Toque policy
Privacy Policy
What Toque collects, why it is used, where it goes, and the choices available to you.
Effective August 2, 2026
Toque uses personal information to provide and secure the service. It does not sell personal information or use it for cross-context behavioral advertising.
1. Information Toque receives
- Account information: email address, provider account identifier, creator identifier, roles, and workspace membership.
- Sticker and automation information: tag identifiers, names, configuration, status, action definitions, product mappings, and connected provider choices.
- Tap and delivery records: timestamps, tag and workspace attribution, action outcome, idempotency data, and security or audit events.
- Shopping information: private list items, quantities, retailer mapping selections, and the status of an authorized cart handoff.
- Connected-service information: encrypted provider tokens or webhook secrets, provider account hints, and information returned by a provider as needed for the requested action.
- Form submissions: information a creator asks a person to submit through a sticker program. Sensitive fields are encrypted when that feature indicates they are protected.
- Technical information: request metadata, browser or device information normally included in HTTP requests, diagnostic logs, rate-limit signals, and security events.
2. How information is used
Toque uses information to:
- authenticate users and enforce workspace permissions;
- resolve a sticker, record its event, and perform the action a user requested;
- maintain a private shopping list and complete an explicitly confirmed retailer handoff;
- operate connected providers and secure webhook delivery;
- detect abuse, investigate failures, maintain audit history, and protect the service;
- provide support and communicate material service or policy changes; and
- improve reliability and usability using operational information.
3. AI-assisted creation
If you ask Toque to draft an automation from natural language, the prompt and limited context needed for that request may be sent to the configured AI model provider. Generated output is treated as untrusted and validated before it can become an automation. Do not include secrets or unnecessary personal information in a drafting prompt.
4. When information is disclosed
Information may be disclosed:
- to cloud hosting, identity, database, logging, and security providers that operate Toque on its behalf;
- to an app, retailer, webhook, or other provider when you connect it or direct Toque to perform an action;
- to workspace members according to their roles and permissions;
- when required by law or reasonably necessary to protect people, rights, or service security; or
- as part of a business transaction, subject to appropriate notice and protection.
Google Cloud infrastructure and Google Identity Platform are used for hosting and authentication. Retailers and other connected providers receive only the information needed for the action you authorize and then handle it under their own policies.
5. Cookies and local storage
Toque uses authentication cookies or browser storage needed to keep you signed in, protect short-lived tap intent, preserve essential interface state, and prevent repeated commands. The public homepage does not load advertising trackers or third-party analytics. Browser or identity-provider controls may offer additional choices.
6. Retention and deletion
Toque retains account and operational information while needed to provide the service, maintain security and audit integrity, resolve disputes, and meet legal obligations. Event records are designed as an append-only audit history. Where direct deletion would undermine that history, Toque can remove the link to an individual or destroy the encryption key for protected submitted data so it is no longer readable. Backups and logs expire through operational retention processes.
Connected tokens are encrypted at rest and can be revoked or replaced. A provider may retain information it received under its own policy.
7. Your choices and rights
Depending on where you live, you may have rights to access, correct, delete, restrict, or export personal information, object to certain processing, or withdraw consent. Toque will verify a request before acting. Some information may be retained when necessary for security, legal compliance, or the rights of others.
Sticker-program forms can provide subject-specific export, correction, consent-revocation, and erasure controls. Signed-in users can review account and workspace information in Studio settings.
8. Security
Toque uses access controls, owner and workspace scoping, encryption for provider credentials and designated sensitive fields, outbound destination checks, rate limits, and audit records. No system is perfectly secure. Protect your account, review sticker actions before publishing, and report suspected compromise promptly.
9. Children
Toque is not directed to children under 13 and currently requires account holders to be at least 18. Do not use Toque to collect information from a child unless a lawful, purpose-built flow and appropriate consent are in place.
10. International processing
Toque and its providers may process information in the United States and other countries where they operate. Those places may have different data-protection laws. Appropriate safeguards will be used where required by applicable law.
11. Policy changes
Material changes will be posted here with a new effective date and, when reasonably possible, communicated through the service or account channel.
12. Contact and privacy requests
Reply through the channel that delivered your Toque invitation or account communication and state that the message is a privacy request. Include the email used for your account, but do not send a password, API key, provider token, or government identifier. A dedicated public privacy address will be published before general self-service signup opens.