Pilot data notice
Updated October 7, 2026. This invitation-only pilot is for adults. Each access code belongs to one private account; keep it safe and do not share it.
What is saved
Your name, explicitly saved life context, requests, plans, prepared results, scheduled jobs, inbox reminders, feedback, result corrections, structured workflow outcomes and an activity history are stored on the YourNod server. Other testers cannot access your account. The pilot operator can administer the server and review stored feedback and data when investigating problems.
Your life and work boundaries
Saved items can belong to Personal, Family, Work and other compartments. Each request retains its permitted compartments. Only selected, confirmed, active items may be included in AI context when you opt in. Explicit local reads of your saved tasks and daily briefs do not need cloud AI. Roles and life chapters are saved only after your confirmation. Optional expiry removes a saved item from live memory; copies already included in historical requests or backups follow their own deletion and retention rules.
Your timezone, AI privacy preference, protected time, request replies, revisions, step checkpoints and preparation outcome observations are also saved. Protected time affects in-app attention classification. Local-only AI means a model on the configured YourNod server endpoint; it does not run a model on your phone and does not disable explicitly requested email or web connections.
Responsibilities YourNod carries
Each experience saves its chosen life compartments, selected inbox IDs, optional wish or transition, supplied steps, cadence, status and next check. Source snapshots, bounded observation history, in-app reminders and your completion reports are saved privately. Weekly would-miss answers and optional time estimates are saved to your account. The operator can review fixed aggregate counts to evaluate the pilot; free-text life records and inbox content are not shared with other testers. Up to 200 observation rows are retained per responsibility. Export includes these records, and deleting your account removes them from the live database.
These experiences observe already saved information and stored observations from selected connected inboxes. They do not start additional mailbox reads. Source coverage is visible; missing information does not mean everything is handled. Reminders arrive inside YourNod, not through phone push. “I handled this” records your own report, rather than independent evidence of sending, booking, payment or work performed. Pause and Stop are available for each responsibility, and the global Stop control also pauses observation. External actions need their own specific approval and an available connector; the responsibility engine does not pay, move money, permanently delete or expand its permissions.
Email connections
Connecting Gmail or Outlook uses the provider’s own consent screen. YourNod stores encrypted access and refresh tokens on its server and remembers each connected account separately. Each request saves its selected inbox IDs, and combined results identify the source mailbox. Account labels can distinguish Personal, Work and Other. The default selection is explicit; adding an additional account does not select it automatically. Corporate accounts remain subject to their organization’s app-access policies. Read access retrieves sender, subject and a short preview of up to 30 recent inbox messages per selected account per request. General read requests do not send or modify mail. Separately authorized email rules and Inbox Rescue can organize mail and send approved replies as described below. Full inbox sync is not enabled. Message data is processed in memory; saved results may include message details. Disconnect removes that inbox’s stored tokens and its pending reconnects, without disconnecting other inboxes. To remove the provider-side permission grant, visit Google or Microsoft account app permissions.
Learning from experience
Requests, results and corrections stay in your account. With “Use my saved context” selected, up to three relevant corrections on similar requests may be included with your saved items in AI planning and writing. Shared learning uses fixed ability IDs and versions, connection issue codes and success/failure outcomes; email content, names, requests and free-text corrections are not shared between accounts. Provider suggestions may change only after successful outcomes from at least three different accounts. Repeated verified preparation patterns become disabled recipe candidates that require testing and human review before activation. Shared recipe candidates require at least three different accounts and contain only contract IDs, versions and counts. Deleting a request or account removes its workflow records from the live learning data.
Email rules and saved documents
If you allow organizing for an inbox, YourNod can label, archive, mark as read, move mail to Junk or Trash, and send replies — only through rules you create. Rules show a preview first, every run is recorded and can be undone, starred and important mail is never touched, and nothing is permanently deleted (the provider’s Trash retention rules apply). Document replies go only to the senders a rule allows; automatic sending happens only on rules you set to automatic, with a daily limit. Documents you save under Email rules are stored encrypted on the YourNod server until you remove them; only message ids, senders, subjects and short previews of matched mail are kept with a rule run.
Inbox Rescue
Inbox Rescue first counts mail in your inbox by group (promotions, social, newsletters, old notifications, long-unread, older than a year) using your email provider’s search. Counting changes nothing. It keeps message ids for the groups found and the names and addresses of the most frequent senders, so you can review them; it does not store message bodies. Only after you choose groups and press Clear does it archive them or move them to Trash, in small batches, recording each move so the whole rescue can be undone. Starred, important and anything from the last 7 days is never included. “Keep it clean every day” creates daily automatic rules for the groups you cleared; you can pause or delete them anytime.
