1. Information We Collect
We collect information you provide directly, information created while using Progress, and information you authorize through connected services.
- Account information, including your name, email address, profile image, username, and authentication status.
- Usage and analytics data — such as pages viewed, features used, and conversion events — collected through our product-analytics provider (PostHog) using cookies and local storage to help us measure and improve Progress. Analytics requests are routed through a same-origin path on yourprogress.app before reaching PostHog.
- Workspace content, including projects, cards, checklists, notes, documents, links, comments, chat messages, notifications, activity logs, sketches, signatures, uploaded files, and recordings.
- Google Calendar data you authorize for calendar and meeting features.
- Integration data, including encrypted OAuth access and refresh tokens, connected account identifiers, calendar event IDs, Cloudflare storage object keys, and file metadata.
- AI feature data, including prompts, chat history, selected project context, generated responses, model preferences, and usage needed to operate AI actions.
- Technical data, including device, browser, log, error, IP address, and security event data.
2. How We Use Information
We use information to provide, secure, maintain, and improve Progress. This includes using information to:
- Authenticate users and manage workspace access.
- Operate projects, boards, notes, documents, files, chat, recordings, sketches, and notifications.
- Display, search, summarize, organize, and act on information you choose to bring into Progress.
- Connect to Google Calendar for meeting preparation and calendar context, and store uploaded files and media in Cloudflare R2.
- Create calendar events, upload files, or perform other actions only when you request them.
- Route selected prompts and context to configured AI providers when you use AI features.
- Prevent abuse, troubleshoot issues, enforce terms, and comply with law.
3. Google API Data
Progress uses Google APIs only for user-facing features that are visible in the app. Progress's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
- We do not sell Google user data.
- We do not use Google user data for advertising, retargeting, personalized ads, or credit decisions.
- We do not allow humans to read Google user data unless you ask us to, it is necessary for security or abuse investigation, it is required by law, or the data has been aggregated or de-identified for internal operations.
- We transfer Google user data only as needed to provide or improve user-facing app features you use, for security, legal compliance, or with your consent.
4. AI Providers
When you use AI features, Progress may send your prompts, selected workspace context, and relevant integration data (including, with your authorization, Google Calendar events) to Google Vertex AI. The specific model is selected by your workspace admin from the Vertex AI Model Garden — currently Google's Gemini family, Anthropic Claude on Vertex, Meta Llama on Vertex, and Mistral on Vertex. All model inference runs inside Google's infrastructure under Google's Vertex AI data-use terms, which prohibit training generalized AI models on customer prompts or completions. AI responses can be inaccurate, so you are responsible for reviewing outputs before relying on them or using them to take action.
5. How We Share Information
We share information only as needed to provide the service or where legally required. This may include sharing with:
- Workspace members who are authorized to access the same project or company workspace.
- Service providers that host, store, secure, process, or transmit data for Progress.
- Connected services such as Google, when you authorize or initiate the connection.
- AI providers when you use AI features that require model processing.
- Authorities or third parties when required by law, to protect rights, or to investigate abuse or security issues.
- A successor entity in connection with a merger, acquisition, financing, reorganization, or sale of assets.
6. Security and Retention
Progress uses access controls, transport encryption, and encrypted storage for OAuth tokens. No system can be guaranteed to be perfectly secure, but we work to protect information against unauthorized access, loss, misuse, and alteration.
We keep account, workspace, and integration information for as long as needed to provide Progress, comply with legal obligations, resolve disputes, enforce agreements, and maintain backups. We delete or disconnect integration data when you remove an integration, delete related workspace content, or request deletion, subject to legal and backup retention limits.
7. Deleting Your Account
You can permanently delete your account at any time. In the Progress app or web app, open Settings and choose Delete account. You can also request account deletion by emailing [email protected].
When you delete your account, we permanently remove it and the data associated with it:
- Your profile, account information, and authentication records are deleted.
- Projects where you are the only member are deleted, along with their content — cards, checklists, notes, documents, links, comments, chat messages, sketches, signatures, uploaded files, and recordings.
- Projects you share with other members are not deleted: your ownership transfers to another member, and your content remains available to that workspace.
- Bookings you host and invitations you sent are deleted.
If you are the only administrator of your workspace, you must make another member an administrator before deleting your account. Deletion is immediate and cannot be undone. Residual copies may persist briefly in encrypted backups and are purged on our standard backup rotation, and we may retain limited information where required for legal, security, or fraud-prevention purposes, as described in Section 6.
8. Your Choices
- You can update or delete workspace content inside Progress where the app provides those controls.
- You can disconnect Google services in Progress settings where available.
- You can revoke Google access from your Google Account permissions.
- You can request account or data deletion by contacting [email protected].
9. Children
Progress is not intended for children under 13 or the minimum age required in your jurisdiction. We do not knowingly collect personal information from children.
10. Changes
We may update this Privacy Policy from time to time. If we make material changes, we will update the date above and provide notice when required. Continued use of Progress after an update means the revised policy applies.
Use of Progress is also governed by our Terms of Service.