Privacy Policy
Last updated July 19, 2026
Our promise
Sherry is designed as a private assistant. We do not sell personal data, run targeted advertising, or use connected email or financial records for advertising. Sample mode stores the professional desk in the current browser and clearly labels sample records.
Data you choose to provide
Depending on the features you use, Sherry may process account details, conversations, reminders, notification subscriptions, voice transcripts or audio, files, calendar events, email content, relationship notes, meeting briefs, decisions, and read-only financial information.
Live call transcription and transcript storage are off by default. They begin only after you enable the transcript control for that call. Turning the control off stops new transcription and clears Sherry's saved text for that call; the voice provider still processes the audio needed for the live AI conversation.
Connected services are optional. The app requests only the permissions needed for the feature you enable and shows connection status only after the server verifies it.
How data is used
Data is used for app functionality: authenticating you, saving your workspace, answering requests, delivering reminders, preparing user-approved actions, synchronizing connected services, preventing abuse, and maintaining an audit trail. External communications and calendar changes require explicit approval.
AI processing
When AI is enabled, only the context needed to answer a request is sent to the configured AI provider. Financial queries should use scoped summaries and redact account identifiers. Entire email threads and financial histories are not automatically stored as permanent assistant memories.
Storage and security
User-owned cloud records are isolated by database row-level security. Connector tokens are encrypted with a server-only key. Permanent OpenAI, Plaid, connector, and database administrator credentials are never exposed to the browser. Local-first professional desk records remain in browser storage until cloud sync is configured.
Your controls
You can review and delete memories, disconnect integrations, delete imported data, export your account data, and permanently delete a signed-in account from Settings. The public Sherry account-deletion page also accepts verified email requests when app access is unavailable. Browser-only sample records can be removed in Sherry or by clearing site data.
Retention and deletion
We retain account data while the account is active and as needed to provide requested features. Delivery and audit records support security and accountability while the account exists. In-app deletion removes active user-owned records immediately after safety checks. Verified email requests are completed within 30 calendar days. Residual copies may remain in encrypted infrastructure backups for up to 30 days during ordinary rotation and are not used to provide the service. A narrowly limited record is retained longer only when law, security, fraud prevention, or dispute resolution requires it, and is deleted when that obligation ends.
Service providers
Configured production deployments use Supabase for authentication and database services, Render for the web application and durable background worker, and OpenAI for enabled AI and voice features. Google provides optional Gmail and Calendar connections and Firebase Cloud Messaging (FCM) for consented Android notifications. Plaid provides optional read-only financial connections. Browser push may also use the browser platform's push service. Vercel is used only by deployments that enable the documented compatibility path. Provider involvement depends on the features you enable.
Contact
Privacy and support questions: willruzycki@gmail.com.