1. The short version
Toweris is a private development build and personal experiment, not production software or a public service.
Toweris is designed so your portfolio and document records stay under your control instead of being copied into a provider-readable Toweris database.
Real workspaces use Google sign-in and Google Drive app data. Demo workspaces use synthetic local data and are not uploaded to your Google Drive.
Toweris does not sell your personal information.
2. Development data risk
Because Toweris is experimental, storage, deletion, assistant, import, export, and recovery behavior may change as the product evolves.
Do not add data unless you accept the risk that records could be lost, corrupted, changed incorrectly, or require cleanup outside Toweris. Keep your own backups and verify important records independently.
3. Information you add
You may add property addresses, ownership details, mortgages, insurance, utilities, contacts, renters, warranties, security notes, documents, receipts, income, expenses, imports, exports, and other home or property context.
Some of this information can be sensitive. Treat it like financial and identity data, and only add information you are comfortable storing in your connected workspace.
4. Account and connection information
Toweris uses Google OAuth to connect your workspace. We may process connection details such as your Google account identifier, OAuth state, permission status, and Drive app-data file metadata so the app can open and save the right workspace.
Do not send us secrets, passwords, full account numbers, or document contents in support messages unless we explicitly ask for the minimum information needed to troubleshoot.
5. Local data on your device
Toweris may store local browser state such as theme preference, sign-in progress, session status, lock metadata, local wizard drafts, and demo workspace data.
You can clear local drafts from settings. Browser storage can also be cleared through your browser, though that may sign you out or interrupt an active setup.
6. BYOS storage
For real account use, Toweris stores the workspace snapshot and uploaded documents in your Google Drive app data folder. That storage is tied to your Google account and the permissions you grant.
Toweris should not route BYOS portfolio or document data through a Toweris-managed provider-readable server path. Hosted endpoints process data only while completing actions you request, such as OAuth, hosted MCP tool calls, or saving requested hosted MCP changes back to your Drive app data.
7. How Toweris uses information
Toweris uses information to run the app, open and save your workspace, render pages, complete imports and exports, support assistant actions you approve, protect against misuse, troubleshoot errors, and comply with legal obligations.
Toweris may use minimal technical logs and request metadata to keep the service reliable. Those logs should not include secrets, full document contents, or full account numbers.
8. Assistants and AI tools
Toweris does not send portfolio or document data to an AI model just because you use the app.
If you connect ChatGPT, Codex, OpenClaw, or another assistant through a hosted MCP flow, that assistant may process the data you ask it to read or change. Its provider's terms and privacy policy also apply.
Agent mutations are intended to be auditable and reviewable. You should still review important changes before relying on them.
9. Third-party services
Google sign-in and Google Drive app data are required for the current BYOS workspace flow.
Toweris may also use hosting and infrastructure providers to deliver the website, OAuth endpoints, hosted MCP endpoints, security controls, and operational logs. These providers should only process information as needed to provide those services.
If you choose Help & feedback, Toweris opens a new email message to a dedicated Toweris intake address. Toweris does not receive the message until you choose to send it. Do not include passwords, full account numbers, documents, or property and financial records. This support content is separate from your Google Drive app-data workspace.
If Toweris offers you a secure Help & feedback page, Cloudflare Turnstile briefly processes the verification request and limited technical context to protect the email handoff from spam. Toweris does not receive your message or reply address through that page: after verification, your own email app creates the draft and you decide whether to send it. This does not access your Google Drive workspace or create a Toweris copy of your home records.
10. Cookies and simple service checks
Toweris does not use non-essential marketing cookies or advertising trackers. If those are introduced, this policy and the user controls will be updated first.
We sometimes keep a small service check so we can tell whether a part of Toweris worked and roughly how long it took. For example, it may say that a sign-in step or assistant request succeeded or failed. It does not include your name, email, Google Drive data, workspace or document IDs, what you type, prompts, files, raw web addresses, tokens, or financial values.
The public coming-soon website may use Cloudflare Web Analytics to understand basic site performance. That measurement is not turned on inside the signed-in app, on staging, or on preview links.
Browser storage used for app function, sign-in, preferences, and local drafts is different from advertising tracking.
11. Retention and deletion
Workspace records remain in your connected Google Drive app data until you delete or reset them, revoke access, or remove the underlying Google data.
Local drafts and preferences remain on your device until you clear them. Minimal operational records may be retained only as long as needed for security, debugging, legal compliance, or abuse prevention.
12. Your controls
You can export records, clear local drafts, reset Drive app data, sign out, revoke Google access, and choose whether to connect an assistant.
For access, correction, deletion, or privacy questions, contact [email protected]. We may need to verify that the request is really yours.
13. Children
Toweris is not intended for children. Do not use Toweris to collect personal information from a child unless you have the legal right to do so.
14. Changes
We may update this policy as Toweris changes. Material changes should be reflected on this page with a new last-updated date.