Files and recordings
Raw uploaded files and audio recordings are processed for the current request and are not retained by the application. One exception you choose: when you sign a document with Sign & send, the signed PDF is saved encrypted in My documents until you delete it (your signature drawing and the original upload are not kept). Prepared results may include information extracted from uploaded files and are saved when you run a saved job. Audio transcription uses the configured transcription service; the pilot currently uses transcription on its server.
AI and web services
When a model is configured, your request and the kinds of attached files go to that provider. Raw file contents are not sent to the planner. If you select “Use my saved context,” up to 15 active saved items are included with planning and writing. Web searches send the search query to the configured search service. Provider processing is governed by that provider’s terms.
Reply recovery and personal writing preferences
Each reply saves its exact review and an outbound reference before sending. If a result is uncertain, YourNod can read a bounded matching Sent copy in the same connected account and compare recipient, thread, text and attachment hash. These fetched contents are compared temporarily; only receipt metadata is saved. A matching Sent copy does not prove delivery or a response. A missing match never authorizes another send. Older attempts without a reference may still require checking Sent mail yourself.
YourNod may suggest a sign-off or shorter replies after three distinct explicit edits within the same part of your life. Only those narrow style values and source references are saved as examples, rather than whole drafts in the style table. Suggestions require confirmation, never grant action permissions and are not shared with other users. Confirmed sign-offs are applied locally to future drafts. You can decline or forget a preference. Export and account deletion include these records.
Outside notification channels
Email, text, WhatsApp, Slack and Teams alert adapters require provider setup, an owner-verified destination and your opt-in. Destinations are encrypted on the server. Alerts contain a fixed link to your private YourNod inbox, without task, family or email contents. Anyone in a chosen Slack or Teams channel can see its alerts. There is a six-alert-per-day limit for each destination. Opt-out cancels queued alerts; an ambiguous send is recorded and never automatically resent. Provider acceptance is not verified delivery. Approvals still happen inside YourNod; replying yes in another channel does not authorize an action.
Other features and where data goes
Sending email. Besides email rules, YourNod can send an inbox reply, a meeting follow-up, a nudge or a signed document — each only after your nod on that exact message, from the inbox you choose, at most once. Your email service accepting a message is recorded; delivery is not verified.
Calendars and contacts. If you connect them, YourNod reads selected calendars and contacts, and can create a private event only after you approve its exact details. Event and contact details you save are kept in your account.
Location (Around). Your location is used only when you tap. Searches send it rounded to about 100 m to OpenStreetMap (places) and Open-Meteo (weather). During an outing, a parked-car spot is kept exactly and the outing’s locations are deleted when it ends (or after 18 hours). A saved home location is kept rounded to about 100 m until you remove it.
Voice. A Live voice conversation you start sends microphone audio to OpenAI’s realtime service for that conversation; YourNod keeps no audio and no transcript unless you choose to carry your reviewed words into a request.
Cooking (Live). If you give a recipe link, YourNod fetches that page to read the recipe. Session details are cleared when you end, unless you keep them.
Requests by text or email, and device alerts. When you turn these on, messages you send to YourNod’s number or address become private requests in your account, and alerts contain only a link to your private inbox.
Your record and YourNod’s memory
Everything YourNod does for you is kept in a private record: each entry says what happened (for example “You approved clearing your inbox”), never email text, documents or recordings, and is chained to the one before so changes can be detected. You can search it and check it in History. Memory is off unless you turn it on in Settings. When on, short summaries of your record — including what you asked for, saved items, email subject lines and who you are waiting on — are sent to YourNod’s memory service (Hindsight) running on YourNod’s own server, which uses the configured AI provider (OpenAI) to pull out facts and patterns. Your memory is kept separately from everyone else’s. Turning it off stops learning; “Forget everything” and deleting your account erase it; Download my data includes it. Memory never sends, books, pays or deletes anything.
Your controls
You can delete saved context and jobs, download your data, stop active jobs, sign out or delete your account in Settings. Account deletion removes your live application records and sessions. Server backups may retain earlier data until their configured rotation expires; the existing deployment retains backups for up to 14 days. Records are protected by account access checks and server file permissions; this pilot does not provide end-to-end encryption.
What this pilot does
YourNod supports up to ten Google and Microsoft inboxes per person and prepares plans and drafts and schedules inbox reminders. General task requests do not automatically send messages or change connected calendars, purchase, book, pay or share family data. Separately created email rules can organize mail or send document replies within their explicitly approved settings and limits. Approving a handoff releases preparation for you to finish; “I completed it” records your confirmation, rather than provider verification. Device alerts are off unless you turn them on. Live condition watches are not enabled.
Questions and problems
Use the feedback form in Settings or contact the person who invited you. Avoid passwords, identity documents and highly sensitive information during the pilot.
Back to YourNod →