Privacy policy

Small scope. Clear boundaries.

This policy explains how private Nhancloud family assistants use Google account data when sending an email requested by their owner.

Effective August 29, 2026

Who and what this covers

The service consists of privately operated OpenClaw assistants for individual family members, including Chi and Tina. It is not offered to the public. Each assistant uses an independently stored account, workspace, authentication profile, and memory database.

Google data we access

The assistants request only the Google OAuth scope https://www.googleapis.com/auth/gmail.send. This lets an assistant send email from its connected Gmail account. It does not permit reading, searching, monitoring, deleting, labeling, or modifying inbox messages or account settings.

When an owner explicitly asks to send something, the recipient, subject, message body, and requested attachments are transmitted to the Gmail API. The connected account's address and encrypted OAuth token are used to authorize that request.

How data is used

  • To send an email or attachment requested by the assistant's owner.
  • To maintain the authenticated Gmail connection.
  • To provide private conversation memory to that owner.

Google user data is not used for advertising, profiling, sale, or training a general AI model by the operator. Use of Google user data follows the Google API Services User Data Policy, including its Limited Use requirements.

Storage and sharing

OAuth credentials are encrypted at rest in private infrastructure. They are not placed in this public website. Conversation records may be stored in the connected assistant's isolated local memory so it can remain useful to its owner.

Data is shared only as needed with Google to send the requested email and with the configured AI model provider to process the owner's instruction. It is not sold or shared with data brokers, advertisers, or unrelated third parties.

Retention, deletion, and revocation

OAuth credentials are retained until the owner revokes access or the private assistant is removed. Access can be revoked at any time from the Google Account's third-party connections page. A deletion request can also be sent to the contact address below; the local OAuth credential and associated private assistant records will be removed after verifying the request.

Manage Google account connections

This website

This public information website has no user accounts, forms, uploads, advertising, analytics, or tracking cookies. It does not connect to the private assistant gateways and does not collect visitor data.

Contact

Questions, revocation assistance, or deletion requests can be sent to chiaiagent@gmail.com.