Privacy notice

Last updated: 24 August 2026

This notice explains the information SAIMOS uses to provide private calendars, trips, chat, shared expenses and CrowdPulse Sets.

1. Controller and contact

Saimos Srl, Italy, is the operator and data controller for the personal data processed through SAIMOS. Contact Saimos Srl or exercise a data-protection right through the contact and ownership page.

2. Information processed

3. Purposes and legal bases

Information is used to provide requested features, maintain shared spaces, authenticate users, synchronize calendar feeds, operate optional integrations, secure and troubleshoot the service, prevent abuse and respond to support requests. Processing is based on providing the requested service, the legitimate interest in operating and protecting it, consent for optional device permissions or integrations, and legal obligations where applicable.

4. Sharing with other users

Content in a shared space is visible according to its membership, invitation and permission settings. Invitation and calendar-subscription links can grant access and must be treated as confidential. Users are responsible for inviting only intended participants.

5. Service providers and integrations

SAIMOS uses Netlify for hosting, authentication, serverless processing and application storage. Selected AI features send the information required for that request to OpenAI. Live audio and video rooms use LiveKit. Spotify data is used only after a user connects Spotify. Optional communications features may use configured messaging providers. These services process information only as needed for their role and are also governed by their own privacy terms.

6. Live media and attachments

SAIMOS does not initiate recording of LiveKit rooms in the current service. Live streams are transmitted for the active room and may produce limited derived feedback used by CrowdPulse. Voice notes, uploaded media and other chat attachments are separate user content and are stored until removed or until their associated content expires.

7. Retention

Account and user content is retained while needed to provide the account and its shared spaces. Revoked invitations and expired sessions are removed or invalidated. Technical logs, backups and provider-side records follow operational, security and provider retention needs. Where no fixed deletion timer is specified in the service, information is kept only for as long as needed for its purpose or a legal claim. Account or content deletion can be requested through the contact page.

8. Cookies and local storage

SAIMOS uses browser storage and strictly necessary authentication data for sessions, preferences, installable-app features and service security. The current application does not intentionally include advertising trackers.

9. International processing

Some providers may process data outside the European Economic Area. Where required, the operator relies on the provider’s applicable transfer mechanism and contractual safeguards.

10. Your rights

Subject to applicable law, you may request access, correction, deletion, restriction or portability, object to certain processing, or withdraw consent. Use the contact form. You may also complain to your competent data-protection authority; in Italy this is the Garante per la protezione dei dati personali.

11. Children

SAIMOS is not directed to children creating independent accounts. A parent or guardian who includes information about a child in a family plan is responsible for doing so lawfully and for managing access to that information.

12. Security and changes

Technical and organisational measures are used to protect information, but no internet service can guarantee absolute security. Vulnerabilities should be reported through the security page. Material changes to this notice will update the date shown above.