← Daythread

Privacy

Last updated September 5, 2026

What Daythread is

Daythread is a workspace for a small business: it connects the accounts the business chooses (email, Instagram, WhatsApp, a text number, a calendar) and turns what arrives into conversations, bookings, payments and follow-ups. The business that creates a workspace is the controller of the customer data inside it; Daythread processes that data on its behalf.

Connected accounts

You connect accounts through each provider’s own authorization screen (Google, Meta) or, for Apple Calendar, an app-specific password you create at Apple. Daythread stores the resulting access credentials encrypted at rest and uses them only to do what you asked: read and send messages on the connected channel, read busy time on and write bookings to the selected calendar. Daythread never asks for, stores, or sees your provider account password. Disconnecting an account erases the stored credential, revokes the grant with the provider where the provider supports it (Google), and stops all future access and sync immediately.

Gmail: with the scopes you approve, Daythread reads your inbox and sends replies from your address. Daythread’s use of Google user data complies with the Google API Services User Data Policy, including the Limited Use requirements: Gmail data is used only to provide the inbox features you see, is never used for advertising, and is never sold or transferred to third parties except as needed to provide the service (for example, an AI model when you use an AI feature, see below).

Messages, contacts, bookings, payments

Daythread stores the messages that arrive on connected channels, the people who sent them, and the bookings, payments and notes you create. Classification (priority, automated, promotional, vendor) is metadata Daythread computes; it never deletes a message to keep an inbox tidy. Card payments are processed by Stripe; Daythread stores the amount, status and Stripe’s identifiers, never card numbers.

AI features

Summaries, reply drafts and lead extraction run on rules by default. When the deployment has an AI model configured and your plan includes AI features, the text of the relevant conversation is sent to that model to produce a summary or draft. It is not used to train models. You can tell which path produced a result: the product labels it.

Analytics

Daythread records product events (for example: signed up, connected an integration, upgraded) with your workspace id, to understand which parts of the product are used. Analytics never contain message contents, credentials, or the contents of your customers’ data.

Retention and deletion

Data stays as long as the workspace exists. Deleting the workspace (Settings → Profile → Delete workspace) permanently removes the business, its people, conversations, messages, bookings, payments, notes, automations, integration credentials, and mirror events on external calendars that Daythread created, within minutes. Stripe retains its own records of charges as required by law. Backups roll off within 30 days.

Who can see what

Only members of your workspace can see its data; every request is scoped to the workspace on the server. Partners you invite see only the bookings assigned to them unless you grant them all conversations.

Contact

Questions or requests about your data: email privacy@daythread.org.