BETA PRIVACY NOTICE

Your inbox is personal. We treat it that way.

What Encore collects

Encore stores your account email, preferences, private Encore aliases, artists you follow, and the event facts needed to build your calendar. If you send ticket mail to an alias, we temporarily retain a sanitized email body so you can review the source and we can correct parsing.

Google user data Encore accesses

The optional Gmail connection requests the read-only gmail.readonly scope. Encore uses it to read your Gmail account address and message metadata and content from Encore's published allowlist of live-event sender domains. This may include the sender, subject, message date, ticket receipt, event announcement, event change, delivery information, and links contained in a matching message. Encore does not request permission to send, modify, move, or delete Gmail messages.

How Encore uses Google user data

Encore uses Google user data only to provide and improve prominent, user-facing Encore features: finding relevant live-event messages, classifying them, extracting event facts, adding tickets and announcements to your private calendar, keeping those events current, and sending the event alerts you request. The initial synchronization processes matching messages from approved event senders in bounded batches; later synchronizations inspect newly changed matching messages.

Encore does not use Google user data, or raw, aggregated, anonymized, or derived data obtained from Google Workspace APIs, for advertising, sponsored campaigns, marketing to other people, audience segmentation, industry or market reports, commercial audience products, credit or eligibility decisions, or the creation, training, or improvement of foundational or generalized AI or machine-learning models. Encore does not sell Google user data.

How Google user data is stored and protected

Raw Gmail message content is processed transiently and discarded when processing finishes; Encore does not store raw Gmail messages or attachments. Encore stores only the minimum results needed for the user-facing feature, such as sender-domain summaries, classifications, extracted event facts, calendar relationships, synchronization cursors, and security audit results.

If you enable ongoing Gmail synchronization, Encore stores a Google refresh token encrypted with AES-256-GCM. The encryption key is maintained separately from the database, the encrypted token is bound to your internal user identifier, the plaintext token is never exposed to the browser, and background queue messages contain only internal job and user identifiers. Application secrets and service credentials are available only to server-side processes. Database row-level access controls isolate user-owned records, administrative access is role-restricted, and security-relevant automated and user actions are recorded in an audit log. Encore uses HTTPS/TLS for data in transit and applies bounded processing, sender allowlists, least-privilege service access, and retention limits to reduce exposure.

Retention

Raw inbound alias email content is automatically removed after no more than 14 days. Extracted event facts, your calendar relationships, preferences, consent records, and security audit history remain until they are no longer needed or you request deletion. Some minimal billing, fraud-prevention, or legal records may need to be retained separately.

Processors and Google data sharing

Cloudflare processes requests and transient Gmail content to run Encore. Supabase provides authentication and stores encrypted connection credentials and the minimum derived records described above. If deterministic parsing cannot reliably classify a matched event email or extract the event facts needed for your calendar, Encore may send a bounded, redacted excerpt to the paid Google Gemini Developer API using Gemini 2.5 Flash. Encore removes common email addresses, phone numbers, street addresses, payment details, order references, and ticket codes before that transfer. Gemini's response is used only to classify the message and extract event facts for the requesting user's Encore calendar. The paid Gemini service does not use prompts or responses to improve Google's products. Encore does not transfer Google user data to Postmark, Ticketmaster, Spotify, advertisers, industry customers, or data brokers.

Google Workspace Limited Use

Encore's use and transfer of information received from Google APIs to any other app adheres to the Google API Services User Data Policy, including the Limited Use requirements. Encore uses this information only to provide or improve the user-facing Gmail synchronization, private calendar, and event-alert features described above.

Non-Google business insights

Encore may in the future create aggregated audience and market insights from public event information and data collected independently of Google Workspace APIs. Google user data—and any raw, aggregated, anonymized, or derived data obtained from Google Workspace APIs—is excluded from those products. Industry customers do not receive your direct personal information or private contact graph. Encore does not sell your personal information.

Your choices and deletion

Gmail and Spotify are optional. You can disconnect Gmail from Settings at any time. Disconnecting revokes Google's access token, deletes Encore's stored encrypted refresh token and stops future Gmail synchronization. It does not automatically remove event facts already placed on your private calendar; you can delete those records by deleting your Encore account. You can also rotate or revoke an alias, unfollow artists, archive notifications, withdraw optional marketing consent, and ask for an export or deletion of your account. Account deletion revokes and deletes the Gmail connection and removes user-owned Gmail synchronization results, calendar relationships, preferences, and other user-owned records, subject only to minimal records Encore must retain for security, fraud prevention, billing, or law. Email privacy@myencore.live with privacy questions or a data request.

Back to Encore