Policy
Privacy Policy
Effective September 5, 2026
Irmita is a private, personal-use automation operated by David Delgado for his own accounts. It does not offer public registration. Questions about privacy or deletion can be sent to davidcamiloneo@gmail.com.
Information Irmita processes
- Telegram message content carrying supported routing tags.
- Telegram chat IDs, message IDs, chat titles, timestamps, edit state, and supported attachment metadata.
- Supported TODO photos, videos, voice messages, video messages, and files selected by the routing behavior.
- The Google account email used to verify the authorized Drive owner.
- Google Sheets row identifiers and workbook routing metadata.
- ClickUp task IDs, links, status values, and synchronization state.
- Operational job, retry, deduplication, and error metadata in Firestore and Cloud Logging.
- OAuth client and refresh-token material stored only in Google Secret Manager.
Information not intentionally collected
This website uses no visitor analytics, advertising identifiers, tracking cookies, payment-card collection, or public-user profiles. Irmita does not intentionally process untagged Telegram messages beyond what is necessary to route or discard them.
Why the information is processed
- Organize the owner's TODOs, memos, and financial entries.
- Synchronize TODOs and their status with ClickUp.
- Store supported task media in the owner's private Google Drive folder.
- Prevent duplicate records and diagnose failed synchronization.
Storage and service providers
- Google Sheets stores TODO, MEMO, and finance records.
- Google Drive stores private TODO media.
- Google Cloud and Firebase provide functions, task queues, operational state, secret storage, and logs.
- Telegram provides source messages and media delivery.
- ClickUp provides TODO task management.
Information is not sold, rented, used for advertising, or shared outside these providers except when required by law or explicitly directed by the owner.
Google API data
Google access is limited to the scopes and files needed for the features described above. Irmita uses the narrow drive.file scope and does not claim access to all files in the owner's Drive.
Data received from Google APIs is handled according to the Google API Services User Data Policy, including its Limited Use requirements.
Retention, deletion, and revocation
Data remains until the owner deletes it or removes the relevant integration. Complete deletion may require removal from Google Sheets, Google Drive, ClickUp, Firestore, and systems subject to operational backup or log-retention behavior. Contact davidcamiloneo@gmail.com for deletion or privacy questions.
Google authorization can be revoked from the owner's Google Account connections page.
Security
Secrets are stored in Google Secret Manager rather than public files. The Drive media folder is private to its owner, and external webhooks use provider-specific authentication. These safeguards reduce risk, but no system can guarantee absolute security.
Changes to this policy
Material changes will be reflected on this page and the effective date will be updated.