Privacy Policy
The policy below is maintained with Termageddon and updates automatically as privacy laws change. The Google API Services Disclosure that follows it is maintained by us and describes exactly how Willow handles your Google data.
Google API Services Disclosure
This section supplements the Privacy Policy above and describes how Willow handles data received from Google APIs. It is maintained directly by Willow Intelligence, Inc. Current as of September 15, 2026.
What Google data Willow accesses
Willow uses Sign in with Google to create and identify your account. Willow requests openid and userinfo.email - your Google account identifier and email address - both when you sign in and when you connect a mailbox. Signing in also provides userinfo.profile, your basic Google profile. Willow uses these to create your account, sign you in, and bind your Willow account to your mailbox.
When you connect a mailbox for Willow to read, Willow also requests:
- gmail.readonly - read-only access to the messages, threads, labels, and metadata in your Gmail. Willow reads your mail to surface what needs your attention and to answer your questions about it. With this access Willow cannot send, modify, or delete anything in your Gmail, or change your Gmail settings.
- drive.file - access limited to the files Willow itself creates, and any file you open with Willow. Within that limit Willow can create, read, and update those files; it has no access to anything else in your Drive. Willow uses this to make and update the Google Sheets and Docs it creates for you.
If you turn on Calendar or Drive reading for an account, Willow also requests:
- calendar.readonly - read your calendar, so Willow can answer questions about your schedule and check for conflicts.
- calendar.events - create, update, or cancel calendar events. Willow makes a calendar change only after you approve that specific change.
- drive.readonly - read your existing Drive files when you ask Willow about them.
What Willow does with your data
Willow uses your Google data only to provide the assistant’s features. Willow can:
- surface the messages that need you, sorted into tasks, notices, and questions;
- answer your questions about your mail in chat;
- draft and send email from Willow’s own address, [email protected], after you approve each message - never from your Gmail account;
- read your calendar and, after you approve each change, create, update, or cancel events;
- create Google Sheets and Docs for you;
- read your existing Drive files when you have enabled Drive reading and ask about them;
- search and read public web pages when you ask it to;
- remember facts about you in a profile you can view, edit, and delete.
Willow does not use your Google data for advertising, does not sell it, and does not use it to train AI models.
Storage
Willow keeps an encrypted copy of your mail. So it can research, draft, and remember across your mailbox, Willow stores:
- The text of the messages in your Inbox and archive, encrypted at rest under an encryption key that is unique to you. Willow does not store the text of messages in your Spam or Trash.
- Metadata and data derived from that mail, stored under standard encryption at rest (not under your unique key): the sender, subject, and dates of each message, the short snippets Gmail provides, the filenames of its attachments, the web addresses of links found in your mail, and a record of the people you correspond with.
- A search index built from your mail. To build it, the text of your messages is sent to Voyage AI, which converts it into the numeric vectors that power search (see Sharing). Messages flagged as sensitive are never sent for indexing.
- An AI-audit record. For each message Willow’s AI analyzes, Willow keeps a record of what the AI was shown and what it returned. The record of what the AI was shown is encrypted under your unique key. The AI’s structured response is stored under standard encryption at rest.
- Your chats with Willow, including the messages in each chat thread, stored under standard encryption at rest (not under your unique key), kept so Willow can continue a conversation and so you can return to it.
- A memory profile. Durable facts about you that Willow learns from your mail and your chats, kept as a profile and a set of facts you can view, edit, and delete.
- Mail sent through your Willow address. Email Willow sends from [email protected] on your behalf is stored, encrypted under a key unique to you. Replies to that address arrive in Willow’s own mailbox, which runs on Google Workspace, and are stored there as ordinary email.
- The structured items in your Willow inbox and the record of Willow’s decisions.
Your data is used only to power your own assistant: it is never used to train AI models, never sold, and never read by any person except with your explicit consent, for security purposes, or to comply with law.
Sharing
We share your data with service providers that process it on our behalf, only to provide the service. They may use it only to provide their service to us, not for their own purposes. The providers we use today, and what each receives, are:
- Anthropic - the AI provider. Receives your email content, chat messages, the inputs Willow uses to learn facts about you, and the rendered prompts when Willow calls Anthropic directly (see Amazon Web Services below for the other route). Anthropic also runs the web search and quick page fetches Willow performs (the search text and the page addresses in context). Anthropic’s API terms commit it not to train its models on this data.
