Loops, Inc. ("Loops", "we", "us", or "our") operates Sidekick, an AI-powered personal assistant accessible via SMS, iMessage, and the web at sidekick.town. This Privacy Policy explains what information we collect, how we use it, and the choices you have.
1. Information We Collect
Information you provide
- Account information: When you sign up, we collect your name, email address, and phone number.
- Messages: The text messages and chat messages you send to and receive from Sidekick are stored so the assistant can maintain context across conversations.
- Payment information: Billing is processed by Stripe. We store only a Stripe customer ID; your card details never touch our servers.
- Third-party integration credentials: When you connect services like Gmail, Google Calendar, or Linear, we store OAuth tokens on your behalf to act on your instructions.
Information collected automatically
- Usage data: We log which features you use, error events, and performance metrics to improve the product.
- Device and session data: IP address, browser type, and timestamps associated with your sessions.
- Token usage: The number of AI tokens consumed per message, used for billing and capacity planning.
2. How We Use Your Information
We use the information we collect to:
- Deliver and improve the Sidekick service, including generating AI responses on your behalf.
- Maintain conversation history so the assistant retains context about you over time.
- Execute tasks on connected third-party services (calendar events, emails, etc.) only when you direct us to.
- Process payments and enforce subscription limits.
- Send transactional notifications (billing receipts, service updates).
- Diagnose bugs, monitor uptime, and improve reliability.
- Comply with legal obligations.
We do not sell your personal information to third parties. We do not use your message content to train AI models without your explicit consent.
3. AI and Memory
Sidekick is powered by large language models provided by Anthropic (Claude). Your messages are sent to Anthropic's API for processing. Anthropic's data usage policies apply to this processing; we do not enable API data training by Anthropic.
We use Honcho to store long-term memory about you — facts, preferences, and context that help Sidekick be more useful over time. This memory is associated with your account and is visible and deletable by you at any time from the app settings.
4. Third-Party Integrations
When you connect a third-party service (e.g., Gmail, Google Calendar, Google Drive, Linear), Sidekick stores an OAuth access token to act on your behalf. These tokens are:
- Encrypted at rest.
- Used only to execute actions you explicitly request.
- Revocable at any time from the Integrations tab in your account settings.
Integration connectivity is managed through Composio. When you authorize an integration, you are also subject to that service's own privacy policy (e.g., Google's Privacy Policy).
5. Data Sharing
We share data only in these limited circumstances:
- Service providers: We use Anthropic (AI), Honcho (memory), Composio (integrations), Stripe (billing), and Neon (database hosting). Each provider processes only the data necessary to provide their service.
- Legal compliance: We may disclose information if required by law, court order, or to protect the rights and safety of users or the public.
- Business transfers: If Loops is acquired or merges with another company, your data may be transferred as part of that transaction, subject to the same privacy commitments.
6. Data Retention
We retain your account data and message history for as long as your account is active. You may request deletion of your account and associated data at any time by contacting us at privacy@loops.fi. Upon deletion, we will remove your personal data within 30 days, except where retention is required by law or for fraud prevention.
7. Security
We apply industry-standard safeguards including encryption in transit (TLS), encryption at rest, access controls, and regular security reviews. No system is perfectly secure; if you believe your account has been compromised, contact us immediately.
8. Your Rights
Depending on your location, you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Delete your account and personal data.
- Export your conversation history and memories.
- Opt out of non-essential communications.
- Revoke third-party integration access at any time.
To exercise these rights, email us at privacy@loops.fi.
9. Children's Privacy
Sidekick is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or an in-app notice at least 7 days before they take effect. Continued use of Sidekick after the effective date constitutes acceptance of the updated policy.
11. Contact Us
If you have questions about this Privacy Policy, please reach out: