Privacy Policy
Last updated: 2026-09-17
This policy applies to Liaison, a service of comm.observer.
What we collect
- Account info: your email address, and either a password (stored as a one-way bcrypt hash, never in plain text) or a Google account identifier if you sign in with Google.
- The WhatsApp number you connect: the phone number you choose to link, and the messages sent to/from that number in chats where you've added the assistant. Those messages are sent to Anthropic's Claude API so the assistant can generate a reply.
- Problem reports: if you use "Report a problem", we collect what you describe, your optional contact email, and relevant technical context (e.g. which page or feature was involved) to diagnose and fix the issue.
- Google data, only if you connect a Google service:
connecting Calendar, Drive, Sheets, or Gmail from the Connectors screen
is a separate, per-service choice from signing in with Google — each
grant only what's listed below, and each can be disconnected
independently.
- Google Calendar (scope:
calendar.events) — lets the assistant read and create calendar events in chats where you've enabled it, only when you ask it to (e.g. "book a meeting for Thursday"). - Google Drive (scope:
drive.file) — lets the assistant search for and read files it created or you explicitly opened with it, and create new files on request. It cannot see the rest of your Drive. - Google Sheets (scope:
spreadsheets) — lets the assistant read and write spreadsheet data you ask it to work with. - Gmail (scopes:
gmail.readonly,gmail.send) — lets the assistant search and read your email, and send email, only when you ask it to. It cannot delete email, change labels, modify filters, or change any account setting — those scopes are never requested.
- Google Calendar (scope:
- Browser Connector extension data, only if you install and pair it: a separate opt-in, like the Google connectors above. The extension never sends us your password, login session, or cookies for any site — only the visible text content (and on-page links, to help it find the right page) of pages on sites you explicitly connect it to, and only when the assistant actually requests a page on your behalf in response to something you asked it. It cannot read any site you haven't explicitly connected.
How we use it
Solely to operate the service you signed up for: authenticating you, running the AI assistant on your connected WhatsApp number, acting on any Google service you've separately connected, and fixing bugs you or the system reports. We do not sell your data, and we do not use it for advertising.
Google user data — Limited Use disclosure
Our use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
- Google data is used only to provide the assistant feature you asked for in that moment (e.g. reading a file you referenced, creating the event you requested) — never for advertising, never for building profiles, never sold or shared with anyone besides Anthropic processing that one request to generate the assistant's reply.
- No human at Liaison reads your Google data except when you've filed a problem report that requires it to diagnose the issue.
- Disconnecting a Google service (Connectors screen) immediately revokes its token with Google and deletes any cached copy of data from that service on our server.
Who we share it with
Only the outside services needed to run the product:
- Anthropic (Claude API) — processes messages from your connected chats, and any Google data fetched to answer a request, to generate the assistant's replies; also used to diagnose bug reports.
- Google — for sign-in (if you choose it), and for whichever Calendar/Drive/Sheets/Gmail connectors you've explicitly turned on.
- Cloudflare — provides the network connection (TLS/tunnel) between your browser and our server; does not see your WhatsApp message content.
We do not share your data with anyone else.
Where it's stored
Account records and WhatsApp session data are stored on our own server, not a third-party database service.
Your choices
You can stop using the service and disconnect your WhatsApp number at any time. You can disconnect any Google service (Calendar, Drive, Sheets, Gmail) independently from the Connectors screen, which revokes that token immediately. If you've paired the Browser Connector extension, you can disconnect a specific browser from the Settings page at any time — it stops immediately and can't reconnect without pairing again — or uninstall the extension itself, which stops it from running at all. To request deletion of your account and associated data, use the Report a problem form and ask — we'll handle it directly since there's no automated self-service deletion yet.
Contact
Questions about this policy or your data: use the Report a problem form.