125 King's Road, Chelsea, London SW3 4RP +44 20 7946 0958
Mon-Fri: 9:00-18:00

Privacy Policy

Your privacy is fundamental to how we build and operate GlowTask. Learn how we collect, use, and protect your personal information.

Last updated: December 2024

Privacy at a Glance

Secure by Design

We implement industry-standard security measures to protect your data from unauthorized access, disclosure, or modification.

Minimal Collection

We only collect information necessary to provide and improve our task management services. Less is more.

Your Control

You have complete control over your data. Access, modify, or delete your information anytime through your account settings.

1. Information We Collect

We collect information to provide better services to our users. The types of information we collect depend on how you interact with GlowTask.

Personal Information

This includes information that can identify you personally:

  • Account Information: Name, email address, and password when you create a GlowTask account
  • Profile Information: Profile picture, job title, company information, and preferences you choose to share
  • Contact Information: Email addresses for notifications, updates, and communication
  • Payment Information: Billing address and payment method details (processed securely through third-party payment processors)

Usage and Technical Information

Information about how you use GlowTask:

  • Task Data: Task titles, descriptions, due dates, priorities, and completion status
  • Collaboration Data: Team member interactions, shared projects, and communication within tasks
  • Device Information: IP address, browser type, operating system, and device identifiers
  • Usage Analytics: Pages visited, features used, time spent, and interaction patterns
  • Log Data: Server logs, access times, and error reports to help us improve service reliability

Third-Party Information

Information we may receive from third parties:

  • Social Media: Basic profile information if you choose to sign up with social media accounts
  • Integration Partners: Data from connected applications (calendar, email, productivity tools) when you authorize integrations
  • Referral Sources: Information about how you found GlowTask (referral links, marketing campaigns)

2. How We Use Your Information

We use the information we collect to provide, maintain, and improve GlowTask services. Here's how we use your information:

Service Provision

  • • Create and manage your account
  • • Process and organize your tasks
  • • Enable team collaboration features
  • • Provide customer support

Service Improvement

  • • Analyze usage patterns and trends
  • • Develop new features and functionality
  • • Optimize performance and reliability
  • • Personalize your experience

Communication

  • • Send service-related notifications
  • • Provide important updates
  • • Respond to your inquiries
  • • Share product announcements

Security & Compliance

  • • Detect and prevent fraud
  • • Protect against unauthorized access
  • • Comply with legal obligations
  • • Investigate security incidents

Legal Basis for Processing

We process your personal data based on one or more of the following legal grounds:

  • Consent: When you explicitly agree to data processing for specific purposes
  • Contract Performance: To fulfill our contractual obligations to provide services
  • Legitimate Interests: For service improvement, security, and business operations
  • Legal Compliance: When required by law or regulation

3. Information Sharing and Disclosure

We understand that your privacy is important. We do not sell your personal information and only share it in limited circumstances:

Service Providers

We work with trusted third-party service providers who help us operate GlowTask:

  • Cloud Hosting: Amazon Web Services, Google Cloud Platform for secure data storage and processing
  • Payment Processing: Stripe, PayPal for secure payment transactions
  • Email Services: SendGrid, Mailchimp for sending notifications and updates
  • Analytics: Google Analytics, Mixpanel for understanding user behavior (anonymized data)
  • Customer Support: Zendesk, Intercom for handling support requests

All service providers are bound by strict confidentiality agreements and data protection obligations.

Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the business transaction. We will notify you of any such change and ensure continued protection of your data.

Legal Requirements

We may disclose your information when required by law or in response to:

  • Valid legal process (subpoenas, court orders)
  • Government investigations
  • To protect the rights, property, or safety of GlowTask, our users, or others
  • To prevent fraud or security threats

What We Never Share

  • • Your personal information for advertising purposes
  • • Individual task content with unauthorized parties
  • • Payment information with third parties (except payment processors)
  • • Data that could identify you for marketing without explicit consent

4. Data Security

We implement comprehensive security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction.

Encryption

All data is encrypted both in transit and at rest using industry-standard protocols.

  • • HTTPS/TLS encryption for data transmission
  • • AES-256 encryption for stored data
  • • End-to-end encryption for sensitive communications

Access Controls

Strict access controls ensure only authorized personnel can access your data.

  • • Multi-factor authentication for admin access
  • • Role-based permissions system
  • • Regular access reviews and audits

Monitoring

Continuous monitoring and alerting systems protect against security threats.

  • • 24/7 security monitoring
  • • Intrusion detection systems
  • • Real-time threat analysis

Education

Regular security training ensures our team follows best practices.

