Privacy
Last updated 24 August 2026
Slate is a personal task app built and run by Patrick Hennessy. There is no company behind it, no analytics, no advertising, and nothing is sold or shared with anyone. This page says exactly what it reads, what it keeps, and which other services see any of it.
What you give it
Your email address, so you can sign in, and whatever you type into it. That is the whole of what Slate asks for directly.
What it reads from your other accounts, and when
Connecting Google, Microsoft or Slack is optional, and every connection is read-only — Slate cannot send mail, change a calendar, or post a message. Nothing is read on a schedule. A source is read only in the seconds after you press Find tasks, over the window you choose.
- Google — Calendar and Gmail, read-only, plus your email address.
- Microsoft — Outlook mail and calendar, read-only, and Teams one-to-one and group chats. Teams channels are never read.
- Slack — direct messages, group messages, and the channels you belong to.
You can disconnect any source at any time in Settings. Disconnecting deletes the stored token, and Slate loses its access immediately.
What is kept, and what is not
Your mailbox is not copied. Messages, events and chats are read into memory for the length of one run and then gone. What persists is:
- The notes and tasks you create, edit or accept.
- While a suggestion is waiting for you, a short quote from the message it came from and a link back to it — so you can see why it was suggested. The quote does not outlive your decision: accept it or dismiss it and the quote is deleted either way. Accepting keeps whatever text became your task, because that is yours now.
- Access tokens for connected accounts, encrypted with AES-256-GCM before they are written down. They are only ever decrypted on the server, and no browser can read them.
- A record of each run: which sources, how many items, how long, what it cost. No message content.
Who else sees it
- Anthropic — during a run, the text of the messages in your chosen window is sent to Anthropic's Claude API to work out what you have been asked to do. Anthropic does not use API data to train its models, and holds it for a limited period — up to 30 days — for trust-and-safety purposes before deleting it. There is no zero-retention arrangement on this account, and if that changes this page changes with it. This is the one place your message content leaves Slate, and it is the reason Find tasks is a button you press rather than something that happens by itself.
- Supabase — the database and sign-in, hosted in the United States.
- Render — the hosting, United States.
That is the complete list. There is no third service, no tracking pixel, and no mailing list.
Other people
Accounts cannot see each other. Every table is protected at the database level, so your tasks, groups, connections and suggestions are reachable only by you — not by other users, and not by a bug in a page.
Two things are shareable, and only when you choose: a group you invite someone to, and a read-only share link. A share link shows task titles for the groups you picked — never the notes inside them, never a private task, and never your email address. Deleting the link kills it immediately.
Deleting it all
Email phennessy@constructionintelligence.com and your account and everything in it is deleted — tasks, notes, tokens, run history. There is no waiting period and nothing is kept back. You can also just disconnect the sources and stop using it; nothing is read again either way.
Children
Slate is not intended for anyone under 13, and no account is knowingly created for one.
Changes
If what Slate reads or keeps changes, this page changes with it and the date at the top moves. Anything that materially widens what is read gets an email to everyone using it, not a quiet edit.