Privacy notice
Last updated: 24 August 2026
This notice explains the information SAIMOS uses to provide private calendars, trips, chat, shared expenses and CrowdPulse Sets.
1. Controller and contact
Saimos Srl, Italy, is the operator and data controller for the personal data processed through SAIMOS. Contact Saimos Srl or exercise a data-protection right through the contact and ownership page.
2. Information processed
- Account and profile information, including name, email address, authentication identifiers, profile settings and optional profile details.
- Calendar events, trip plans, locations, invitations, membership and permissions.
- Messages, voice notes, attachments and information used for audio or video calls.
- Shared-expense records, participants, allocations, settlements and uploaded receipts.
- CrowdPulse Set configuration, guest feedback, playback state and derived room observations when CrowdPulse is used.
- Integration data needed for services you choose to connect, including calendar feeds, Spotify playback and optional communications tools.
- Technical and security information such as IP address, browser or device details, timestamps, request logs and error information.
- Inputs and outputs for an AI-assisted feature when you choose to use that feature.
3. Purposes and legal bases
Information is used to provide requested features, maintain shared spaces, authenticate users, synchronize calendar feeds, operate optional integrations, secure and troubleshoot the service, prevent abuse and respond to support requests. Processing is based on providing the requested service, the legitimate interest in operating and protecting it, consent for optional device permissions or integrations, and legal obligations where applicable.
4. Sharing with other users
Content in a shared space is visible according to its membership, invitation and permission settings. Invitation and calendar-subscription links can grant access and must be treated as confidential. Users are responsible for inviting only intended participants.
5. Service providers and integrations
SAIMOS uses Netlify for hosting, authentication, serverless processing and application storage. Selected AI features send the information required for that request to OpenAI. Live audio and video rooms use LiveKit. Spotify data is used only after a user connects Spotify. Optional communications features may use configured messaging providers. These services process information only as needed for their role and are also governed by their own privacy terms.
6. Live media and attachments
SAIMOS does not initiate recording of LiveKit rooms in the current service. Live streams are transmitted for the active room and may produce limited derived feedback used by CrowdPulse. Voice notes, uploaded media and other chat attachments are separate user content and are stored until removed or until their associated content expires.
7. Retention
Account and user content is retained while needed to provide the account and its shared spaces. Revoked invitations and expired sessions are removed or invalidated. Technical logs, backups and provider-side records follow operational, security and provider retention needs. Where no fixed deletion timer is specified in the service, information is kept only for as long as needed for its purpose or a legal claim. Account or content deletion can be requested through the contact page.
8. Cookies and local storage
SAIMOS uses browser storage and strictly necessary authentication data for sessions, preferences, installable-app features and service security. The current application does not intentionally include advertising trackers.
9. International processing
Some providers may process data outside the European Economic Area. Where required, the operator relies on the provider’s applicable transfer mechanism and contractual safeguards.
10. Your rights
Subject to applicable law, you may request access, correction, deletion, restriction or portability, object to certain processing, or withdraw consent. Use the contact form. You may also complain to your competent data-protection authority; in Italy this is the Garante per la protezione dei dati personali.
11. Children
SAIMOS is not directed to children creating independent accounts. A parent or guardian who includes information about a child in a family plan is responsible for doing so lawfully and for managing access to that information.
12. Security and changes
Technical and organisational measures are used to protect information, but no internet service can guarantee absolute security. Vulnerabilities should be reported through the security page. Material changes to this notice will update the date shown above.