Privacy Policy

Last Updated: August 22, 2026

1. Introduction

At Glance, we take your privacy seriously. This Privacy Policy explains how we collect, use, store, and protect your information when you use our mobile app, web console, widgets, connected integrations, AI assistant, and connected hosts such as ChatGPT or Claude. We are committed to transparency and giving you control over your data.

2. Information We Collect

2.1 Account Information

  • Email address: Used for account creation, authentication, and important service communications
  • Name: Optional, collected during onboarding for personalization and public widget creator display
  • Password: Stored securely using industry-standard hashing (we never see your plain-text password)

2.2 Feed and Widget Data

  • Webhook payloads: The data you send to your feeds via HTTP requests
  • In-app uploads: Images, text, and other content you submit directly through the Glance app (e.g. via the "Upload to Widget" flow), including images selected from your photo library or captured via your camera
  • Feed metadata: Feed names, schema types, creation dates, and preferences
  • Event logs: History of feed updates, including timestamps and status (accepted/rejected/throttled)
  • Widget templates and layouts: Dynamic widget template trees, binding names, and widget configuration you create (manually or via the AI assistant)
  • Automation configuration: Schedules, integration sources, and field mappings you set up to refresh widget data automatically

2.3 Device Information

  • Device type: iOS, Android, or Web
  • OS version: To ensure compatibility
  • App version: To provide appropriate features
  • Push notification tokens: Required to send notifications to your devices
  • Last seen timestamp: To show device activity status
  • Camera and photo library access: When you use the "Upload to Widget" feature, the app requests permission to access your camera and photo library to select or capture images for your feeds. We do not access your camera or photos at any other time. Images you select are sent to our servers only to be processed and displayed on your widgets.
  • On-device integration permissions: When you connect on-device data sources (such as Weather, Apple Calendar, Apple Reminders, or Motion & Fitness), the app requests the iOS permissions required for those features (e.g. location for weather, calendar access, reminders access, motion activity). Data from these sources is read on your device to populate your widgets. We do not request these permissions unless you choose to use the corresponding integration.

2.4 Connected Accounts and Third-Party Data

When you choose to connect a third-party account, you authorize Glance via OAuth to access specific data from that provider. We only access data needed to populate widgets and automations you configure. Connecting an account is always optional and initiated by you.

OAuth credentials we store: Encrypted access tokens (and refresh tokens when provided by the platform) plus granted scope lists and connection metadata. We do not store your third-party account passwords.

Google (single connection for Calendar, Tasks, and Sheets; separate connection for YouTube):

  • Profile: Basic account info (name, email) from sign-in scopes
  • Google Calendar: Upcoming event titles, times, and locations from calendars you select
  • Google Tasks: Task counts, titles, and due dates
  • Google Sheets: Values from spreadsheet cells you explicitly map to widget bindings
  • YouTube: Channel name, subscriber count, view counts, and metadata about your latest uploaded video

Meta (Instagram, Facebook Pages, and Meta Ads — requires accounts and assets you control):

  • Instagram: Username, follower/following counts, profile info, reach and impression metrics, and metadata about your latest post (caption, likes, comments, media URL)
  • Facebook Pages: Page name, fan/follower counts, reach, impressions, engagement metrics, and metadata about your latest page post
  • Meta Ads: Ad account name, spend, impressions, clicks, CTR, CPM, CPC, ROAS, and active campaign counts for ad accounts you select
  • Asset lists: Names and IDs of Pages, Instagram accounts, and ad accounts you have access to (so you can choose which to use in a widget)

GitHub: Profile info (username, display name, bio, followers, public repo count), repository activity, commit and contribution data, and issue/PR summaries from repositories you have access to — limited to fields needed for widgets you configure.

On-device sources (WeatherKit, Apple Calendar, Apple Reminders, Motion & Fitness): Weather conditions, calendar events, reminders, and activity metrics read on your device. For these integrations, data is processed locally on your iPhone to render widgets and is not sent to our servers on a scheduled basis unless you separately use a cloud-based integration for the same data type.

Coming soon: Additional integrations (such as Gmail, Strava, and Spotify) may be added in future releases. We will update this policy before enabling new data sources that require additional permissions or scopes.

2.5 AI Assistant (In-App Chat)

  • Chat messages: Text you send to the Glance AI assistant to design widgets, connect integrations, and set up automations
  • Conversation context: Your chat history for the current session is sent with each message so the assistant can respond in context (stored on your device; not persisted in our database as a long-term chat log)
  • Working session state: Temporary server-side state (such as template and widget IDs created during a session) to help the assistant continue multi-step tasks — automatically deleted after approximately two hours of inactivity
  • Usage counts: Daily message counts to enforce plan quotas for the AI assistant

Chat messages are processed by our AI provider (Anthropic) solely to generate responses that help you build and configure widgets. We do not use chat content for advertising or sell it to third parties.

2.6 Usage Data

  • API usage: Number of webhook requests and automation runs, to enforce rate limits and plan quotas
  • Error logs: Technical logs to diagnose and fix issues (no personal data or webhook content in routine error logs)

2.7 Payment Information

We use Apple In-App Purchase and Google Play Billing for subscriptions. We do not store or process credit card information directly. Payment data is handled entirely by Apple and Google according to their privacy policies.