  • • Employee security training programs
  • • Regular security awareness updates
  • • Incident response procedures

Security Commitment

While we implement robust security measures, no system is 100% secure. We are committed to:

  • Regular security audits and penetration testing
  • Promptly addressing any security vulnerabilities we discover
  • Maintaining compliance with industry security standards (SOC 2, ISO 27001)
  • Transparent communication about security incidents
  • Continuous improvement of our security practices

5. Your Rights and Choices

You have comprehensive rights over your personal data. Here's how you can exercise control over your information:

Account Management

Access Your Data

View all personal information we have about you through your account settings

Export Your Data

Download your tasks, projects, and account information in standard formats

Delete Your Account

Permanently delete your account and all associated data

Communication Preferences

Email Notifications

Choose which emails you want to receive - task reminders, team updates, product news, or none

In-App Notifications

Control push notifications and in-app alerts for better focus

Data Portability

You have the right to receive your personal data in a structured, commonly used, and machine-readable format. This includes:

  • Your complete task list with all metadata
  • Project information and team collaboration history
  • Account settings and preferences
  • Usage analytics and activity logs

How to Exercise Your Rights

Through Your Account

Most rights can be exercised directly through your GlowTask account settings:

  • • Account Settings → Privacy & Security
  • • Notification Preferences
  • • Data Export Tools

Contact Us Directly

For complex requests or if you need assistance:

  • • Email: [email protected]
  • • Subject: "Privacy Rights Request"
  • • Response time: Within 30 days

6. Data Retention

We retain your personal information only as long as necessary to provide our services and fulfill the purposes outlined in this policy.

Retention Periods

Account Information

Personal details used to create and manage your account

Active + 2 years

Task and Project Data

Your tasks, projects, and collaboration content

Until deletion

Usage Analytics

Anonymous usage data and system logs

1 year

Support Communications

Email correspondence and support ticket history

3 years

Billing Information

Payment method details and transaction records

7 years (legal requirement)

Data Deletion Process

1

Account Deletion Request

When you delete your account or request data deletion

2

30-Day Grace Period

Account restoration window in case of accidental deletion

3

Secure Deletion

Data is permanently and securely deleted from all systems

4

Confirmation

Email confirmation once deletion process is complete

Legal Retention Requirements

We may retain certain information longer than stated above when required by law or to resolve disputes:

  • Tax and financial records (7 years as required by UK law)
  • Legal proceedings and compliance requirements
  • Fraud prevention and security purposes
  • Active investigations or legal holds

7. Cookies and Tracking

GlowTask uses cookies and similar technologies to enhance your experience, analyze usage, and provide personalized features.

Types of Cookies We Use

Essential Cookies

These cookies are necessary for the website to function properly:

  • • Authentication and session management
  • • Security and fraud prevention
  • • Shopping cart and checkout functionality
  • • Load balancing and performance optimization
Always Active

Functional Cookies

These cookies enable enhanced functionality and personalization:

  • • Remembering your preferences and settings
  • • Language and region preferences
  • • Customization options and themes
  • • Integration with third-party services
Optional

Analytics Cookies

These cookies help us understand how visitors interact with our website:

  • • Page views and user flows
  • • Feature usage and performance
  • • Error reporting and optimization
  • • A/B testing for new features
Optional

Marketing Cookies

These cookies are used to deliver relevant advertisements and track campaign performance:

  • • Personalized content recommendations
  • • Targeted advertising
  • • Social media integration
  • • Campaign attribution and conversion tracking
Optional

Managing Your Cookie Preferences

Cookie Settings in GlowTask

You can manage your cookie preferences anytime:

  1. 1. Go to Account Settings → Privacy
  2. 2. Click "Manage Cookie Preferences"
  3. 3. Toggle cookies on/off according to your preferences
  4. 4. Save your settings

Browser Controls

You can also control cookies through your browser settings:

  • Chrome: Settings → Privacy and security → Cookies and other site data
  • Firefox: Options → Privacy & Security → Cookies and Site Data
  • Safari: Preferences → Privacy → Manage Website Data
  • Edge: Settings → Site permissions → Cookies and site data

Third-Party Cookies

Some cookies are set by third-party services we use:

Google Analytics

Website analytics and user behavior insights

Analytics

Stripe

Payment processing and fraud prevention

Essential

Intercom

Customer support chat and communication

Functional

SendGrid

Email delivery and tracking

Essential

8. International Data Transfers

GlowTask may transfer, store, and process your information in locations other than your own country. We ensure appropriate safeguards are in place to protect your data during international transfers.

