DutyRemind Privacy Policy

Last Updated: August 4, 2026 • Effective Date: August 4, 2026

1. Introduction

Niyogi Labs ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy outlines how DutyRemind ("Service") accesses, handles, processes, and protects your information when you install and use the Service. We design our software so that your data remains in your control at all times.

2. Data We Access and How We Use It

DutyRemind requires specific OAuth authorization permissions to function. Below are the categories of data the Service accesses and their purposes:

  • Google Sheets Data: The Service reads cell ranges in your active spreadsheet to map dates, employee email addresses, and roster slot names (e.g. FN/AN). This data is processed in-memory during sync execution to construct calendar events.
  • Google Calendar Data: The Service creates, modifies, and deletes calendar events on your primary or specified calendar to align with your roster. It only modifies calendar events that were created by the Service or match the configured event title.
  • Document Properties (Apps Script Storage): The Service saves configuration values (such as column indices, header row numbers, calendar IDs, and slot times) locally inside the spreadsheet's document storage property.
  • User Account Email: The Service accesses your Google account email address to verify licensing status and manage your active Pro or Enterprise subscription.
  • Billing and Subscription Identifiers: We collect and store customer and subscription identifiers (specifically Stripe Customer IDs and Stripe Subscription IDs) in our secure database to connect your premium payment status to your Google account.

3. Server-Side Storage Exceptions

DutyRemind schedules and roster data run entirely within the Google Apps Script ecosystem on Google's own cloud infrastructure.

Niyogi Labs does not operate database servers that collect or store your spreadsheet rosters, team member calendar details, or calendar schedules. All scheduling calculations are executed locally within your spreadsheet script context. However, for licensing and billing verification, we store your Google account email address, active subscription tier, and associated billing identifiers (such as Stripe Customer and Subscription IDs) in our secure database. We never collect, transmit, or store raw financial information (such as credit card numbers or bank accounts) on our servers; all transaction processing is handled directly and securely by our payment processor (Stripe).

4. Information Sharing and Disclosure

Except for the billing identifiers and email address required to manage your subscription state with our payment processor (Stripe), we do not share, sell, trade, or distribute your spreadsheet data, staff roster emails, or calendar entries. All scheduling network communications are conducted directly and securely between your Google environment and Google API endpoints.

5. Required Google OAuth Scopes

When installing DutyRemind, you will be prompted to authorize the following scopes:

  • https://www.googleapis.com/auth/spreadsheets - To read and analyze your active sheet grids to map the roster.
  • https://www.googleapis.com/auth/calendar - To create, update, and remove calendar entries for your team members on your designated calendars.
  • https://www.googleapis.com/auth/userinfo.email - To view your email address to identify your account and verify active user sessions.
  • https://www.googleapis.com/auth/script.container.ui - To render the HTML configuration sidebar within Google Spreadsheets.

6. Data Retention and Deletion

All configuration settings are saved inside the spreadsheet itself (via Apps Script PropertiesService). Deleting the spreadsheet or uninstalling the Service will permanently delete all saved configuration settings. While all roster configurations are stored locally inside the spreadsheet, your user account email address is retained on our database for license verification. If you uninstall the Service and wish to have your email permanently deleted from our database, please contact us.

7. Security of Your Data

The Service relies on Google's robust security protocols to protect your spreadsheet and calendar data. Access to DutyRemind is secured through your Google Account credentials and Google's OAuth consent screen. We recommend sharing spreadsheets containing rosters only with trusted collaborators who require access.

8. Consent Revocation

You can revoke DutyRemind's access to your Google account at any time by navigating to your Google Account Settings → Security → Third-party apps with account access and removing DutyRemind permissions.

9. Contact Us

If you have any questions about this Privacy Policy or how DutyRemind handles developer permissions, please contact us at:

niyogi.labs@gmail.com