← Nikolas

Privacy Policy

Last updated: June 18, 2026

What we collect

Nikolas reads messages in Slack channels you invite it to, and direct messages sent to it, in order to do its job: tracking commitments, learning your company’s writing voice, and answering questions. When invited to a channel, Nikolas automatically builds a private writing-style profile and business-context notes for your workspace from its message history. This happens in the background and is used solely to make its work sound like your company. From the onboarding form we collect your name, email, company name, and your answers. If you connect tools (Notion, Linear, Asana, Jira, Confluence), Nikolas reads only what those credentials allow.

How it’s used

Only to serve your workspace. Voice profiles, tracked commitments, and business facts are stored per-workspace and never shared across customers. We never sell your data. Your data is not used to train AI models. Message content is processed by Anthropic’s Claude API under their commercial terms (no training on API data).

How Nikolas uses Google user data

If you connect a Google account, Nikolas accesses only the data needed to answer the request you make in Slack, and only at the moment you make it. Each Google scope powers a feature you can see in Slack. Google Search Console (read-only) lists your verified sites and returns organic-search metrics (clicks, impressions, CTR, average position, top queries and pages) for SEO reports. Google Analytics GA4 (read-only) lists your properties and returns traffic and engagement metrics for analytics reports. Google Calendar (read-only) reads upcoming events and free/busy times so Nikolas can answer “what’s on my calendar”, prep you for meetings, and find open slots. Google Calendar events (read and write) creates events you ask it to schedule; if you add attendees, Google sends them the invite. Gmail (read-only) lets Nikolas search and read your messages so it can triage your inbox and gather context before drafting a reply. The Gmail read-only scope grants access to full message content: bodies (plain text and HTML), all headers and metadata, and attachments. In practice Nikolas reads message headers (sender, subject, date), snippets, and the plain-text or HTML body (truncated), and does not open attachments. Gmail compose creates a draft in your Gmail Drafts folder for you to review and send yourself. Nikolas only creates drafts; it never sends email on your behalf.

Your Google data is used solely to fulfill the request you make in Slack and to power the features above. To produce an answer, the Google data fetched for that request (for example calendar event titles and attendees, email subjects, senders and bodies, and analytics numbers) is sent to our AI provider, Anthropic, and processed by its Claude API under Anthropic’s commercial terms, which state that API inputs and outputs are not used to train its models. Anthropic is the only AI provider that processes your Google data. We do not use Google user data to create, train, or improve any generalized or non-personalized machine-learning or AI model. We do not sell or transfer your Google user data to third parties such as advertising platforms, data brokers, or information resellers, and we do not use it for advertising, retargeting, personalized or interest-based ads, or to determine credit-worthiness or for lending.

We do not store the content Nikolas reads from Google. Calendar events, free/busy times, Gmail messages, analytics rows and Search Console rows are fetched live for a single request and are never written to our database. The only Google-derived values we keep are your connected account’s email address (shown on your dashboard so you know which account is linked) and your OAuth access and refresh tokens, which are encrypted at rest with AES-256-GCM and stored server-side, never exposed to your browser. We retain these only while your Google account stays connected.

You can disconnect Google at any time from the Connections tab on your dashboard, which deletes the stored tokens and account email for that account. Uninstalling Nikolas from your Slack workspace deletes them automatically too. Because disconnecting removes our copy of the tokens but does not revoke the grant at Google, you can also remove Nikolas’s access at myaccount.google.com. You can email us anytime at saketmittal2001@gmail.com to request deletion. Google data travels only over encrypted connections, and our staff do not read your Google content except with your explicit consent, where required for security or by law. Because we do not store Google content, there is no retained Google content to aggregate or analyze.

Nikolas’s use and transfer of information received from Google APIs, including the Gmail (Google Workspace) APIs, will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

How your data is secured

All data travels over encrypted connections (TLS) and is stored encrypted at rest in our database. Access follows least-privilege: Nikolas requests only the minimum Slack permissions needed to do its job, integration credentials are stored server-side and never exposed to your browser, and every workspace’s data is isolated from every other workspace at the database level. We never see or store card details. Payments are handled entirely by our payment provider.

Deletion

Uninstall Nikolas from your Slack workspace and all of its memory for your workspace (commitments, voice profiles, business facts) is deleted automatically. You can also email us anytime to request deletion.

Payments

Billing is handled by our merchant of record; we never see or store your card details.

Contact

Questions or requests: saketmittal2001@gmail.com