Trust & privacy
Privacy Policy
Last updated: August 18, 2026
This Privacy Policy describes how Vritto, Inc., a Delaware corporation (“Vritto”, “we”, “our”, or “us”), collects, uses, stores, and shares information when you use Vritto at https://vritto.app, the Vritto mobile applications, and related services (together, the “Service”). Vritto is a private personal organizer: the records you keep in it are for you, not for advertisers. We do not sell your personal information and we do not use it for third-party advertising.
1. Information You Provide
- Account and Profile Information: Your name, email address, authentication credentials, profile photo, and profile preferences. If you choose to provide them, this can also include your birthday, pronouns, gender, home city, and occupation.
- Your Records: Content you create in Vritto's modules, including tasks, events, contacts, notes, journal entries, memories, health and fitness records, medications, financial records, travel information, vehicles, properties, media lists, files you upload, and other module content. Some of this is sensitive by nature (for example health or financial details); you decide what to add.
- Connection Credentials: OAuth tokens and connection metadata for integrations you enable. Where a connection uses a password or personal access token you supply (see Section 4), it is encrypted at rest and used only to operate that connection.
- Messages You Send Us: If you use the contact form, we receive your name, email address, and message so we can reply.
Contacts on your phone. If you allow the Vritto mobile app to read your device contacts, it uses them on your phone to show who you might add to a record. Your address book is not uploaded, copied, or stored on Vritto's servers. Only when you actually use a person, by adding them, or naming them in a meal, gift, trip, or similar record, does that one person's name and contact details become a record in your account. Everyone you never use stays only on your phone. Vritto never modifies your device contacts, and you can turn this off at any time in your phone's system settings.
2. Information Collected Automatically
- Service and Device Information: Technical and diagnostic information needed to operate, secure, and improve the Service, such as log data, IP address, device and browser type, and app version.
- Cookies and Local Storage: The web app uses cookies and browser storage for sign-in sessions and preferences, not for advertising or cross-site tracking.
- Crash and Analytics Data: The mobile apps use Firebase services, including crash reporting and app analytics, to diagnose problems and understand aggregate feature usage.
- Abuse Protection: We use Firebase App Check (reCAPTCHA Enterprise on the web, Play Integrity on Android, and Apple device attestation on iOS) to verify that requests come from genuine Vritto clients.
- Push Tokens: If you enable notifications, we store the device push token needed to deliver them.
3. How We Use Google User Data
Google connections are optional. Vritto requests access only when you initiate a connection, requests only the scopes the feature needs, and uses that access to provide the feature you selected:
- Google Sign-In: Receives your basic Google identity information, including your name, email address, verification status, and profile-photo URL. If you select the option during onboarding, Vritto saves a private copy of that profile photo as your Vritto avatar.
- Google Calendar: Reads your calendar list and synchronizes calendar events in both directions. Vritto creates or updates events only when you (or an automation you configured) request it.
- Google Contacts: Read-only access to import and refresh contact details you choose to bring into Vritto, including contact photos, which are stored privately in your Vritto account. Vritto does not modify your Google Contacts.
- Google Tasks: Read-only access to import your task lists and tasks (titles, notes, due dates, and completion status) into Vritto's Tasks module and refresh them on a schedule. The import is one-way: Vritto does not create, modify, or delete anything in Google Tasks, and tasks you edit in Vritto are never overwritten by the import.
- Gmail: Read-only access used for workflows you explicitly enable. Vritto scans message headers and snippets to find receipts, reservations, orders, and similar messages, then reads the matching messages to propose structured records for your review. Message content is processed by our AI service providers (Section 5) solely to produce those proposals. Vritto does not send, modify, or delete Gmail messages.
- YouTube: Read-only access to your YouTube subscriptions, playlists, and watch data to power the Watch workspace. Vritto also reads public YouTube channel feeds. Vritto does not post, rate, or modify anything on YouTube for you.
Vritto's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Google user data is used only to provide the user-facing features described above: it is not sold, not used for advertising, not used to train generalized AI or machine-learning models, and not read by humans except with your explicit consent, for security purposes, or as required by law.
YouTube API Services: Vritto's YouTube features are an API client of YouTube API Services. In addition to this policy, Google's handling of your information is described in the Google Privacy Policy. Vritto stores YouTube API data only as long as needed to provide the feature and refreshes or deletes stored API data regularly (within 30 days). Vritto's pages and apps can embed the YouTube player, which is served by YouTube. You can revoke Vritto's access to your YouTube and Google data at any time from the Google security settings page, or by disconnecting the integration in Vritto's settings.
4. Other Optional Connections
- Microsoft Outlook Mail: Read-only access used, like Gmail, to find receipts, reservations, and confirmations and propose structured records for your review. Vritto does not send, modify, or delete Outlook messages.
