Privacy Policy
Last Updated: December 28, 2025
1. Introduction
This Privacy Policy describes how Todo-MCP ("we", "us", or "our") collects, uses, and protects your personal information when you use our software and services.
2. Information We Collect
Information You Provide
- Account Information: Email address and phone number when you sign up
- Payment Information: Processed securely by Stripe; we do not store credit card numbers
- Support Communications: Messages you send to our support team
Information Collected Automatically
- License Validation: Your license key and a device identifier for activation verification
- Usage Analytics: Basic usage statistics to improve the Service (no task content)
- Technical Data: Operating system, software version for compatibility and support
Information We Do NOT Collect
- Your Task Data: All tasks, notes, and project data remain stored locally on your device
- Your Code: We have no access to your codebase or development environment
- AI Conversations: Your interactions with Claude Code or Codex are not collected by us
3. How We Use Your Information
- To provide and maintain the Service
- To process payments and manage subscriptions
- To validate software licenses and prevent unauthorized use
- To send you the setup tutorial and important service updates
- To respond to support requests
- To improve our products and services
- To comply with legal obligations
4. Communication Preferences
By providing your email and phone number, you consent to receive:
- Your free setup tutorial (one-time)
- Transaction confirmations and receipts
- Important service announcements
- Occasional product updates (you may opt out)
You can unsubscribe from marketing emails at any time using the link in any email. Transactional emails related to your subscription cannot be opted out of.
5. Data Sharing
We do not sell your personal information. We may share data with:
- Stripe: For payment processing
- Service Providers: Who assist in operating our Service (under confidentiality agreements)
- Legal Requirements: When required by law or to protect our rights
6. Data Security
We implement industry-standard security measures including:
- Encryption of data in transit (TLS/HTTPS)
- Secure storage of license and account data
- Regular security assessments
- Limited employee access on a need-to-know basis
7. Data Retention
We retain your information for as long as your account is active or as needed to provide services. After account termination:
- Account data is deleted within 30 days
- Payment records are retained as required for tax and legal purposes
- Anonymized analytics may be retained indefinitely
8. Your Rights
Depending on your location, you may have the right to:
- Access the personal data we hold about you
- Correct inaccurate personal data
- Request deletion of your personal data
- Export your data in a portable format
- Opt out of marketing communications
- Lodge a complaint with a supervisory authority
To exercise these rights, contact us through our support page.
9. Children's Privacy
Our Service is not directed to children under 16. We do not knowingly collect personal information from children. If you believe we have collected data from a child, please contact us immediately.
10. International Data Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers.
11. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of material changes via email or through the Service. The "Last Updated" date at the top indicates when changes were last made.
12. Contact Us
For privacy-related questions or concerns, contact us at our support page.