Privacy Policy
Last updated: July 16, 2026
The short version: Birdie reads your calendar (Google Calendar or Outlook / Microsoft 365, whichever you connect) on your own device to know when a meeting is starting. Your calendar events are never sent to or stored on our servers, never shared, and never sold. Birdie only ever reads your calendar, it can't change anything.
Who we are
Birdie is a free desktop app that flies a little bird across your screen when a meeting starts. It is built and maintained by an independent solo developer, and Birdie has no company, no investors, and no one else with access to your data. Get in touch about anything at all: privacy questions, a data request, a bird you'd like to see join the flock, or just to say whether you love it or hate it. Write to app.birdieflies@gmail.com. It goes to that one person, and they read everything.
What Birdie accesses
- Your Google Calendar (read-only). If you connect a Google account, Birdie requests the
calendar.readonlypermission. It reads your upcoming events so it knows when to fly the bird and which meeting it's for. It cannot create, edit, or delete anything. - Your Outlook / Microsoft 365 calendar (read-only). If you connect a Microsoft account instead, Birdie requests
Calendars.Readthrough Microsoft Graph, for the same reason. It also cannot create, edit, or delete anything. - Account identity. For Microsoft, the
User.Readpermission supplies your basic profile to sign you in. Google sign-in requests no profile permission at all: Birdie identifies each connected Google account by its main calendar's id (your email address), read with the samecalendar.readonlypermission, and uses it only to label the account in Settings. - Which app is in front, at the moment a meeting starts. So a bird doesn't fly across the call you are already in, Birdie checks the name of the frontmost app (and its window title) right at flyby time, and skips the flyby if it looks like you are already in that meeting. This happens entirely on your computer, the answer is used once and thrown away, and none of it is stored or sent anywhere. On macOS this is why the system may ask Birdie for Accessibility or Automation permission; decline it and Birdie simply always flies.
You can connect several accounts at once: any number of Google accounts plus an Outlook / Microsoft 365 account. Each account gets its own read-only sign-in token, stored encrypted on your device like the rest, and each can be disconnected individually in Settings (its token is discarded on the spot).
How Birdie uses it
- Your calendar events are read locally, on your device, to schedule the flyby and show the meeting name, time, and join link. They are not transmitted to our servers and not stored anywhere outside your own computer.
- Your sign-in token (Google or Microsoft) is stored on your device and encrypted at rest using your operating system's secure storage (the macOS Keychain, or the Windows Data Protection API on Windows), so Birdie can keep reading your calendar in the background without asking you to sign in again. It stays on your computer and is never sent to us.
How we protect your data
- Encrypted in transit. All communication with Google and Microsoft happens over encrypted HTTPS/TLS. Your calendar data is never sent in the clear.
- Read on your device, never on a server. Your calendar events are read on your own computer and held only in memory while Birdie schedules the flyby. They are never written to a Birdie server or database; there is no Birdie server that receives them.
- Sign-in token encrypted at rest. The token that lets Birdie keep reading your calendar in the background is encrypted on your device using your operating system's secure storage (the macOS Keychain, or the Windows Data Protection API on Windows), so it is never stored as plain text.
- Read-only, least privilege. Birdie requests only read scopes:
calendar.readonlyon Google,Calendars.Readon Microsoft Graph. It can see your meetings but can never create, edit, delete, or share anything, and no person at Birdie ever sees your calendar. - Never sold, shared, or used to train AI. Your Google and Microsoft data is never sold, rented, transferred to others, used for advertising, or used to develop, improve, or train AI or machine-learning models.
- You stay in control. You can revoke Birdie's access at any time. Google at myaccount.google.com/connections, Microsoft at account.microsoft.com/privacy/app-access. You can remove all local data by quitting Birdie and deleting its data folder.
Information you choose to give us
These are optional and only happen if you act on our website:
- Sign-up / notify me: your first and last name and your email address, plus which button and page you signed up from, if you submit the form. We also record how you arrived: the campaign tags in the link you followed (the
utm_values) and the address of the site that referred you, when there is one. That is marketing attribution, so we know which posts bring people to Birdie. It is never bought, sold, or combined with anything from the app. - Ratings & feedback: your star/feather rating and any message, if you submit feedback.
- Anonymous usage stats (on by default, easy to turn off): unless you switch off "Share anonymous usage stats" in the app's settings, Birdie sends a small daily summary: how many flybys and meetings it counted, how many days you've used it, which avatar style you use, your platform and processor type, the app version, and a random anonymous ID. It never includes meeting titles, guests, times, or any calendar content, and you can turn it off any time in Settings.
This information is stored in our database provider (Supabase) so we can email you about the app and understand how it's used. It is never sold. No calendar content is ever included.
Website analytics
This website uses Vercel Web Analytics to count visits and see which buttons get used (for example, how many people who visit go on to download Birdie). It is cookieless, it does not follow you across other websites, and it does not identify you: it records things like the page visited, the referring site, and a coarse country and device type, never your name, email, or IP address in a form we can trace back to you. Nothing about your calendar is involved. If you'd rather not be counted at all, any content blocker or your browser's “Do Not Track” setting will stop it.
Google API Services Limited Use
Birdie's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically, Birdie uses Google Calendar data only to provide and improve the meeting-reminder feature, does not transfer or sell it, does not use it for advertising, and no humans read it.
Who we share data with
We don't sell or rent your data. We rely on a few service providers strictly to run Birdie:
- Google: sign-in and the Calendar API (if you connect Google).
- Microsoft: sign-in and the Microsoft Graph calendar API (if you connect Outlook / Microsoft 365).
- Supabase: stores website sign-ups, feedback, and anonymous usage stats (never calendar content).
- Vercel: hosts this website and provides its privacy-friendly visitor analytics (see below).
Deleting your data
- Disconnect Birdie from your calendar account any time. Microsoft at account.microsoft.com/privacy/app-access, Google at myaccount.google.com/connections. This revokes its calendar access immediately.
- Remove the local data by quitting Birdie and deleting its data folder: on macOS it's under your user Library / Application Support, and on Windows under %APPDATA%.
- Delete your sign-up or feedback by emailing app.birdieflies@gmail.com and we'll remove it.
Children
Birdie is not directed at children under 13 and we do not knowingly collect their data.
Changes
If this policy changes, we'll update the date at the top. Material changes will be noted on this page.
Contact
Email app.birdieflies@gmail.com with any privacy questions.