This policy covers the AIOS dashboard at aios.haruis-ai-solutions.com, an internal business tool operated by H.HARUIS AI Solutions. It explains what the application accesses, what it stores, and what it never does. It applies to the people who sign into the dashboard and connect their own accounts to it.
H.HARUIS AI Solutions. For any question about this policy, or to ask us to delete data we hold about you, contact haruis.ai15@gmail.com.
An account record holding your username, display name, role, a bcrypt hash of your password, and optionally an email address used only for password resets. We also keep a security log of sign-ins, password changes and account connections, recording the time, the IP address the request came from, and a shortened browser description. That log exists so an unexpected sign-in can be spotted.
If you choose to connect a Google account on the Connections page, you decide which of the following you grant. Nothing is requested unless you tick it, and you can disconnect at any time.
Connecting stores a Google refresh token on our own server, in a file readable only by the account that runs the application. Alongside it we keep the connected email address, the permissions granted, and when the connection was made, so the page can show you its status. Connections belong to the individual who made them. Connecting your Google account does not give anyone else on the team access to it.
We do not sell your data. We do not use it for advertising or for building advertising profiles. We do not transfer it to anyone except as needed to provide the features described above, or where the law requires it. We do not use Google user data to train generalised artificial intelligence or machine learning models. No human at H.HARUIS reads your Google data except where you have asked us to support you with a specific problem, or for security or legal reasons.
The use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Press Disconnect on the Connections page and the stored credential is deleted from our server immediately. That does not withdraw the permission at Google's end, so to revoke it completely also remove the app at myaccount.google.com/permissions. To have your whole dashboard account and its history deleted, email us at the address above.
Credentials are kept until you disconnect them or your account is closed. The security log rotates once it reaches two megabytes. Business records created through the dashboard, such as outreach history, are kept for as long as we need them to run the business.
If this policy changes, the date at the top of this page changes with it.