Privacy policy

Last updated 9 October 2026

This policy explains what personal data TaskDeck collects, what it is used for, who else handles it, how long it is kept, and what you can ask us to do with it. TaskDeck, meaning the web app at app.taskdeck.me, this website and the TaskDeck apps, is run by Ampliative LLC ("we", "us"), 30 N Gould St, STE R, Sheridan, WY 82801, USA.

Who is responsible

Ampliative LLC, a company registered in Wyoming, USA, runs TaskDeck and is responsible for the personal data described here. Write to support@taskdeck.me with any question about this policy or your data.

When a team uses TaskDeck, the people who run its projects decide what goes into them and who can see it. We handle that content to run TaskDeck for them.

What we collect

  • Your account: your name, email address and password (we keep only a secure hash of it), your profile picture and your language.
  • Sign-in providers: if you sign in with GitHub, GitLab or Google, the account id, user name, email address and profile picture that service shares, and the access token it gives us. We keep the token encrypted and use it to end the connection when you unlink the service.
  • Passkeys: the public key of each passkey you add, and the name you give it.
  • Your work: projects, boards, cards, comments, checklists, files, private notes, sprints and everything else you put in TaskDeck, with a history of changes that records who made each change, when, and the IP address it came from.
  • Payments: Stripe collects your card details on its own pages. We keep your Stripe customer id, your plan, and your card's brand and last four digits.
  • Connections you set up: when you connect GitHub or GitLab repositories, Slack, Sentry, webhooks, AI assistants or routines, or import from Trello, Linear, Jira or GitHub, we keep what each one needs to work, such as the keys and tokens you give us and the commits, branches and pull requests that mention your cards.
  • Support: when you write to us through the chat on this website, your name, email address, the page you were on and your messages.
  • Cookies and similar: TaskDeck sets a sign-in cookie and a security cookie that protects your requests, and keeps a few preferences, such as your theme and the last board you opened, in your browser.
  • Analytics on this website: Google Analytics loads only after you agree to it in the banner that asks when you first visit. It then sets cookies that count your visits and tell us how you found the site. Cookie settings, at the bottom of every page, lets you change your answer at any time; saying no removes those cookies.

What we use it for

  • to run TaskDeck and show your work to the people you share it with;
  • to sign you in and keep your account and its data secure;
  • to send the emails you need or ask for: confirming your address, resetting your password, project invitations, and the card notifications you switch on;
  • to bill paid plans;
  • to answer you when you contact us;
  • to find and fix errors and stop abuse;
  • to see how people find and use this website, if you agree to analytics.

We do not sell personal data, and we do not use it for advertising.

Who else handles it

  • People in your projects see your name, email address and picture, and the work you do in the projects you share with them.
  • Amazon Web Services hosts TaskDeck, its database, files and backups, and sends its email, in the United States.
  • Stripe processes payments for paid plans.
  • Sentry receives reports of errors in TaskDeck's server, so we can fix them.
  • Slack carries messages from this website's support chat to our team, and alerts about errors in our server.
  • Google provides the mailbox behind support@taskdeck.me, Google Analytics on this website if you agree to it, and Google sign-in if you choose it.
  • GitHub, GitLab, Slack and Sentry exchange data with TaskDeck only when you or your team connect them, and only what that connection needs.
  • Anthropic or OpenAI receive card content only when you or your team set up an AI summary with your own key, or a Claude Code or Codex routine, and only what that feature needs.
  • Webhooks send project activity to the addresses you or your team choose.

We may also disclose personal data when the law requires it, or to protect TaskDeck, its users or the public.

Where it is kept

TaskDeck's servers, database, files and backups are in the United States. If you use TaskDeck from elsewhere, your data is transferred to and kept there.

How long we keep it

  • Your account and profile, until you delete your account.
  • Projects, with their cards, files and history, until the project is deleted. Deleting a project deletes its content and its files, and deleting a card deletes its files.
  • When you delete your account, the projects only you belong to are deleted with it. What you added to projects other people still use stays there, without your name or the IP addresses of your changes.
  • Daily backups of the server, for seven days.
  • Support conversations, invitations and notifications, until you delete your account or ask us to delete them.
  • Payment records, for as long as tax and accounting law requires.

Your choices and rights

  • You can see and change your account details in your profile, and connect or disconnect GitHub, GitLab or Google there.
  • Card notification emails are off until you switch them on, and each one has a link to stop them.
  • You can delete your account and the personal data that belongs to it yourself, under Delete account in your profile. You can also ask us for a copy of your personal data, to correct it, or to delete it: write to support@taskdeck.me from the address on your account, and we will answer within 30 days.
  • Where data protection law gives you further rights, such as to object to how we use your data or to complain to a data protection authority, you can use them too.

Security

TaskDeck is served only over HTTPS. Files are private and reached only through a signed-in session. Passwords are stored as hashes, the database and file storage are encrypted at rest, and only the people who run TaskDeck can reach its servers. No system is perfectly secure, so please tell us at support@taskdeck.me if you find a weakness.

Children

TaskDeck is a tool for work and is not meant for children.

Changes to this policy

When this policy changes, we publish the new version on this page with its date. If a change affects how we use data you have already given us, we tell account holders by email before it takes effect.

Contact

Write to support@taskdeck.me.