Security First

Your life is private. EffortList AI is built with bank-grade security and a privacy-first architecture, ensuring your data stays yours.

Our Commitment to You

EffortList AI isn't just another productivity tool—it's a trusted partner for your most personal information. We believe that AI should empower you, not expose you. That's why security and privacy aren't features; they are our foundation.

Bank-grade AES-256 encryption at rest
Zero document storage policy
GDPR & CCPA aligned privacy
No training on user data

Data Protection

Securing every byte, from transit to storage.

Encryption in Transit

All communication between your device and our servers is encrypted using industry-standard TLS 1.3, preventing any interception.

Encryption at Rest

Your data is stored with AES-256 encryption on Google Cloud's secure infrastructure, fortified with enterprise-grade key management.

Zero Document Storage Policy

When you upload a syllabus or document, Omni processes it transiently in memory. Once the AI analysis is complete, the document is permanently discarded. We never store your files on our servers.

Identity & Access

Secure Auth

We leverage high-level authentication, backed by Google, for secure sign-ins via Google OAuth and email. We never handle or store your passwords directly.

Data Isolation

Strict security rules ensure that only YOU can access your data. No other user can see your personal data, ever.

Bot Protection

We use smart verification to ensure that every request comes from a real person using our app, keeping automated bots out and our platform safe.

Privacy-First AI

We use the latest Google Gemini models with enterprise-tier data processing agreements. This means your interactions are not used to train AI models.

Prompt Injection Protection

Advanced input sanitization prevents malicious attempts to bypass security controls.

Data Sanitization

Identifiable information is handled with care before being processed by AI engines.

Global Compliance

EffortList AI is designed with GDPR and CCPA principles as a requirement, not features. You have the right to access, export, and delete your data at any time.

Secure Offline Access

As a Progressive Web App, your data is stored securely on your device for offline access. This data is protected by the browser's same-origin policy, ensuring only EffortList AI can reach it.

Secure Booking System

Our professional booking system is designed to protect your time and your privacy. Share your link with confidence.

Mandatory Guest Verification

We require all guests to verify their email before booking, effectively eliminating spam and unauthorized appointments.

Privacy-Preserving Availability

Guests only see your available time slots. Your personal task names, descriptions, and private calendar details are never exposed.

Personal Device Safety

To keep your data private, we recommend using EffortList AI on your personal, trusted devices. Always ensure your phone or computer is protected by a passcode or biometrics to prevent unauthorized physical access. While your data is securely encrypted online, staying safe also starts with protecting your physical device.

Your Peace of Mind is Our Priority

We're committed to transparency.