Legal

Privacy Policy

Last updated: July 2026

What agopo does

agopo is a document vault for Indian families. We store documents you upload — insurance policies, tax records, health reports, property papers — and use AI to read, label, and organise them. We also surface reminders when something is expiring or needs attention.

What we collect

  • Account information — your name, email, and phone number when you sign up.
  • Documents you upload — files are stored in encrypted Supabase Storage. Only you and family members you explicitly invite can see them.
  • AI-extracted metadata — when you upload a document, Gemini AI reads it and extracts structured fields (issuer, expiry date, summary). This metadata is stored alongside the file.
  • Usage data — basic logs (pages visited, actions taken) to help us improve the product. No third-party tracking.

What we never do

  • We never sell your data.
  • We never share your documents with anyone except people you invite.
  • We never modify, delete, or forward your files without your action.
  • We never use your documents to train AI models.

How we store your data

Files are stored in Supabase Storage with server-side encryption at rest. Database rows are protected with Row Level Security — your data is readable only by your authenticated session. Supabase infrastructure runs on AWS (Mumbai region for Indian users). We use Vercel for app hosting.

Google Sign-in

We use Google OAuth to verify your identity when you sign in. We request only email and profile scopes for this purpose.

Gmail integration

You can optionally connect your Gmail account to let agopo automatically detect financial documents — such as insurance policies, tax forms, and bank statements — and add them to your vault.

When you connect Gmail, we:

  • Read email subjects and snippets — to identify whether an email contains a document relevant to your vault. We search only for emails likely to contain financial or personal documents (e.g. from known insurers, banks, tax authorities).
  • Download attachments — PDFs and images that appear to be documents are extracted and processed by AI to read their contents.
  • Store extracted metadata — document type, issuer, expiry dates, and a short summary. Raw email bodies are not stored.
  • Cache email patterns — we store the sender domain and a normalised version of the subject line to avoid re-processing similar emails in future. No personal content is stored in the cache.

We use Google's gmail.readonly scope — we can only read your email, never send, delete, or modify anything.

You can disconnect Gmail at any time from Settings. Disconnecting immediately revokes our access. We do not share your Gmail data with any third party. We do not use it for advertising or to train AI models.

agopo's use of data obtained from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Family access

When you invite a family member, they get their own agopo account. By default, documents you add are visible to connected family members. You can mark any document as "Only me" to restrict access. You control who sees what — always.

Your rights

  • Access — download any document you have stored.
  • Delete — delete individual documents or your entire account. Deletion is permanent and immediate.
  • Portability — export all your data on request.

Contact

Questions about this policy? Write to us at lalwaninaveen1211@gmail.com.

← Back to agopo