Privacy Policy
Effective 2 October 2026
Natro is a personal assistant that runs on its owner's own Windows computer. It is a personal, non-commercial project used only by its owner, and it is not offered to the public. This policy describes what Natro accesses, where that information is kept, and which outside services it is sent to. It applies to the Natro application and to this website.
1. Google user data Natro accesses
Natro connects to a Google account only after its owner signs in with a command typed at Natro's own prompt. The AI that plans and carries out requests can never start a sign-in, and never sees the sign-in credentials. Natro requests these permissions, each only for the purpose listed:
| Permission | What Natro does with it |
|---|---|
Basic profile: your email address (openid,
userinfo.email) |
Shows which Google account is signed in. |
Google Calendar events (calendar.events) |
Reads, creates and changes calendar events when you ask it to. |
Gmail, read-only (gmail.readonly) |
Searches and reads messages you ask about, to answer your question. Natro cannot send, delete, label or change email. |
Google Tasks (tasks) |
Lists, adds, completes and removes tasks when you ask it to. |
Natro asks for each permission only when the feature that needs it is turned on. Anything that changes data in your Google account (adding an event, completing a task) is shown to you as a plan and done only after you approve it.
2. Other information Natro handles
- What you type. Your instructions, in Georgian or English.
- Your own tasks and notes, kept in a database on your computer.
- Files you choose to share. Natro can read files only in folders you grant it at its prompt. It cannot write, move or delete them.
- Your voice, only if you use voice input. A recording of the instruction you speak, used once to turn it into text.
- Web search queries, written by Natro from your request when an answer needs the web.
3. How the information is used
Only to do what you ask, at the moment you ask it. Natro does not:
- sell, rent or give away any information;
- use any information for advertising, profiling or marketing;
- use Google user data to develop, improve or train any AI or machine-learning model;
- let any person read your Google data, except you, or where you have explicitly asked, or where the law requires it.
4. Where it is stored
On its owner's computer, and nowhere else. Natro has no server, no cloud database and no user accounts. It stores:
- your tasks and notes, in a local database file;
- the Google sign-in token, in a local file that is excluded from version control and that Natro's file-reading feature is permanently refused access to;
- a local log of requests and answers, kept for troubleshooting. Answers may include content Natro read for you, for example a summary of an email.
Google data that Natro reads to answer a question is not otherwise saved.
5. Services Natro sends data to
To answer a request, Natro sends the information that request needs to the services below, over encrypted connections, through their APIs. Nothing else is sent, and none of these services receive your Google sign-in token.
| Service | What it receives | Why |
|---|---|---|
| Anthropic (Claude) | Your instruction in English, the plan, and the results of the steps it runs, which can include Google data Natro read for you, such as an email's text. | The AI model that plans each request, carries it out, and translates the answer back into Georgian. |
| Cerebras | The same as Anthropic, but only while Anthropic is unavailable. | A backup AI model. |
| DeepL | Only the text you type, for translation from Georgian to English. DeepL never receives data from your Google account. | Translation. |
| Exa | Web search queries, which may include words from your request. | Web search. |
| OpenAI | A recording of a spoken instruction, only when voice input is used. | Speech-to-text. |
| Requests to your own Google account, made with your permission. | Calendar, Gmail and Tasks. |
Each of these services handles the data under its own privacy policy, linked above.
6. Google API Services User Data Policy
Natro's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
In particular, Google user data is used only to provide the features described above, it is transferred to the services in section 5 only as needed to provide those features to you, and it is never used to train AI or machine-learning models.
7. Keeping, deleting and disconnecting
- Local data is kept until its owner deletes it, and all of it can be deleted from the owner's computer at any time.
- Signing out of Google in Natro revokes Natro's access at Google and deletes the stored sign-in token.
- You can also remove Natro's access at any time at myaccount.google.com/permissions.
8. Security
Natro runs only on its owner's computer, and every connection it makes to the services above is encrypted. Its AI cannot read the Google sign-in token, cannot start a sign-in, and cannot read files outside the folders its owner grants. No method of storage or transmission is perfectly secure, and Natro cannot guarantee absolute security.
9. This website
natro.tuxa.ge uses no cookies, no analytics and no tracking, and loads nothing from other websites. It is hosted by Vercel, which, like any web host, processes visitors' IP addresses to deliver the pages and may keep them briefly in server logs.
10. Children
Natro is not directed at children and does not knowingly collect information from anyone under 16.
11. Changes
If this policy changes, the new version will be published on this page with a new effective date.
12. Contact
Questions about this policy: nikoloztuxa@gmail.com