TideWork Terms Privacy Open app

TideWork — Privacy Policy

Effective: 1 August 2026 Controller: Amelia Mowers, operator of TideWork at tidework.io. Contact: tideworksupport@proton.me


The short version

We cannot read your workspaces. Everything you write is encrypted on your device before it reaches our servers, and the keys never leave your devices. What we hold is ciphertext.

We collect the minimum needed to run an account and take payment. There is no analytics, no tracking, and no advertising anywhere in the product or on the website — the marketing site loads no JavaScript, sets no cookies, and makes no third-party requests at all.

The rest of this document is the specifics.

What we cannot see

Your content — the rows, tables, boards, documents, and files in your workspaces, including their names and structure — is end-to-end encrypted with the Matrix Megolm protocol. We hold the encrypted blobs. We do not hold the keys, and we cannot decrypt them, produce them on request, or reset them for you.

This is architectural, not a policy we could quietly change: a change would be visible in the open-source client and would require your devices to hand over keys.

What we do collect

Account data

Encrypted content and its metadata

Operational data

Billing data

What we do not do

Why we process it, and on what basis

PurposeDataBasis (GDPR Art. 6)
Providing the serviceaccount, encrypted content, membershipContract
Taking paymentbilling, subscription statusContract
Sending verification and password-reset emailemail addressContract
Security, abuse prevention, debugginglogs, IP addressesLegitimate interests
Meeting legal obligations (e.g. tax records)billingLegal obligation

Who we share it with

Only the providers needed to run the service:

ProcessorRoleData
DigitalOceanHosting the homeserver and its managed databaseEncrypted content, account data, logs
CloudflareServing the site/app, and the billing workerConnection data, IP addresses
StripePayments and the billing portalBilling details, card data (directly)
ResendTransactional email (verification, password reset, alerts)Email address, message contents
GoogleOptional sign-in, only if you choose itYour Google account identifier and email

We do not sell personal data. We disclose data to authorities only where legally compelled — and note that a compelled disclosure of your workspaces would produce ciphertext we cannot decrypt.

Some of these providers operate outside your country, including in the United States. Transfers rely on the providers' standard contractual clauses and equivalent safeguards.

Federation

TideWork is built on Matrix. If you collaborate with someone on another homeserver, the protocol shares the encrypted events and the necessary metadata with that server, which is operated by someone else under their own policy. Your content stays encrypted in transit and at rest there; the metadata described above is visible to them.

This only happens if you invite, or accept an invitation from, a user on another server.

How long we keep it

Your rights

Where the GDPR, UK GDPR, or a similar law applies, you can ask us to give you a copy of your data, correct it, delete it, restrict or object to processing, or provide it in a portable form. You may also complain to your local supervisory authority.

Two of these you can exercise yourself, immediately:

For anything else, write to tideworksupport@proton.me.

The honest limit on erasure: we can delete your account and the encrypted content we hold. We cannot reach copies already synced to a collaborator's device or to another homeserver you federated with — the same property that stops us reading your data stops us reaching into someone else's client.

Children

TideWork is not directed at children under 16, and we do not knowingly collect their data. If you believe a child has created an account, contact us and we will remove it.

Security

Content is end-to-end encrypted in transit and at rest. Local browser storage — including the encryption keys and cached workspace state — is itself encrypted at rest with a key held by your device and, optionally, your passkey. Connections use TLS. Server access is restricted and key-based.

No system is perfectly secure. If you find a vulnerability, please report it to tideworksupport@proton.me rather than disclosing it publicly, and we will work with you.

Changes

We will update this policy as the service changes, and give notice of material changes before they take effect. The current version is always published at tidework.io.