PilePrompt
Privacy Policy for PilePrompt Sync
Last updated: 2026-09-29
PilePrompt is operated by BoraDuo. This policy covers the optional sync feature of PilePrompt (the "Service"). It does not cover the desktop or web app itself when sync is turned off — in that mode nothing you write leaves your device.
What we collect
When you turn on sync and sign in with Google, we receive from Google: your Google account's unique ID, and — only if you choose to authenticate this way — your name, email address, and profile picture, for the sole purpose of identifying your account and keeping your data separate from other users'.
When you use sync, we store: the content of your projects, tasks, and notes, exactly as you typed them; and timestamps of when that content was last changed.
If you share a project with someone else, we store the email address you invited (so we know who to grant access to), and the email address of anyone who has accepted and become a collaborator on that project. That email is visible only to people who already have access to that same shared project.
We do not run ads, do not sell data, and do not use your content to train any model. We do not use cookies, and we do not use any analytics or tracking tools of any kind — nothing about your usage is collected beyond what's described in this policy.
Where it's stored
Your data is stored in a Cloudflare D1 database operated by BoraDuo, hosted on Cloudflare's infrastructure. See Cloudflare's own privacy policy for how they handle data as our infrastructure provider: cloudflare.com/privacypolicy.
How long we keep it
We keep your data for as long as your account exists, or until you delete it yourself (see "Your rights" below).
Who can see it
Only you, via your signed-in account. BoraDuo, as the operator, can technically access the underlying database to operate and maintain the Service, and would only do so to fix a bug, respond to a support request you sent, or comply with a legal obligation.
Your rights
You can, at any time and without contacting anyone:
- Export your data — pull it via the sync API, or use the in-app "Download backup" button (Settings → Account & Sync).
- Delete your data — use the in-app "Delete all my data" action (Settings → Account & Sync), which permanently removes it from the server. This does not delete your Google account or anything Google itself holds — manage that at myaccount.google.com/permissions.
If you're in the EU/UK/another jurisdiction with statutory data rights beyond the above (access, portability, objection, etc. — GDPR/UK GDPR Articles 15-21), contact bora.duo.apps@gmail.com and we'll respond within 30 days.
Changes to this policy
We'll update the "Last updated" date above whenever this policy changes. For material changes (anything affecting what we collect or how we use it), we'll also show an in-app notice.
Contact
See also: Terms & Conditions.