Where Your Data May Be Processed

Primary Data Centers

London, UK and Frankfurt, Germany

Backup Systems

Dublin, Ireland and Amsterdam, Netherlands

Service Providers

United States and other approved locations

Email Services

US-based email service providers

Payment Processing

International payment service providers

Safeguards for International Transfers

Adequacy Decisions

We rely on EU adequacy decisions for transfers to countries with equivalent data protection laws

Standard Contractual Clauses

EU-approved Standard Contractual Clauses (SCCs) for transfers to countries without adequacy decisions

Binding Corporate Rules

Approved binding corporate rules for transfers within corporate groups

Certification Programs

Participation in recognized international certification programs (e.g., Privacy Shield)

Your Rights Regarding Transfers

You have specific rights regarding international transfers of your personal data:

  • Right to be informed about where your data is processed
  • Right to object to certain types of international transfers
  • Right to data portability across borders
  • Right to lodge complaints with supervisory authorities
  • Right to seek judicial remedies for transfer violations

9. Children's Privacy

GlowTask is designed for professionals and organizations. We do not knowingly collect personal information from children under 16 years of age.

Age Restrictions

Minimum Age Requirement

Users must be at least 16 years old to create an account and use GlowTask services

Parental Consent

For users between 13-16, we require verifiable parental consent before collecting any personal information

How We Protect Children's Privacy

Age verification during account creation

Content filtering and moderation

Data collection limitations

Enhanced privacy protections

Parental notification procedures

Easy data deletion options

If We Discover Children's Data

If we become aware that we have collected personal information from a child under 16 without proper consent, we will:

  1. Immediately delete the information from our servers
  2. Take steps to prevent future collection of such information
  3. Notify the parent or guardian if contact information is available
  4. Review and strengthen our age verification processes
  5. Report the incident to relevant authorities if required by law

Contact Us About Children's Privacy

If you believe we have collected information from a child under 16, or if you are a parent/guardian concerned about your child's data, please contact us immediately:

  • Email: [email protected] with subject "Children's Privacy Concern"
  • We will respond within 48 hours
  • We will work with you to resolve any issues promptly
  • We may be required to report certain incidents to authorities

10. Policy Updates

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. We will notify you of significant changes.

Types of Updates

Minor Updates

Small changes that don't affect your rights or our data practices:

  • • Clarifications and language improvements
  • • Contact information updates
  • • Minor process improvements
  • • Grammar and formatting fixes
Updated in-place

Significant Updates

Changes that may affect your rights or how we process your data:

  • • New data collection practices
  • • Changes to data retention periods
  • • New third-party integrations
  • • Changes to data sharing practices
30-day advance notice

Material Changes

Major changes that significantly alter our privacy practices:

  • • Complete data processing purpose changes
  • • New categories of personal data collection
  • • Significant changes to data subject rights
  • • Transfer of business ownership or control
60-day advance notice + consent

Notification Methods

Email Notification

Direct email to your registered address

In-App Notifications

Banner notifications when you log in

Website Notice

Prominent notice on our website

30-Day Notice Period

Sufficient time to review changes

Your Choices When Policies Change

Review and Understand

We encourage you to carefully review any policy changes:

  • • Read the updated policy in full
  • • Pay attention to highlighted changes
  • • Understand how changes affect your data
  • • Consider the impact on your usage of GlowTask

Take Action

You have several options when policies change:

  • • Continue using GlowTask under the new terms
  • • Modify your account settings and preferences
  • • Export and download your data
  • • Delete your account if you disagree with changes

Version History

Version 2.0

Enhanced international transfer protections and user rights

December 2024
Version 1.5

Updated cookie policies and third-party service providers

September 2024
Version 1.0

Initial privacy policy for GlowTask platform

June 2024

11. Contact Us

If you have any questions about this Privacy Policy or our data practices, we're here to help. Reach out to us through any of the following channels:

Email Us

For general inquiries and privacy questions:

[email protected]

Response time: Within 24 hours

Call Us

For urgent matters and immediate assistance:

+44 20 7946 0958

Hours: Mon-Fri, 9:00-18:00 GMT

Office Location

GlowTask Ltd Headquarters

125 King's Road, Chelsea
London SW3 4RP
United Kingdom

Please schedule an appointment before visiting

Specialized Contacts

Data Protection Officer

For GDPR compliance and data protection questions

[email protected]

Security Team

For security incidents and vulnerability reports

[email protected]

Legal Department

For legal requests and compliance matters

[email protected]

Media Inquiries

For press releases and media relations

[email protected]

Response Times

24h

General Inquiries

4h

Privacy Rights

1h

Security Issues