2.8 Public Widget Data

If you choose to use the Public Widgets feature, additional data is collected and, where applicable, made publicly visible:

  • Published widget metadata: Widget name, description, category, and a system-generated public URL slug (e.g. glance.cool/x7k2m9pq). This information is publicly visible to any Glance user and to unauthenticated visitors on the web.
  • Creator display name: When you publish a widget, your display name is shown alongside your widget in the Discover page, on public web landing pages (glance.cool/{slug}), and in the widget lists of all subscribers.
  • Published feed content: The current state of your widget's feeds (images, text, data values) is visible to your subscribers and to any unauthenticated visitor on the public web page for your widget, as long as the widget is marked discoverable.
  • Subscription relationships: We record which public widgets you have subscribed to. This information is used solely to include subscribed widgets in your device sync and is not exposed to other users or to widget creators.
  • Widget URL click events: When a subscriber taps a link on a public widget that has a URL configured, we record that a click occurred (timestamp, widget, and user ID). This data is used to provide creators with aggregate click counts. We do not share individual subscriber identities with creators.

2.9 Connected Hosts (ChatGPT, Claude, and similar)

If you connect Glance inside ChatGPT, Claude, or another compatible host, you authorize that host to call Glance on your behalf using OAuth. This is separate from in-app Glance Chat (Section 2.5).

  • OAuth connection: We receive a Glance access token for your account so the host can create widgets, save layouts, and update feeds you own. We do not receive your ChatGPT or Claude password.
  • Tool arguments and widget content: The host sends us the text, numbers, layout trees, and other values you ask it to put on a widget. We store that content as feed and template data, the same way we store webhook or in-app uploads.
  • Data we return to the host: Plan and quota flags, your widget and layout lists, template trees, feed status, and — once, when a widget is created — a feed write key for Shortcuts or similar HTTP clients. We do not echo that write key later.
  • Host processing: Prompts you type in ChatGPT or Claude are processed by that host under their privacy policy. Glance only receives what the host sends to our tools.

3. How We Use Your Information

To provide the Service:

  • Store and update feed state based on incoming webhooks, in-app uploads, or integration automations
  • Connect to third-party platforms you authorize and fetch only the data fields mapped to your widgets
  • Run scheduled automations to refresh widget content at intervals you choose
  • Display feed and integration data on your iOS widgets and in the web console
  • Power the AI assistant to help you design templates, connect data sources, and configure widgets
  • When you connect Glance in ChatGPT, Claude, or a similar host, accept tool calls from that host and return widget, layout, and plan data needed to complete your request
  • Send push notifications when feed data changes
  • Maintain event history for debugging and monitoring
  • Display your published widget content to subscribers on their home screens and in the Discover page
  • Serve public widget landing pages (glance.cool/{slug}) to unauthenticated visitors, including generating rich social preview metadata
  • Provide creators with aggregate analytics (subscriber count, total URL clicks) for their published widgets

To maintain and improve the Service:

  • Monitor system performance and uptime
  • Diagnose and fix technical issues
  • Enforce rate limits and plan quotas
  • Prevent abuse and fraudulent activity

To communicate with you:

  • Send critical service notifications (downtime, security issues)
  • Respond to support inquiries
  • Notify you of significant updates to Terms or Privacy Policy

4. What We DO NOT Do With Your Data

  • We do not sell your data to advertisers, data brokers, or third parties
  • We do not use your private data for advertising or cross-app profiling
  • We do not analyze your private feed or integration content for marketing or any purpose other than delivering it to your widgets
  • We do not share your data with third parties except as required to provide the Service (see Section 5)
  • We do not use tracking pixels or advertising networks
  • We do not read your private feed payloads unless you explicitly grant us access for support purposes
  • We do not expose individual subscriber identities to creators. Widget click analytics show creators aggregate counts only
  • We do not use Google user data for serving ads, and we do not transfer Google user data to third parties except as necessary to provide or improve user-facing features you request (see Section 14)

Note on public widget content: Content you choose to publish via the Public Widgets feature is intentionally made visible to any Glance user and to unauthenticated visitors on the public web. Private feed and integration data — data not part of a published public widget — remains private and is never shared with other Glance users.

5. Data Sharing and Third Parties

We share data only with service providers and platforms necessary to operate Glance. They are bound by contractual or platform obligations to protect your data:

  • Supabase: Database and authentication (account info, feeds, templates, integration connections, device info)
  • Google APIs: When you connect Google or YouTube, we call Google's APIs on your behalf using your authorized tokens to fetch data for your widgets
  • Meta Graph API: When you connect Meta, we call Meta's APIs on your behalf using your authorized tokens to fetch Instagram, Page, and Ads metrics for your widgets
  • GitHub API: When you connect GitHub, we call GitHub's API on your behalf to fetch repository and profile data for your widgets
  • Anthropic: AI assistant message processing (chat text you send is transmitted to generate responses; not used for model training per our agreement)
  • Connected hosts (ChatGPT, Claude, and similar): When you connect Glance in that product, we return widget, layout, and plan data to that host so it can complete your request. Their privacy policy covers how they store prompts and tool results.
  • Firebase Cloud Messaging (FCM): Push notification delivery for Android (when supported)
  • Apple Push Notification Service (APNs): Push notification delivery for iOS
  • RevenueCat: Subscription management and billing (receives anonymized user IDs)
  • Hosting provider: Infrastructure hosting (currently Fly.io)

We do not sell or rent personal information received from Google, Meta, or other connected platforms to data brokers, advertising networks, or other third parties.

