← Anna Personal AI

palatauma.space

Privacy Policy — Anna Personal AI

Effective date: August 18, 2026
Contact: 9annabast6@gmail.com

1. Introduction

Anna Personal AI is a private personal AI assistant available through palatauma.space. It is designed to help its user with personal requests and, when the user chooses, to work with external accounts through connected services.

This Privacy Policy explains how information is processed by the website, the personal assistant, and optional integrations with third-party services (“Connected Services”). Anna Personal AI is not presented as a company or separate legal entity.

2. Information We Process

Information explicitly provided by the user

This may include messages, instructions, preferences, files, images, voice transcripts, project information, and facts the user asks the assistant to remember or use.

Authentication and authorization information

When a Connected Service is enabled, Anna Personal AI may process authorization grants, access tokens, refresh tokens, account identifiers, granted scopes, token expiration information, and connection status. Passwords for Connected Services are not requested or stored.

Information obtained from Connected Services

Depending on the service and permissions selected by the user, this may include account content, saved items, boards, Pins, metadata, or other information made available by the service’s official API.

Technical and security information

Limited operational data may be processed to deliver and protect the service, such as request timestamps, service and error logs, integration status, API response metadata, and security events. Logs are not intended to contain passwords, access tokens, client secrets, or unnecessary user content.

3. Connected Services

A Connected Service is enabled only when the user initiates the connection. Authorization uses the third party’s official OAuth or API process, and only permissions reasonably necessary for the requested functionality are requested.

Connecting an external service is optional. The user may continue using available Anna Personal AI functions without connecting an external account, although features that depend on that account will not be available.

4. Pinterest Integration

The planned Pinterest integration allows the user to connect their own Pinterest account through the official Pinterest OAuth and API process. Access is limited to the permissions granted by the user and supported by Pinterest.

Within those permissions, the integration may read the user’s own boards and Pins. Secret or private boards and Pins may be accessed only when that access is made available by the Pinterest API and permitted by the applicable application scopes and the user’s authorization.

Pinterest information may be used to carry out the user’s requests, review the user’s saved collection, analyze visual preferences, identify recurring themes or styles, and prepare personalized observations or recommendations.

The current planned integration does not publish, edit, or delete Pinterest content; manage advertising; or collect Pinterest information about other users in bulk. Anna Personal AI does not request or receive the user’s Pinterest password and does not use Pinterest session cookies as a substitute for OAuth.

Anna Personal AI is not described as an official Pinterest partner, and this policy does not state or imply that Pinterest has approved the application.

5. AI Processing

Information or content needed to perform a request may be transmitted to AI or model providers and other technical providers used to operate the requested feature. Only information reasonably necessary for the relevant function should be provided to those services.

Third-party providers process information under their own terms, policies, and technical arrangements. Anna Personal AI does not claim that all information remains solely on the server hosting palatauma.space.

6. Purposes of Processing

Information may be processed to:

  • provide the functions of the personal AI assistant;
  • understand and perform user requests;
  • produce personal analysis, observations, and recommendations;
  • connect, maintain, and troubleshoot Connected Services;
  • protect accounts, credentials, integrations, and infrastructure;
  • diagnose errors and support technical operation of the service.

7. Data Storage

OAuth credentials and tokens

Connection credentials may be stored server-side so the authorized integration can operate. Client secrets, access tokens, and refresh tokens are treated as secrets and are not intended to appear in public website files, public source code, or application logs.

Personal assistant memory

Information the user asks the assistant to remember may be stored in the assistant’s memory system and used in later conversations or projects.

Connected Services data

Information retrieved from a Connected Service may be processed in memory, temporarily cached, or stored when reasonably needed to deliver the requested feature. Storage practices may vary by integration and function.

Temporary technical data

Temporary files, API responses, processing artifacts, and diagnostic data may exist for the time reasonably needed to complete a request, handle failures, maintain security, or operate the service.

8. Data Retention

Information is retained only for as long as reasonably necessary for its purpose, technical operation, security, or the user’s requested functionality.

OAuth credentials may be retained while a Connected Service remains connected. After disconnection or revocation, related credentials are deleted or deactivated within a reasonable period, subject to operational backups and technical limitations.

Temporary analysis data should not be retained longer than necessary unless there is a separate operational, security, or user-requested reason to retain it. Personal assistant memory may remain until it expires, is superseded, or the user asks for its deletion.

9. Data Sharing

User data is not sold. Pinterest data is not provided to advertisers.

Information may be processed by infrastructure, API, authentication, AI/model, hosting, and other technical providers when necessary to operate a function requested by the user. Information may also be disclosed when reasonably necessary to protect the service or comply with a valid legal obligation.

10. User Control

The user may:

  • choose not to connect an external service;
  • revoke OAuth authorization through the external service;
  • disconnect a Connected Service;
  • request deletion of stored connection credentials;
  • request deletion of personal data stored by Anna Personal AI.

Requests may be sent to 9annabast6@gmail.com. Additional verification may be requested before acting on a deletion or access request in order to protect the user’s account and information.

11. Security

Reasonable technical and organizational measures are used to protect information. These measures may include HTTPS, server-side credential storage, keeping secrets out of public code, limiting access to credentials, and applying appropriate file and service permissions.

No method of transmission or storage is completely secure. Anna Personal AI cannot promise absolute security.

12. Children’s Privacy

Anna Personal AI is not intended for children under 13, and it is not designed to knowingly collect personal information from children under 13.

13. Changes to This Privacy Policy

This Privacy Policy may be updated as Anna Personal AI, its Connected Services, or its technical practices change. The revised policy will be posted on this page with an updated effective date. Material changes may also be communicated through an appropriate service channel when practical.

14. Contact

Questions, privacy requests, and requests concerning Connected Services may be sent to 9annabast6@gmail.com.

15. Effective Date

This Privacy Policy is effective as of August 18, 2026.