Privacy Policy
Effective date: July 19, 2026 · Last updated: July 19, 2026
- Do I need an account?
- No. G Kanban is local-first — it works fully on your device with no account and no network connection.
- Where does my data live?
- On your device by default. It only goes to our cloud if you sign in and turn on sync — and then it's stored in the EU (Frankfurt, Germany).
- Do you sell my data or show ads?
- No. We don't sell or share your data for advertising, and there are no ads.
- Do you track me?
- No third-party analytics or tracking cookies as of the effective date.
- What do you get when I sign in with Google or GitHub?
- Your email address, name, and avatar image, plus a provider account ID — used only to create and secure your account.
- Can I delete everything?
- Yes. Delete account removes your account and all cloud data; Delete local data wipes this device. You can also export first, then clear.
- Can I take my data with me?
- Yes — one-click JSON export of everything.
1. Who we are
G Kanban (the “Service”) is operated by Benri.tech, a trade name (DBA) of The Technical Initiative, LLC, a company registered in the United States (“we”, “us”), the data controller for personal data processed through the Service. Contact: support@gkanban.com.
2. Our approach
G Kanban is local-first: your boards are stored in your browser and never leave your device unless you choose to sign in and enable cloud sync. We collect the minimum needed to provide the Service.
3. What data we process
a. Local data (on your device)
Your boards, columns, cards, labels, and preferences are stored in your browser's local storage. This stays on your device and is not transmitted to us unless you enable sync.
b. Account data (only if you sign in)
If you sign in with Google or GitHub, we receive from that provider your email address, display name, avatar URL, and a provider account identifier. Authentication is handled by our processor Supabase. We use this only to create, identify, and secure your account.
c. Cloud sync data (only if you enable it)
If you turn on sync, your board content and app settings are stored in our database so they back up and sync across your devices. Access is restricted by row-level security so that only your account can read or write your data.
d. Billing data (only if you subscribe)
Paid plans are sold by our Merchant of Record, Polar, who acts as the seller of record and processes your payment. Card details are entered on Polar's checkout and we never receive or store them. We store only a subscription record (plan, status, and the provider's customer and subscription identifiers) so we can grant you the features you paid for.
e. Technical data
Our hosting and database providers process standard technical information (e.g., IP address, browser type, timestamps) in server and security logs to operate and protect the Service.
4. What we do NOT do
We do not sell or rent your personal data, serve advertising, use advertising or cross-site tracking cookies, or run third-party behavioral analytics (as of the effective date). We do not train AI models on your content, and we do not infer or correlate your behavior across devices or accounts.
5. Cookies & local storage
We use only essential browser storage: your boards and preferences, and — if you sign in — an authentication session token to keep you signed in. We do not use tracking or advertising cookies.
6. Where your data is stored & international transfers
Cloud data is stored in the European Union (Frankfurt, Germany). The application itself is delivered via a global content-delivery network. If you sign in with Google or GitHub, those providers may process data outside the EU (e.g., the United States) under their own safeguards (such as Standard Contractual Clauses).
7. Sub-processors
| Provider | Purpose | Location |
|---|---|---|
| Supabase | Database & authentication (cloud sync, sign-in) | EU (Frankfurt) |
| Cloudflare | Application hosting & content delivery | Global CDN |
| Polar | Payments & Merchant of Record (paid plans) — only if you subscribe | US / global |
| Sign-in (OAuth) — only if you choose it | US / global | |
| GitHub | Sign-in (OAuth) — only if you choose it | US / global |
8. Legal bases (GDPR)
We process personal data on the bases of: your consent (signing in and enabling sync); performance of a contract (providing the Service to account holders); and our legitimate interests (operating, securing, and improving the Service). You may withdraw consent at any time by signing out and deleting your account.
9. Your rights
Subject to applicable law (including the EU/UK GDPR and Japan's Act on the Protection of Personal Information), you have the right to access, correct, delete, export, restrict, or object to the processing of your personal data, and to lodge a complaint with a supervisory authority. To exercise these:
- Delete: use Settings → Delete account (removes your account and all cloud data) or Delete local data (this device).
- Export: use Settings → Export for a complete JSON copy.
- Or contact us at support@gkanban.com.
10. Data retention
Cloud data is kept until you delete it or your account. When you delete your account, your data is removed from our active systems immediately and from backups within 30 days. Local data remains on your device until you clear it.
11. Children
The Service is not directed to children under 16, and we do not knowingly collect their personal data.
12. Security
We protect data with encryption in transit (HTTPS), row-level access controls, and EU hosting. No method of transmission or storage is completely secure, but we work to protect your information.
13. Planned features
The following are not yet active; we will update this policy before they launch: AI features, additional sign-in providers, privacy-respecting (cookieless) analytics, and an optional end-to-end-encrypted local vault. The commitments in Section 4 — including no AI training on your content — will continue to apply once AI features ship.
14. Changes
We may update this policy; we will revise the effective date above and surface material changes in the app.
15. Contact
support@gkanban.com · Benri.tech (The Technical Initiative, LLC), the United States