- Amazon Web Services (Amazon Bedrock) - runs the same Anthropic Claude models inside Amazon’s cloud. Willow sends most of its AI requests here first and falls back to Anthropic directly when Amazon cannot serve one. Receives the same rendered prompts as Anthropic (your email content, chat messages, and the inputs Willow uses to learn facts about you). Amazon Bedrock does not store these prompts or responses, does not share them with Anthropic or anyone else, and does not use them to train models; processing stays in the United States.
- Google Cloud Platform - hosting and encrypted storage (databases, encryption keys, backups). Willow’s own mailbox, [email protected], runs on Google Workspace.
- Clerk - sign-in and session management. Receives your Google account email and account identifier.
- Voyage AI - the search index. Receives the text of your messages, other than messages flagged as sensitive, to convert into the numeric vectors that power search.
- Temporal Cloud - workflow orchestration. Its history holds account and message identifiers and the AI’s structured output about your mail, and, when you chat, the request Willow sends to the AI together with the results of the tools it runs. It does not hold raw message bodies from mail review. This history is retained for about 30 days.
- Sentry - error reporting. Receives error types and technical diagnostics with personal content scrubbed out; message text is dropped.
- PostHog - product analytics. Receives counts of what happens in the app and your account identifier. On willow.chat it records page views and clicks without cookies or anything stored in your browser, and receives the invitation-form answers other than your name and email (occupation, which mail service you use, how you heard about Willow). It receives no message content.
- Browserbase - fully renders a specific public web page when Willow is asked to open one, for pages that need a browser to load. Receives the web address and returns the page’s text. It receives no mailbox content.
- Grafana Cloud - operational logging and monitoring. Receives operational log records that include identifiers and short free-text operational fields. It does not receive message bodies.
- Cloudflare - serves and protects the willow.chat website. Receives the network address and request details of visitors to willow.chat, as any web host does. It receives no mailbox content and no Google user data.
- Typeform - hosts the "Request an invitation" form on our site. Receives what you type into that form (name, email, occupation, and where you read your mail). This is not Google user data.
This list is current as of September 15, 2026. No human at Willow reads your mail except with your explicit consent, for security purposes, or to comply with law.
Limited Use
Willow’s use and transfer to any other app of information received from Google APIs will adhere to Google API Services User Data Policy, including the Limited Use requirements.
If you correspond with a Willow user
Willow can send email on a person’s behalf from its own address, [email protected]. If you receive email from Willow:
- The message comes from [email protected], its sender name shows that Willow is acting for a specific person, and the message notes that it was sent by Willow on that person’s behalf.
- If you reply, your reply goes to [email protected] and is stored in Willow’s own mailbox on Google Workspace. Your reply is handled under this policy.
- To ask what Willow holds about you, or to have it deleted, email [email protected].
Retention and deletion
When you close your account, Willow destroys your personal encryption key. That immediately and permanently makes the copies encrypted under it unreadable everywhere they exist, including in our backups - this covers the encrypted copy of your mail, the encrypted record of what the AI was shown, and the encrypted copy of mail sent from your Willow address. Willow also deletes its other records about you - the search index, message metadata and the derived data described above, your chat threads, your memory profile, the structured items in your Willow inbox, the AI’s stored responses, and Willow’s decision history - from its live systems; any residual copies in routine backups are overwritten on our normal backup cycle, within about 40 days.
If you disconnect a mailbox or revoke Willow’s access to your Gmail, Willow keeps that mailbox’s data for 30 days so reconnecting restores it, then permanently deletes it from its live systems (residual backup copies age out as above). Operational logs that do not contain message content may be kept for up to 90 days for security and reliability purposes, then deleted.
Your controls
- Revoke Willow’s access to your Google account at any time at myaccount.google.com/permissions. Willow stops reading further mail immediately; that mailbox’s stored data is kept for 30 days so reconnecting restores it, then permanently deleted.
- View, edit, and delete the facts in your memory profile inside the Willow app at any time.
- Access, export, or delete the data Willow holds about you - email [email protected].
Credits
The tree mark in Willow’s logo is from Phosphor Icons, used under the MIT License.
License text
MIT License Copyright (c) 2023 Phosphor Icons Permission is hereby granted, free of charge, to any person obtaining a copy of this software and associated documentation files (the "Software"), to deal in the Software without restriction, including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense, and/or sell copies of the Software, and to permit persons to do so, subject to the following conditions: The above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software. THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE.