Privacy Policy
1. Who we are
CalendarGuardian is operated by DealDoctor PLLC ("DealDoctor," "we," "us," or "our"). We provide calendar-security and calendar-spam protection tools that can detect, flag, report, block within CalendarGuardian, quarantine or remove suspicious calendar invitations according to user settings and provider capabilities.
2. Information we process
Account and authentication data
When you connect a Microsoft account, we may receive basic profile information made available through Microsoft Graph, such as your account identifier, display name, email address or user principal name, together with OAuth access and refresh tokens. When you connect Google Calendar, we may receive your Google OpenID Connect identifier, display name, email address, and OAuth access and refresh tokens. We do not receive or store your Microsoft or Google account password. On Apple devices, CalendarGuardian may request Calendar access through Apple's EventKit framework; EventKit authorization is controlled by the operating system and does not require CalendarGuardian to receive your Apple Account password.
Calendar data
To provide protection, CalendarGuardian may retrieve or locally process calendar-event information such as event ID, subject, organizer, organizer email address and domain, attendees, start and end time, all-day status, recurrence, location, response status, event body or preview, links contained in the invitation, calendar source, and related event metadata.
CalendarGuardian is designed to process allowed events transiently for scoring. When an event is flagged, reported, or removed, CalendarGuardian may retain an event snapshot and the reasons for the decision so you can review the event, understand why it was flagged, and where technically possible restore available event information. Native Apple clients may perform supported detection locally on the device; if a native feature sends event information to the CalendarGuardian service, the app will disclose that behavior as appropriate.
Rules and protection settings
We store your protection settings and CalendarGuardian rules, including trusted and blocked organizer addresses or domains, sensitivity thresholds, and automatic-action preferences. Provider-specific platform rules may limit which actions can be automated.
Service and security data
We may process limited technical information needed to operate and secure the service, including session identifiers, error information, timestamps, subscription or notification-channel status, webhook processing records, and diagnostic information. CalendarGuardian uses a strictly necessary session cookie to maintain your authenticated session. The service is not designed to use advertising or cross-site behavioral tracking cookies.
3. How we use information
- authenticate and connect an authorized calendar account or native calendar store;
- detect and score suspicious invitations;
- apply trusted and blocked sender/domain rules;
- record user reports and, where a Calendar Provider exposes a supported production reporting mechanism, submit a provider report when authorized;
- flag, review, quarantine, remove, dismiss, or restore event information according to your instructions, settings, and provider capabilities;
- maintain Microsoft Graph subscriptions and Google Calendar notification channels and process calendar-change notifications;
- provide support, prevent abuse, investigate errors, and secure the service;
- administer subscriptions and billing where applicable; and
- comply with law and enforce our agreements.
4. Automated detection and actions
CalendarGuardian uses automated rules and risk scoring to evaluate invitations. The current core detection engine is rules-based and does not require sending calendar content to a third-party generative-AI model provider. Automated detection can make mistakes. Depending on your settings and provider capabilities, CalendarGuardian may take automated action on high-confidence events or events from sources you expressly block. Some platforms may require explicit user interaction before CalendarGuardian modifies a calendar event.
"Block" within CalendarGuardian means adding a sender or domain to CalendarGuardian's internal protection rules so future matching invitations can be recognized and acted upon. It does not necessarily create an Exchange, Microsoft, Google, Apple, email-server, or network-level block unless the product expressly states otherwise.
5. Calendar providers
CalendarGuardian uses provider-specific interfaces. Microsoft connections use Microsoft identity and Microsoft Graph. Google connections use Google OAuth/OpenID Connect and the Google Calendar API, including Calendar push-notification channels where enabled. Apple-native clients use Apple's EventKit framework to access calendars for which the user grants the required operating-system permission; EventKit may surface local, iCloud/CalDAV, Exchange, and other calendar sources configured on the device. Microsoft, Google, Apple, and other Calendar Providers process information under their own terms and privacy practices. Provider reporting, deletion, restoration, notification, and background-processing capabilities differ by platform.
6. Sharing and subprocessors
We do not sell Personal Data and do not share Personal Data for cross-context behavioral advertising. We disclose information only as necessary to provide and secure CalendarGuardian, interact with the Calendar Provider you authorize, process payments or Marketplace transactions, comply with law, protect rights and safety, or complete a business transaction subject to appropriate protections. Current service providers are listed at CalendarGuardian Subprocessors.
7. Data retention
We retain information only for as long as reasonably necessary for the purposes described in this Policy, to provide the service, and to meet legal obligations. Server-side OAuth credentials are retained while the corresponding provider connection remains active and are deleted when the associated CalendarGuardian account data is deleted. Protection rules and settings are retained while your account is active unless you delete them. Under the initial production configuration, unresolved flagged/reported event snapshots are automatically removed after approximately 90 days, resolved review/removal snapshots after approximately 30 days, and detection-history records after approximately 90 days, unless a shorter period is applied or a longer period is reasonably required for security, dispute, fraud-prevention, or legal purposes. These periods may be changed as the service evolves, with this Policy updated when a material retention practice changes.
When you use the in-app account deletion function, CalendarGuardian deletes the applicable service-side account record, stored OAuth token material, settings, rules, review/removal records, and detection records associated with that connected account and attempts to remove the applicable CalendarGuardian provider subscription or notification channel. Deleting CalendarGuardian service data does not itself delete your Microsoft, Google, Apple, or other provider account. Limited information may remain temporarily in ordinary-course backups, security logs, or records we are legally required to retain.
8. Security
CalendarGuardian is designed to use encrypted HTTPS connections in production. Stored server-side OAuth token material is encrypted at the application layer using AES-256-GCM. Application secrets are intended to be maintained outside source code in protected environment configuration. Native Apple Calendar permission is mediated by the operating system. We use least-privilege access principles and request only permissions needed for supported features. See Security for additional information.
9. Legal bases and international use
Where the GDPR, UK GDPR, or similar laws apply, we process Personal Data as necessary to perform our contract with you, based on legitimate interests in providing and securing the service, to comply with legal obligations, and based on consent where required. DealDoctor PLLC is based in the United States, and information may be processed in the United States or other locations used by our service providers or authorized Calendar Providers. Where required, we use or support legally recognized transfer mechanisms.
10. Your rights and choices
Depending on applicable law, you may have rights to access, correct, delete, restrict, object to processing of, or obtain a copy of Personal Data. You can change protection settings and trusted/blocked rules in the service, revoke CalendarGuardian's provider authorization through the applicable provider, change Apple Calendar permissions in device settings, or delete CalendarGuardian data. Requests may also be sent to privacy@dealdoctor.pro. We may need to verify your identity before fulfilling a request.
11. California disclosures
CalendarGuardian may process identifiers, internet or electronic-network activity information, professional or employment-related information contained in calendar events, and other information you choose to include in calendar content. We use these categories for the business purposes described above. We do not sell Personal Data and do not share Personal Data for cross-context behavioral advertising as those terms are defined by California law.
12. Children
CalendarGuardian is not directed to children under 18, and we do not knowingly offer the service to children.
13. Changes
We may update this Policy as CalendarGuardian evolves, including when new calendar providers, native clients, permissions, or material processing activities are added. Material changes will be posted here and, where appropriate, communicated through the service or account email.
14. Contact
DealDoctor PLLC
Privacy: privacy@dealdoctor.pro
Legal: legal@dealdoctor.pro
Support: support@dealdoctor.pro