NoDesk
  • Integrations
  • Help
  • Support
  • Client Portal
  • Get started

Privacy Policy

Last updated: May 2026

NoDesk ("we", "us", "our") operates the nodesk.io platform. This policy describes how we collect, use, and protect your information.

Information We Collect

When you use NoDesk, we may collect:

  • Account information: Name, email, and company name provided when your account is created.
  • OAuth/API tokens: Access, refresh, or API tokens from connected services (Jobber, QuickBooks Online, GoHighLevel, Google, Facebook, BoldTrail, Podio, Clover, and GitHub). These are encrypted at rest and used solely to operate your AI agent.
  • Messages and attachments: The messages you send to your agent and its replies, plus any photos, files, or voice notes you attach. These are stored on your own dedicated agent server so your agent can keep context between conversations. Voice notes are transcribed so your agent can act on them.
  • Usage data: Logs of webhook events, OAuth connections, and agent activity for troubleshooting and audit purposes.

Our mobile app asks for microphone, camera, and photo library access only when you choose to record a voice note or attach an image. Those permissions are optional, the app works without them, and nothing is captured in the background.

We do not use your data for advertising, and we do not track you across other companies' apps or websites.

How We Use Your Information

  • To authenticate and maintain connections to your third-party accounts.
  • To operate your Hermes AI agent on your behalf.
  • To troubleshoot issues and improve our service.
  • To communicate with you about your account.

Third-Party Services

We integrate with the following services. When you connect an account, we access only the data scopes you authorize:

  • Jobber, field service management data (jobs, clients, invoices).
  • QuickBooks Online, accounting data (invoices, payments, customers).
  • GoHighLevel, CRM data (contacts, conversations, opportunities, calendars).
  • Google, Gmail and Google Calendar data.
  • Facebook, lead ads data and page management.
  • BoldTrail, real estate CRM lead/contact data when authorized or token-connected.
  • Podio, CRM and project records across your authorized apps.
  • Clover, point-of-sale orders, inventory, and customer data.
  • GitHub, repository contents and deployments via the NoDesk GitHub App.

We do not sell your data to third parties.

Data Security

Connection credentials are encrypted using industry-standard encryption before storage — both OAuth tokens and any API token you supply. We use HTTPS for all data transmission. Access to production systems is restricted and audited.

Data Retention

We retain the data described above until your account is deleted. We do not currently run an automated retention schedule or purge job, so data is not removed on a timer.

Disconnecting an integration in your connection portal disables it: NoDesk stops using that connection and stops sending its credentials to your agent. Disconnecting does not revoke NoDesk's access at the provider, and does not by itself erase the stored connection record. To revoke NoDesk's access at the provider, use that provider's own controls — see our data deletion page for the per-provider steps. Account deletion removes the stored connection records along with the rest of your account data.

Your Rights

  • Disconnect any integration at any time through your connection portal.
  • Contact support@nodesk.io with questions about the personal data associated with your account.
  • Request deletion of your account and all associated data. Account deletion removes your client record, connected-integration credentials, agent records, access links, audit history, and any leads captured for you. Two narrow exceptions: our Stripe payment records are retained with your account identifier removed, so a past payment cannot be re-processed against a deleted account; and ordinary server request and application logs, plus audit entries not linked to any one account, are retained under our hosting provider's log-retention policy rather than being deleted per-account.

Data Deletion

To request data deletion, email support@nodesk.io or visit our data deletion page. Deletion is carried out by our support team as an operator procedure rather than by an automated pipeline, and we do not currently operate a self-service request tracker. We will confirm the expected timeline and completion with you by email.

Contact

For questions about this policy, contact us at support@nodesk.io.

Changes

We may update this policy from time to time. Changes will be posted on this page with the updated date.

Help Center Privacy Policy Terms of Service Data Deletion Support Client Portal

© 2026 NoDesk. All rights reserved. · support@nodesk.io