Privacy

Privacy Policy

This policy describes how Dainin BC Ltd collects, uses, and protects personal data when you use Dainin AI, including Google sign-in and optional Google Calendar, Google Tasks and Microsoft Outlook Calendar integrations. Updated 25 September 2026.

G

Google Sign-In and Calendar Data

Google sign-in. When you choose Google sign-in, Dainin AI uses your Google account identifier, email address and basic profile information, such as your name and profile image, to authenticate you and maintain your account. Google sign-in does not give Dainin access to your Gmail messages, drafts, labels or mailbox.

Optional calendar connection. Connecting Google Calendar is separate from signing in. With your permission, we access event details, including titles, descriptions, start and end times, attendee details, meeting links and availability, to display your schedule, prevent conflicting bookings, create meeting invitations and update or cancel booking events. We do not use this integration to delete calendars or change calendar sharing permissions.

Google Tasks. When you authorize the Tasks integration, Dainin AI processes task information such as titles, notes and due dates to carry out task-management actions you request, including creating tasks in Google Tasks. This permission is separate from basic Google sign-in. Task information is subject to the storage, sharing, retention and Limited Use protections described below.

Storage and sharing. We store connection credentials and booking records needed to operate your integration. Calendar information is processed by our application and hosting providers to deliver these features. Meeting details are shared with Google and the attendees involved in invitations you create or bookings you enable. Our subprocessor list identifies service providers used by Dainin.

Optional AI scheduling. When you choose Generate suggestion in My Calendar, your scheduling request, timezone and the titles and times of up to 150 visible events are sent to Google Gemini through Google Cloud Vertex AI to answer your request or draft a meeting. Suggestions remain drafts until you review and save them.

Optional meeting preparation. When you choose Generate and save brief in the calendar meeting-preparation dialog, the meeting title, description, attendee names and email addresses, linked playbook and recent meeting context are sent to Google Gemini through Google Cloud Vertex AI. The generated brief is stored in your meeting plan and displayed in Live Session.

Optional meeting bots. When you choose Send Bot, we share the meeting link, calendar event identifier, scheduled join time and account/meeting identifiers with Recall.ai so its bot can join and transcribe the meeting. You are responsible for informing participants and obtaining any required recording consent. Meeting recordings and transcripts are separate from the scheduling assistant.

AI data use and retention. Google user data, including data derived from it, is not used to train or improve general-purpose AI or machine-learning models, for advertising, or for sale to data brokers. The scheduling and preparation AI routes do not persist prompt or response bodies as AI logs; generated meeting briefs and events you save are retained for their user-facing purposes. Provider processing may include security or abuse-monitoring retention and performance caching under the applicable service terms; we do not promise zero provider retention. Other AI features and their providers are described in our subprocessor information.

Your controls and retention. You can revoke Dainin access in your Google Account connections. Revoking access prevents further authorized access; it does not itself delete existing booking records or events already created in Google Calendar. To request deletion of stored Google-related data or your account, contact security@dainin.ai. We retain data only as needed to provide the service and meet applicable legal or security requirements, as described in our data retention policy.

Limited Use. Dainin AI’s use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Transfers are limited to providing or improving user-facing features, applicable legal obligations, security needs, or a business transfer with the required consent. Human access is limited to your affirmative agreement for specific data, necessary security investigations, legal obligations, or aggregated and anonymized internal operations permitted by that policy.

M

Microsoft Outlook Calendar Data

Optional connection. When you connect Outlook Calendar, you authorize Dainin AI to access your calendar through Microsoft Graph. We process event identifiers, titles, start and end times, all-day status, availability, cancellation status and meeting links to display your schedule and exclude busy times from booking availability.

Permissions and current functionality. The connection currently requests calendar read/write permission and offline access. Offline access allows us to refresh the connection without asking you to sign in each time. The current Outlook integration reads calendar events for scheduling and conflict checks; it does not currently create, reschedule or cancel Outlook booking events. Connecting Outlook does not authorize access to your email messages or Microsoft To Do tasks.

Storage and service providers. We store encrypted access and refresh tokens, connection expiry information and the association with your Dainin account. Calendar data is processed by Dainin and the infrastructure providers that operate the service. See our subprocessor list. We do not sell Microsoft calendar data or use it for advertising or training general-purpose AI models.

