Privacy Policy

Saveroot (saveroot.app) · Last updated: September 2026

Saveroot turns the social-media posts you choose to save into a personal knowledge base. This policy explains what we collect, why, and your rights. The short version: your saves are yours — we process them only to build your knowledge base, we don't sell data, and you can delete everything at any time.

What we collect

What we do NOT do

How your data is processed

Video/image content is analyzed by AI models (currently Google's Gemini API) to produce transcripts and summaries. Processing is automated; content is sent to these processors solely to generate your results and is subject to their API data-handling terms. Messages are delivered via the messaging platform you use with us (e.g., Telegram).

Storage & security

Your knowledge base is stored on our servers (EU/US cloud hosting) and retained while your account is active. Access is limited to operating the service. During early testing, reading pages may be rendered via Telegraph (public-but-unlisted URLs) — this is disclosed in-product and will be replaced by private in-app pages.

Your rights & deletion

You can request a copy of your data, or full deletion, at any time — see Data deletion. Deletion removes your saves, derived content, articles, and account records within 30 days.

Meta Data Portability

Where you use Meta's Data Portability tools to transfer your saved items to Saveroot, the transfer is user-initiated and scoped to your saved content. We use it only to build your knowledge base, and it is covered by this policy and by our obligations as a data transfer destination.

Google account data

Saveroot's own operator account connects to Google Drive, Google Sheets and Google Calendar through Google's OAuth consent. We use that access for three things only: to read the plan documents the operator keeps on Drive, to create and update the bookkeeping spreadsheets we produce for clients of the document service, and to read and write the operator's calendar events for scheduling. Clients of the document service never connect a Google account; their documents are stored on Saveroot's own servers.

Saveroot's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not use Google user data for advertising, we do not sell it, and we do not allow humans to read it except with the account owner's consent, for security purposes, or to comply with the law. Access can be revoked at any time from Google account permissions, and the stored token is deleted on request.

Children

Saveroot is not directed at children under 16 and we do not knowingly process their data.

Contact

Questions or requests: privacy@saveroot.app.