Privacy policy
Effective July 25, 2026
What Votempo is
Votempo is a meeting-time poll tool: an organizer proposes candidate times, invitees vote through a shared link, and the organizer finalizes a time. This policy describes what data the service handles and why. We collect the minimum needed to run the product — there is no advertising, no data resale, and no third-party analytics or tracking on our pages.
Data we store
- Account data — your username, email address, and a salted hash of your password (never the password itself). You may optionally upload a profile photo.
- Meeting and voting data — meeting titles, descriptions, candidate time slots, and votes. Voting as a guest stores the name and email you enter so the organizer can see who responded; guests never need an account.
- Workspace data — for team workspaces: the workspace name, member list, roles, and any branding (colors, logo) an admin uploads.
- Billing data — paid subscriptions are processed by Stripe. We store your subscription status and Stripe identifiers; card numbers never touch our servers.
We send transactional email only (poll invitations, meeting notices, password resets, billing notices) through our email provider, Resend. We never send marketing email or share your address.
Cookies
Votempo sets a single session cookie to keep you signed in. There are no advertising, tracking, or third-party analytics cookies.
Google Calendar data
Connecting Google Calendar is optional. When a workspace admin or an individual user connects a Google account, Votempo requests three narrow permissions and uses them only as described here:
- Free/busy availability (
calendar.freebusy) — used solely to shade busy times in the time-slot picker. Busy windows are fetched on demand, shown as anonymous blocks (no event titles or details), and are not stored. - Calendar events (
calendar.events) — used solely to create one calendar event when a meeting is finalized (including its Google Meet link and attendee invitations), move that event if the meeting is re-finalized, and cancel it if the meeting is reopened. Votempo never reads, lists, or modifies any other event on your calendar. - Calendar list (
calendar.calendarlist.readonly) — used for exactly one interaction: when a workspace admin chooses which calendar Votempo should create events on, we fetch the connected account's list of calendars once to show a dropdown of their names. The list is displayed, not stored — only the single calendar the admin selects is saved (its identifier), and Votempo never reads event contents with this permission.
We store the OAuth tokens for a connected account encrypted at rest (AES-256-GCM), the connected account's email address for display, and the identifier and Meet link of events Votempo itself created. Google user data is never sold, never shared with third parties, never used for advertising, and never used to train machine learning or AI models.
Votempo's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
You can disconnect at any time — from your account page (personal connections) or workspace settings (workspace connections). Disconnecting revokes the grant at Google and deletes the stored tokens. You can also revoke access from your Google account permissions page.
Sharing and disclosure
We do not sell or rent your data to anyone. Data is shared only with the processors named above (Stripe for payments, Resend for transactional email, Google when you connect a calendar) and only as needed to provide the service, or where the law requires disclosure.
Retention and deletion
Your data is kept while your account or workspace is active. Deleting a meeting deletes its slots and votes; disconnecting a calendar deletes its tokens. To delete your account and its data entirely, email support@votempo.com and we will remove it.
Changes and contact
If this policy changes materially, we will update the effective date above. Questions go to support@votempo.com. See also our terms of service.