The short version
- We collect what you tell us about your wedding so the planner can do its job.
- We email vendors on your behalf from a dedicated address created for your wedding. You approve messages before they go out unless you turn on a more autonomous mode.
- If you connect Google Calendar, we read only your free/busy times and create the call events you book. Nothing else.
- We never sell your data, never use it for advertising, and never use it to train AI models.
- You can delete your account, or just disconnect Google, at any time.
What we collect
Things you give us
- Account details: your name, email address, and password (stored hashed by our authentication provider). If you sign in with a social login, we receive your name, email, and profile picture from that provider.
- Wedding details: date, location, guest count, budget, style preferences, partner names, and anything you type into the planner chat.
- Inspiration photos and links you upload or paste so the planner can understand your taste.
- Wedding-website content: your story, schedule, travel notes, and photos, plus your guests' RSVPs, meal choices, and song requests.
- Billing details if you subscribe or buy credits. Card numbers go straight to Stripe; we never see them.
Things generated while you use the product
- Vendor conversations: the emails we send vendors for you and the replies they send back, including quotes and attachments.
- Call bookings: the times you're free and the calls vendors book with you.
- Usage logs: standard server logs (IP address, browser type, pages visited, timestamps) kept for security and debugging.
Google user data
You can optionally connect your Google Calendar from Settings. This section describes exactly what that means. We follow Google's API Services User Data Policy, and this section is written to meet its disclosure requirements.
What Google data we access
- Free/busy information from your primary calendar (
calendar.readonly). We ask Google “is this person busy between these times?” and receive only busy time ranges — not event titles, descriptions, attendees, or locations. - Events we create (
calendar.events). We create, update, and delete the specific calendar events for vendor calls booked through Plan This. We do not read, change, or delete any event we did not create. - Your calendar's email address, so we know which calendar to use and can show you which account is connected.
Why we access it
- To propose vendor call times you're actually free for. Your planner offers a vendor a few open slots instead of a back-and-forth.
- To put booked calls on your calendar, with the vendor as an attendee, so both of you get the invite and reminders.
How we use it
Only to schedule vendor calls. We do not use Google data for advertising, do not sell it, do not share it with data brokers, and do not use it to train or improve AI or machine-learning models. Google data is never fed to the AI models that write your emails or website.
How we store and protect it
- Google gives us a refresh token so we can act on your behalf later. We encrypt it with AES-256-GCM before it touches the database, and only our server can decrypt it. It is never sent to your browser or to any third party.
- Free/busy responses are used immediately to compute open slots and are not stored.
- For each booked call we store the Google event ID so we can update or cancel that one event if plans change.
Who we share it with
Nobody, beyond what is needed to schedule the call. When a vendor books a slot, Google sends them a standard calendar invite for that one event (time, a short title, and your email address as the organizer). Vendors never see your free/busy data, your other events, or anything else on your calendar. Our hosting and database provider (Supabase) stores the encrypted token as part of running the service, and cannot read it.
Retention and deletion
- Click Disconnect in Settings and we immediately revoke our access with Google and delete the stored token. Deleting your account does the same.
- You can also remove Plan This from your Google Account permissions at any time; our stored token stops working the moment you do.
- Calendar events we already created stay in your calendar, where you control them.
Limited Use disclosure
Plan This's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
How we use your information
- To plan your wedding. Researching vendors that fit your brief, drafting and sending outreach, reading replies, extracting quotes, and comparing them for you.
- To email vendors for you. Each wedding gets its own alias address on our domain. Vendors reply to that alias, and their replies show up in your planner. We do not connect to or read your personal inbox.
- To build your wedding website and collect RSVPs from your guests.
- To run the service: authentication, billing, sending you notifications, preventing abuse, and fixing bugs.
We do not sell personal information and do not show ads.
AI processing
The planner is powered by large language models from Anthropic and OpenAI. When the planner researches vendors, drafts an email, reads a vendor's reply, describes an inspiration photo, or writes website copy, the relevant text or image is sent to one of these providers to generate the result. We use their API services, which by their terms do not train on customer data. We do not use your data to train our own models either.
AI output can be wrong. Quotes, dates, and terms extracted from vendor emails should be checked against the original message, which is always available in your planner.
Retention and deletion
- Your wedding data is kept while your account is active so your planning history stays intact.
- You can delete individual items (inspiration photos, vendors, messages) from the planner at any time.
- To delete your account and all associated data, email edward@saudara.ai from the address on your account. We complete deletion within 30 days; backups roll off within a further 30 days. Emails already delivered to vendors cannot be recalled.
- Billing records are kept as long as tax and accounting law requires.
Security
All traffic is encrypted in transit (TLS). Data is encrypted at rest by our providers. Google tokens are additionally encrypted by us before storage and are restricted so they can only be read by server-side code. Access to production systems is limited to the people who run the service.
Your rights
Wherever you live, you can ask us to show you, correct, export, or delete the personal information we hold about you. Email edward@saudara.ai and we'll respond within 30 days. If you are in the EU, UK, or another region with a data-protection authority, you also have the right to complain to that authority.
Children
Plan This is for adults planning their wedding. We do not knowingly collect information from anyone under 18.
Changes to this policy
If we make meaningful changes we'll update the date at the top and, for anything significant, email you before it takes effect.
Contact
Questions or requests: edward@saudara.ai.