Revocation and deletion. You can revoke the connection through your Microsoft account application permissions; work or school accounts may require help from their Microsoft administrator. Revocation prevents further authorized access once existing access tokens expire or are invalidated. It does not delete existing Dainin booking records. To request deletion of stored connection data or your account, contact security@dainin.ai. Our data retention policy explains retention for service, security and legal purposes.

1

Company Information

This privacy policy applies to services provided by:

Dainin BC Ltd

Company Number: SC756602

Scotland, United Kingdom

VAT: 465 2253 93

Email: security@dainin.ai

2

Information We Collect

We collect the following categories of information in connection with providing our services:

  • Name and contact details
  • Email address
  • Account and profile information
  • Communication data (inquiries, support requests)
  • Usage data (how you interact with our platform)
3

How We Use Your Data

We use the information we collect for the following purposes:

  • Provide and operate the platform and related services
  • Respond to inquiries and support requests
  • Maintain platform security and prevent misuse
  • Improve platform functionality and user experience
  • Comply with legal and regulatory obligations
4

Legal Basis for Processing (GDPR)

Under the General Data Protection Regulation (GDPR), we process personal data on the following legal bases:

Contractual Necessity

Processing required to fulfil our contractual obligations to you.

Legitimate Interests

Processing necessary for our legitimate business interests, such as improving our services.

Legal Obligations

Processing required to comply with applicable laws and regulations.

Consent

Where you have given explicit consent for specific processing activities.

5

Data Sharing

We may share data with approved subprocessors who assist in delivering our services. All subprocessors are contractually bound to maintain equivalent levels of data protection.

For a complete list of our subprocessors, please visit our Subprocessors page.

6

Data Security

We implement appropriate technical and organisational measures to protect your personal data, including:

  • Secure infrastructure hosted on certified cloud providers
  • Role-based access controls and principle of least privilege
  • Encryption of data in transit using TLS
  • Continuous monitoring and logging of system activity
7

Data Retention

We retain personal data only for as long as necessary to fulfil the purposes for which it was collected, or as required by applicable law.

For detailed information about our data retention practices, please visit our Data Retention Policy.

8

Your Rights

Under applicable data protection legislation, you have the following rights regarding your personal data:

Right of Access

Request a copy of the personal data we hold about you.

Right to Rectification

Request correction of inaccurate or incomplete data.

Right to Erasure

Request deletion of your personal data in certain circumstances.

Right to Restriction

Request that we restrict the processing of your data.

To exercise any of these rights, please contact us at security@dainin.ai.

9

International Data Transfers

Where we transfer personal data outside the United Kingdom or European Economic Area, we ensure that appropriate safeguards are in place in accordance with applicable data protection legislation, including standard contractual clauses or equivalent mechanisms.

10

Browser Extension

We publish a browser extension that connects your professional network account to your Dainin workspace. This section describes exactly what it accesses. It applies only to the extension; the rest of this policy covers the Dainin platform.

What it accesses

  • Two session cookies (li_at and li_a) belonging to your own professional network session, in the browser where you install it
  • Your browser's user agent string, which the connection requires in order to keep that session valid

It accesses nothing else. It does not read the content of any page, does not track your browsing, does not access other websites' cookies, and does not collect your name, email address or any other personal identifier.

What it does with them

When you click Connect — and only then — the extension passes those values to a Dainin tab you already have open and are signed in to. That page submits them to our servers under your own authenticated session. The extension itself transmits nothing: it contains no code that contacts any server, and has no account, credentials or copy of your session.

What it stores

Two things, locally in your browser: whether session sharing is switched on, and the origin and time of the most recent share so the extension can show it back to you. Neither includes your cookie values, and both are removed when you uninstall it.

Onward processing

Once submitted through the platform, your session is transmitted to our connectivity provider, which maintains the connection to your professional network account on your behalf. See our subprocessors page for details. We do not sell this data, do not use it for any purpose unrelated to operating the connection you asked for, and do not use it to determine creditworthiness or for lending purposes.

Your control

The toggle in the extension stops all session sharing immediately, and it shows you when a session was last shared and with which site. Signing out of that session on your professional network invalidates the cookie, and you can disconnect the account from within Dainin at any time. Uninstalling the extension deletes its local storage.

11

Changes to This Policy

We may update this privacy policy from time to time to reflect changes in our practices or applicable legislation. We will notify users of any material changes by posting the updated policy on our website. Continued use of our services after changes are posted constitutes acceptance of the revised policy.