โ† Back to app
Legal
Privacy Policy
We built Steady to help you โ€” not to profit from your personal data. Here's exactly what we collect, why, and how we protect it.
Effective: 17 March 2026
Last updated: 17 March 2026
Jurisdiction: Australia
๐Ÿ”’
Never sold
Your data is never sold, shared, or used to advertise to you.
๐Ÿ‘๏ธ
You stay in control
You can disconnect accounts or delete all your data at any time.
๐Ÿง 
Minimal storage
We store only what's needed to run the service โ€” nothing more.
๐Ÿ‡ฆ๐Ÿ‡บ
Australian law
We comply with the Australian Privacy Act 1988 and Privacy Principles.
01
Who we are

Steady is a personal assistant application developed and operated in Brisbane, Australia. Our service automatically scans your connected communication channels to detect appointments and important events, adding them to your calendar and drafting replies on your behalf.

References to "Steady", "we", "us", or "our" in this policy refer to the Steady application and its operators. References to "you" or "your" refer to the individual using the Steady service.

02
What data we collect

We collect only the minimum data required to provide the Steady service. Here is exactly what we collect and why:

  • ๐Ÿ“ง
    Gmail access โ€” We read your unread emails to detect appointment-related content. We do not store your full email content. We only extract and store appointment details such as title, date, time, location and action items.
  • ๐Ÿ“…
    Google Calendar access โ€” We create and read calendar events on your behalf. We check for scheduling conflicts and add detected appointments with appropriate reminders.
  • ๐Ÿ’พ
    Google Drive access โ€” We read SMS backup files you have chosen to store in your Google Drive. We do not access any other Drive files. This is used to detect appointments from SMS messages.
  • ๐Ÿ‘ค
    Account information โ€” Your name and email address from your Google account. This is used to personalise the app and identify your account.
  • ๐Ÿ”‘
    Authentication tokens โ€” OAuth tokens issued by Google that allow Steady to access your connected services. These are stored securely in our database and never shared.
  • ๐Ÿง 
    Learning memory โ€” Contact names, locations and patterns that Steady learns from your usage to improve accuracy over time. This data belongs to you and can be deleted at any time.
โœ“
We never read, store or share the full content of your emails. We only extract appointment-specific details such as dates, times and locations.
03
How we use your data

We use your data exclusively to provide the Steady service. Specifically:

  • โšก
    To scan your Gmail for appointment-related emails on a scheduled basis
  • ๐Ÿ“…
    To create calendar events in your Google Calendar with appropriate reminders
  • โœ‰๏ธ
    To generate draft replies in your Gmail Drafts folder for your review and approval
  • ๐Ÿง 
    To improve the accuracy of appointment detection through a personalised learning system
  • ๐Ÿ”„
    To maintain and refresh authentication tokens required to access your connected services

We do not use your data for advertising, profiling, marketing, or any purpose beyond operating the Steady service for your personal benefit.

04
How we protect your data

We take data security seriously. Your data is protected through the following measures:

  • ๐Ÿ”
    Row Level Security (RLS) โ€” Our database enforces strict data isolation. It is technically impossible for one user's data to be accessed by another user's account.
  • ๐Ÿ”‘
    OAuth authentication โ€” We never store your Google password. Access is granted through Google's secure OAuth system which you can revoke at any time through your Google Account settings.
  • ๐ŸŒ
    Encrypted connections โ€” All data transmitted between Steady and your devices is encrypted using HTTPS/TLS.
  • ๐Ÿ—๏ธ
    Secure infrastructure โ€” Our database and backend are hosted on Supabase, which provides enterprise-grade security and compliance with industry standards.
  • ๐Ÿ‘๏ธ
    Minimal access โ€” We request only the minimum Google permissions required to operate the service. We do not request access to your contacts, photos, documents or any other Google services.
05
Third party services

Steady integrates with the following third party services to operate:

  • G
    Google APIs โ€” Gmail, Google Calendar and Google Drive. Your use of these services is governed by Google's Privacy Policy at policies.google.com/privacy
  • ๐Ÿ—„๏ธ
    Supabase โ€” Our database and authentication provider. Data is stored on Supabase infrastructure. Supabase Privacy Policy available at supabase.com/privacy
  • ๐Ÿค–
    Anthropic Claude API โ€” We use Anthropic's AI to analyse email and SMS content for appointment detection. Content sent to Claude is subject to Anthropic's usage policies. We do not send identifying personal information to this service beyond the content required for analysis.
  • ๐ŸŒ
    Netlify โ€” Our web application is hosted on Netlify. Netlify Privacy Policy available at netlify.com/privacy

We do not sell or share your data with any third parties for their own commercial purposes.

06
Your rights

Under the Australian Privacy Act 1988 and general privacy principles, you have the following rights:

  • ๐Ÿ‘€
    Right to access โ€” You can view all data Steady holds about you at any time through the app's Profile and Settings sections.
  • โœ๏ธ
    Right to correction โ€” You can update or correct your information through the app settings.
  • ๐Ÿ—‘๏ธ
    Right to deletion โ€” You can delete all your data at any time by tapping "Clear all my data" in the app's Profile settings. This permanently removes all your appointments, settings and learning memory from our systems.
  • ๐Ÿ”Œ
    Right to disconnect โ€” You can disconnect your Google account at any time through the Connected Sources section in Profile settings, or directly through your Google Account at myaccount.google.com/permissions
  • ๐Ÿ“ฆ
    Right to portability โ€” You can request a copy of your data by contacting us at the email address below.
07
Data retention

We retain your data for as long as you maintain an active Steady account. Specifically:

  • ๐Ÿ“…
    Appointment data โ€” Retained for 12 months from the appointment date, then automatically deleted.
  • ๐Ÿง 
    Learning memory โ€” Retained for the lifetime of your account. Deleted immediately when you use the "Clear all my data" function.
  • ๐Ÿ”‘
    Authentication tokens โ€” Retained while your account is active. Immediately deleted when you disconnect your Google account or delete your account.
  • ๐Ÿ‘ค
    Account information โ€” Retained until you delete your account.

When you delete your account or use "Clear all my data", all your data is permanently and immediately removed from our systems. This action cannot be undone.

08
Children's privacy

Steady is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe we have inadvertently collected information from a child under 13, please contact us immediately and we will delete that information.

09
Changes to this policy

We may update this Privacy Policy from time to time. When we make significant changes, we will notify you through the app and update the "Last updated" date at the top of this page. Your continued use of Steady after changes are posted constitutes your acceptance of the updated policy.

We will never make changes that reduce your privacy rights without providing clear notice and the opportunity to delete your account before the changes take effect.


Questions or concerns
Get in touch
We take privacy seriously. If you have any questions about this policy or how we handle your data, please reach out.
โœ‰๏ธ Contact us