- Microsoft Outlook Calendar: Reads and synchronizes calendars and events in both directions, creating or updating events you request in writable calendars.
- Apple iCloud Calendar: Syncs your iCloud calendars using your Apple ID email and an app-specific password you create for Vritto. That password is encrypted at rest, is used only to talk to Apple's calendar servers, and can be revoked at any time from your Apple ID settings or by disconnecting in Vritto.
- Canvas LMS: Connects your school's Canvas account using a personal access token you create. Vritto reads your courses, assignments, and grades to power the Academics module. The token is encrypted at rest and can be revoked from Canvas or by disconnecting in Vritto.
- Bank Accounts (Stripe Financial Connections): If you link a bank account, the connection is made through Stripe. You authenticate directly with your bank in Stripe's interface; Vritto never sees your bank login. With your consent, Vritto receives account details, balances, and transactions from Stripe and uses them to power the Finance and capture features, such as importing transactions and detecting recurring charges. Stripe's handling of this data is described in the Stripe Privacy Policy. You can disconnect a linked account at any time in Vritto's settings.
- Apple Health and Health Connect: On supported devices you can allow Vritto to read selected health and fitness data (such as workouts, steps, sleep, and measurements) from Apple HealthKit or Android Health Connect, and to write back records you create in Vritto. This data is used only to provide the Fitness features you see, stays in your account, and is never used for advertising, never sold, and never shared with third parties except the service providers that host Vritto's infrastructure. You control access through your device's health permissions and can revoke it at any time.
- Steam: If you connect Steam, you sign in on Steam's own website and Vritto receives only your public Steam ID. Vritto never receives your Steam password and is never granted access to your Steam account, so there is no access token to store and nothing for Vritto to act with on your behalf. Using that ID, Vritto reads your publicly visible Steam profile, game library, playtime, and achievement progress and stores them in your account to populate the Games module. Only data your Steam privacy settings make publicly visible can be read, so setting your profile or game details to private stops the sync. Vritto never writes anything to Steam. Disconnecting stops future syncing; the games already imported remain in your library, and you can delete them like any other record.
5. AI Features
AI features are optional and run only for requests you make or automations you enable. Before the first AI feature runs, Vritto shows you a disclosure in the app naming these providers and asks for your permission; you can withdraw that permission at any time in Settings. When you use SahAI, an extraction workflow, voice input, or another AI feature, the content needed for that request is processed by AI service providers acting on our behalf. These currently include Google (assistant responses and analysis, extraction, classification, embeddings, receipt scanning, and image generation, through the Gemini models on Google Cloud) and xAI (speech-to-text for voice input on the web app, which streams your microphone audio for transcription while you dictate). Voice input in the mobile apps does not use xAI: dictation in the iOS app is processed on your device by Apple's on-device speech recognition, and the Android app uses your device's system speech recognizer under your device's settings. These providers process your content solely to deliver the feature you requested and do not use it to train their models. Vritto lets you turn AI features off entirely, and lets you restrict what each connected external AI client can reach module by module. AI-proposed changes are presented for your review before they are applied.
External AI Assistants (MCP): You can connect external AI assistants, such as Claude or ChatGPT, to your Vritto account through the Model Context Protocol. This happens only through an explicit consent screen, where you choose what the assistant can reach. Data an external assistant reads or writes flows to that assistant's provider under its own terms and privacy policy. You can revoke an assistant's access at any time in Vritto's settings.
6. Reference-Data Lookups
Some features enrich your records using third-party data services. When you use them, the minimal query needed for the lookup is sent to the provider, for example: movie and TV search terms to TMDB, game searches to IGDB, book searches to Google Books, product barcodes to Open Food Facts, drug names to the U.S. National Library of Medicine (RxNorm, DailyMed, MedlinePlus) and openFDA, a vehicle's VIN to NHTSA and auto.dev, vehicle specs to fueleconomy.gov, product identifiers to the CPSC recalls database, a property address to RentCast for valuation estimates, flight numbers and dates to AeroDataBox (via RapidAPI), place searches, addresses, and coordinates to Google Maps services, merchant and brand names to logo.dev for logos, and the address of a link you save to that site (to fetch its preview) and to Google's favicon service. Maps are rendered by Google Maps: on the web through the Google Maps JavaScript API, and in the mobile apps through the Google Maps SDKs. Rendering a map means your device requests map imagery from Google directly, so Google receives the map area you are viewing along with standard request information such as your IP address, handled under the Google Privacy Policy linked above. Exchange-rate data comes from Open Exchange Rates and involves no personal data. These lookups are initiated by your use of the feature, and providers receive only the query, not your identity or your other records.
