Privacy.
This describes how Handled actually works today. It is not a law-firm policy and it does not invent practices we do not have.
What we keep
If you create an account, Clerk stores your sign-in. We keep a matching profile with your email, display name, timezone, plan, and the settings you choose. Tasks, notes, lists, subtasks, and people you invite to a list live in our database so the list can sync.
If you join the waitlist or request the iPhone beta, we store the email you submit and where you submitted it.
Agent work
When analysis runs, the server reads the task title and notes to research a recommendation. Those fields are not attached to analytics events. A recommendation is published only when it has sourced work. If it cannot help, it fails instead of inventing a fallback.
Settings can delete agent history for your account: recommendations, sources, snapshots, jobs, and action receipts. Ordinary tasks and lists stay.
Sharing
A list stays private until you invite someone. An invitee who already has an account can see that list and its tasks. Someone without an account is stored as a pending invite until they sign up with that email. Viewers can read. Editors can change tasks. Only the owner can invite, change roles, or remove people.
Payments
Pro is purchased on iPhone through the App Store. We do not run card checkout on the website and we do not store card numbers.
Analytics
The site uses PostHog and Google Analytics for product and traffic signals. Those tools receive account and session identifiers, not task titles or notes.
Retention
Account and list data stay until you delete them or close the account. Waitlist emails stay so we can send a TestFlight or launch note. We do not sell this data.
Contact
Questions about this page can go to the email on your Handled account. The product is Handled, at handledtodos.com.