Legal Requirements: We may disclose information if required by law, court order, or to protect the rights, property, or safety of Glance, our users, or others.

6. Data Retention

Active Accounts:

  • Account information is retained as long as your account is active
  • OAuth tokens and integration connection records are retained while a connection remains active
  • Integration data cached in feed state is retained while the feed and automation exist, and is refreshed on your configured schedule
  • Feed state is retained indefinitely while the feed exists
  • Event logs are retained according to your plan limits (7/14/45 days for Free/Pro/Power)
  • Device information is retained while the device is registered
  • AI assistant session working memory is retained for approximately two hours of inactivity

Disconnected Integrations:

  • When you disconnect an integration in Settings, we delete the associated OAuth tokens promptly
  • Previously fetched data may remain in feed state until you delete the widget, feed, or account

Deleted Accounts:

  • When you delete your account, all associated data (feeds, events, devices, templates, widgets, automations, integration connections, public widgets, subscriptions, and click events) is permanently deleted within 30 days
  • Any public widgets you had published are unpublished immediately upon account deletion; subscribers will no longer see your content
  • Your widget subscriptions and associated subscription records are deleted along with your account
  • Backup copies are purged after 90 days
  • We may retain minimal transaction records for legal and accounting purposes (e.g., subscription history)

7. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption in transit: All data transmitted to/from our servers uses TLS/HTTPS
  • Encryption at rest: Database and backups are encrypted
  • OAuth token encryption: Third-party access tokens are encrypted using AES-256-GCM before storage
  • Password security: Passwords are hashed using bcrypt with per-user salts
  • Write key security: Feed write keys are hashed and never displayed after creation
  • Access controls: Strict role-based access to production systems
  • Regular security reviews: We review and update security practices regularly

No method of transmission or storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.

8. Your Privacy Rights and Data Deletion

You have the following rights regarding your data:

  • Access: View your account information, feeds, and integrations in the Glance mobile app or web console
  • Export: Request a copy of your data (contact support@glance.cool)
  • Correction: Update your name and email in settings
  • Disconnect integrations: Remove a connected account at any time in Settings → Integrations → Disconnect. This deletes stored OAuth tokens for that provider.
  • Disconnect ChatGPT or Claude: Remove Glance in that host's connected-app settings. You may also revoke the OAuth client in Glance Settings when Connected apps is available.
  • Revoke platform access: You may also revoke Glance's access in your Google Account permissions or Meta/Facebook app settings
  • Deletion: Delete individual feeds or your entire account in the mobile app (Settings → Danger Zone) or web console (Dashboard → Settings → Danger Zone)
  • Objection: Opt out of non-essential communications

For step-by-step instructions on deleting your data or removing connected accounts, see our Data Deletion Instructions.

To exercise these rights or if you have questions, contact us at privacy@glance.cool

9. Children's Privacy

Glance is not intended for users under 13 years of age. We do not knowingly collect personal information from children. If we become aware that a child has provided us with personal information, we will delete it immediately.

10. International Users

Glance is operated from the United States. If you are accessing the Service from outside the US, please be aware that your information may be transferred to, stored, and processed in the US where our servers and service providers are located.

11. Cookies and Tracking

We use minimal cookies and tracking:

  • Authentication cookies: To keep you logged in (required for functionality)
  • Session cookies: To maintain your session state

We do not use third-party analytics (like Google Analytics), advertising cookies, or tracking pixels. We respect your privacy and don't follow you around the web.

12. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated via email or through a prominent notice in the Service. Continued use after changes constitutes acceptance of the updated policy. The "Last Updated" date at the top indicates when the policy was last modified.

13. Google API Services User Data Policy

Glance's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Specifically, we limit our use of Google user data to:

  • Providing and improving user-facing features you request (displaying data on your widgets)
  • Running automations you configure to refresh that widget data
  • Securing and operating the Service (e.g., token storage, error diagnosis)

We do not use Google user data for:

  • Serving advertisements
  • Selling to data brokers or other third parties
  • Determining creditworthiness or lending purposes
  • Surveillance or unrelated profiling

Human review of Google user data occurs only when necessary to provide support you request, to comply with applicable law, or to maintain the security of the Service.

14. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your data:

Email: privacy@glance.cool

Support: support@glance.cool

Our Commitment to Privacy

We built Glance to give you control over what appears on your home screen — from webhooks, connected accounts, and on-device data. We don't sell your data, we don't use it for ads, and we only access third-party accounts when you explicitly connect them. Your data is yours.