7. Payments
Payments on the web are processed by Stripe. Stripe collects your payment details directly; Vritto receives subscription status, invoice information, and payment-method identifiers needed to operate billing, and never receives or stores your full card number. Purchases made in the mobile apps are processed by Apple or Google under their own terms, and Vritto receives the transaction information needed to verify and activate your subscription.
8. How We Use Information
- Provide, personalize, and maintain the Service and the features you enable.
- Process transactions and manage subscriptions, trials, and billing.
- Secure the Service, verify clients, prevent abuse and fraud, and enforce limits such as one introductory trial per person.
- Respond to your messages and provide support.
- Diagnose problems and improve the Service using aggregate or de-identified usage information.
- Comply with legal obligations.
We do not sell or rent your personal information, and we do not use it for third-party advertising or cross-context behavioral advertising.
9. How We Share Information
- Service Providers: Providers that process data on our behalf to operate Vritto, principally Google Cloud and Firebase (hosting, database, storage, authentication, push notifications, crash reporting, analytics, abuse protection), Stripe (payments and bank connections), and the AI providers listed in Section 5, in each case only as needed to provide the Service.
- Integrations You Enable: The third-party services described in Sections 3 through 6, when you connect or use them.
- Content You Choose to Publish: If you publish content through an optional sharing feature (such as a public guide), that content is visible to anyone with the link.
- Legal and Safety: When required to comply with law, enforce our terms, or protect users, the public, or the Service.
- Business Transfers: If Vritto, Inc. is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction, subject to this policy's commitments.
10. Storage, Security, and Retention
Your information is stored using Google Cloud and Firebase services, including Firestore and Cloud Storage, in the United States. We use technical and organizational safeguards designed to protect your information, including encryption in transit and at rest, additional application-level encryption for connection credentials, two-factor authentication support, and scoped internal access. No electronic transmission or storage system can be guaranteed completely secure.
We retain information for as long as your account is active or as needed to provide the Service and meet legal obligations. When you delete a record or your account, it is removed from the live Service promptly and from backups on a rolling basis. To prevent repeated introductory-trial abuse after account deletion, Vritto may retain keyed pseudonymous identifiers derived from a verified email address and Stripe payment-method fingerprint for up to 6 months. This anti-abuse ledger does not store the raw email address, raw payment fingerprint, or card details and is not accessible from the client application. Expired entries are deleted automatically.
11. Consumer Health Data
Some records you keep in Vritto are consumer health data, such as medications, doses, appointments, conditions you note, and fitness measurements. Vritto is not a medical device and does not provide medical advice: nothing in the Service diagnoses, treats, cures, or prevents any condition, and you should consult a qualified healthcare professional for medical concerns. We collect this data only because you enter it or connect a source that provides it, and we use it only to provide the features you use. We do not sell consumer health data, we do not share it for advertising, and we do not use location data to identify visits to health-related facilities. Access within Vritto's infrastructure is limited to what is needed to operate the Service. You can view, edit, export, and delete your health records at any time, and deleting your account deletes them. If you have questions or want to exercise rights over consumer health data, contact us at contact@vritto.app; if you believe we have not resolved your concern, you may contact your state attorney general.
12. Your Rights and Choices
You can view, edit, export, or delete your Vritto records; disconnect integrations; revoke connected-service access; change AI permissions; and delete your account, all from Vritto's settings. You can also start account deletion from the web without the app at vritto.app/delete-account. Account deletion cancels any Vritto subscription before the account is removed so it cannot renew later. Limited anti-abuse and legally required billing records may remain as described above. You can also revoke Vritto's access from the connected service directly, for example from your Google Account security settings, Microsoft account privacy settings, or Apple ID settings.
Depending on where you live, you may have legal rights to access, correct, delete, or receive a copy of your personal information, and the right not to be discriminated against for exercising them. Vritto's settings provide these capabilities directly, and you can also exercise any of these rights by emailing contact@vritto.app. We will respond within the time required by applicable law, and we may need to verify your identity first. If we decline a request, you may appeal by replying to our response. Because we do not sell personal information or share it for targeted advertising, there is nothing to opt out of under laws that provide such opt-outs, and we treat browser opt-out preference signals accordingly.
13. Children
The Service is for adults: our Terms require users to be at least 18. The Service is not directed to children, and we do not knowingly collect personal information from anyone under 18. If you believe someone under 18 has created an account, contact us at contact@vritto.app and we will delete it.
14. Changes to This Policy
We may update this Privacy Policy as the Service, the law, or our practices change. If a change is material, we will give notice before it takes effect, for example by posting the revised policy with an updated date, showing a notice in the Service, or emailing you. The “Last updated” date above always reflects the current version.
15. Contact Us
Vritto, Inc.
2810 North Church Street, STE 89640
Wilmington, DE 19802, United States
contact@vritto.app
You can also review our Terms of Service.