead extraction run on rules by default. When the deployment has an AI model configured and your plan includes AI features, the text of the relevant conversation is sent to that model to produce a summary or draft. It is not used to train models. You can tell which path produced a result: the product labels it.
Analytics
Daythread records product events (for example: signed up, connected an integration, upgraded) with your workspace id, to understand which parts of the product are used. Analytics never contain message contents, credentials, or the contents of your customers’ data.
Retention and deletion
Data stays as long as the workspace exists. Deleting the workspace (Settings → Profile → Delete workspace) permanently removes the business, its people, conversations, messages, bookings, payments, notes, automations, integration credentials, and mirror events on external calendars that Daythread created, within minutes. Stripe retains its own records of charges as required by law. Backups roll off within 30 days.
Who can see what
Only members of your workspace can see its data; every request is scoped to the workspace on the server. Partners you invite see only the bookings assigned to them unless you grant them all conversations.
Contact
Questions or requests about your data: email privacy@daythread.org.