Plannify documents
Privacy notice
Last updated 29 September 2026
This English translation is provided for your convenience. The Italian version is the legally binding text and prevails in case of any discrepancy.
This notice explains how we process the personal data of people who visit plannify.it and of people who use Plannify (the website, the HQ and the desktop app), in accordance with Articles 13 and 14 of Regulation (EU) 2016/679 (the “GDPR”) and the Italian Personal Data Protection Code (Legislative Decree 196/2003).
In short: we only ask for what you need to get your work done; the code of your projects stays on your computer; we don’t sell data, we don’t advertise and we don’t use profiling cookies; you can download or delete everything whenever you like from your account menu.
1.Who processes your data
The data controller is Outline Digital, Via Dalmazia 36, Trani (BT), Italy, VAT no. IT08978680729. For any question or request about privacy: info@outlinedigital.it, telephone +39 327 609 2869.
We have not appointed a data protection officer (DPO): given the nature and scale of our processing, it is not mandatory. A person at Outline Digital will answer you directly.
2.Controller or processor: two different roles
- Controller for the data of your account and of your relationship with us (who you are, how you sign in, what you pay for, how you use the service) and for the data of people who visit the website. This notice covers that data.
- Processor for the data you enter or connect in your business software and projects: customers and suppliers, invoices, bookings, messages, documents. There, you (or your company) are the controller and we process that data only to let you use the service, under the data processing agreement, which forms part of the terms. Privacy notices for your own customers are yours to provide.
3.What data we process
| Category | Examples | Where it comes from |
|---|---|---|
| Account | name, email, password (stored only as a scrypt hash, never in plain text) | from you, when you sign up |
| Orders and payments | the services you order, your answers to the order form (for a domain, also the registrant’s details), the order status, Stripe customer and subscription identifiers. Only Stripe sees your card details | from you and from Stripe |
| Projects put online | when you order go-live, the project package sent from your computer (stored encrypted) and the address of the server created for you | from you and from your computer |
| Use of the service | the business software and projects you create, plans, board, messages with the team, decisions, model usage, activity log | from you and from the agents’ work |
| Your computer | computer name, operating system, app version, installed tools (Node.js, Ollama…), project folder, last contact | from the Plannify app on your computer |
| Keys | API keys for the AI providers you choose | from you; stored encrypted |
| Notifications | the technical address of your browser or phone for push notifications, if you turn them on | from your browser |
| Technical website data | IP address, date and time, page requested, browser (web server logs); page views without IP address | from your visit |
| Support requests | what you write to us by email or tell us on the phone | from you |
We don’t ask you for special categories of data (health, opinions, origin…) and we ask you not to enter them where they aren’t needed. If you upload them to a project, we process them as a processor on your behalf.
4.Why we process your data and on what legal basis
| Purpose | Legal basis |
|---|---|
| Creating and managing your account, signing you in, letting the agent team work, connecting your computer, showing you previews and notifications | performance of the contract (Art. 6(1)(b) GDPR) |
| Subscriptions, invoices and tax and accounting obligations | legal obligation (Art. 6(1)(c)) and performance of the contract |
| Security of the service: technical logs, preventing abuse and unauthorised access, backups, incident handling | legitimate interest in protecting the service and our customers (Art. 6(1)(f)) |
| Answering your support requests | performance of the contract or pre-contractual steps (Art. 6(1)(b)) |
| Defending a right in the event of a dispute | legitimate interest (Art. 6(1)(f)) |
We don’t carry out profiling or automated decision-making that produces legal effects concerning you. The AI agents work for you on your projects: they don’t assess you.
5.The code of your projects stays on your computer
Project files live in the folder you choose on your computer (usually ~/Plannify/project-name). The Plannify app only opens that folder: the agents read and write there, and secret files such as .env and keys are always excluded. Only the pieces needed for the work at that moment pass through our servers (for example a file an agent reads, or the preview you look at on the website), and we don’t keep them, apart from what ends up in the job history you see in the HQ.
6.Artificial intelligence: who sees the text
The agents “think” with the brain you choose, and the text needed for the work goes only there:
- On your computer (Ollama or other local models): the text never leaves your computer.
- In the browser: the model runs in the open tab; the browser downloads the model once from a public repository, without sending your data.
- With your own key (for example Anthropic, OpenAI, OpenRouter): the text goes to that provider, with whom you have your own relationship, under its terms and privacy settings. We send it only on your instructions and don’t use it to train models.
7.Who receives the data
Only those who need it to run Plannify, always bound by a contract:
| Who | What for | Where |
|---|---|---|
| IONOS SE (Montabaur, Germany) | servers and databases that host Plannify | data centres in the European Union |
| Stripe Payments Europe Ltd. (Dublin, Ireland) | payments, subscriptions, invoices | EU; some Stripe activities in the USA, under standard contractual clauses |
| Browser notification services (Apple, Google, Mozilla) | delivering the push notifications you turn on | the content travels encrypted: they only see the technical address |
| Hetzner Online GmbH (Gunzenhausen, Germany) | only if you order go-live: the server registered to your project | data centres in the European Union |
| Openprovider (Netherlands) | only if you order a domain: registration in your name | European Union; domain registries according to their own rules |
In addition, the providers you choose receive data on your instructions: the AI provider of your key, and the external services your project uses. They are your providers, with your own relationship. The full, up-to-date list of our providers is in the data processing agreement.
Authorised and trained staff at Outline Digital may access the data, only when needed (support, security, maintenance). We don’t sell or pass on data to third parties for their own purposes. We disclose it to authorities only where the law requires it.
8.Transfers outside the European Union
Our servers are in the European Union. A transfer outside the EU may happen:
- through Stripe, for activities carried out by its companies in the United States, on the basis of the European Commission’s standard contractual clauses and the EU-US Data Privacy Framework;
- if you choose an AI provider or a service based outside the EU (for example in the United States): in that case the transfer happens on your instructions, under the safeguards offered by that provider (adequacy decision, Data Privacy Framework or standard contractual clauses). If you want nothing to leave your computer, choose a local brain.
9.How long we keep the data
| Data | How long |
|---|---|
| Account and projects | as long as the account is active. If you delete a project or your account, the data disappears from the service immediately and from backups within 14 days |
| Sign-in session | 30 days from your last sign-in, after which you need to sign in again |
| Invoices and payment data | 10 years, as required by law (Article 2220 of the Italian Civil Code), at Stripe and in our accounts |
| Web server logs (with IP address) | 14 days, then deleted automatically |
| Page view log (without IP) | up to 12 months, for aggregate statistics |
| Support requests | as long as needed to resolve them and no more than 2 years |
10.How we protect the data
Connections always encrypted (HTTPS/TLS); passwords stored only as a scrypt hash; provider keys encrypted with AES-256-GCM and never sent back to the browser; computer and session tokens stored only as a hash; servers with administrative access only via SSH key, protection against repeated attempts and automatic security updates; daily backups. The measures are described on the Security and NIS2 page. If an incident affected your data, we would tell you without delay and, where the law requires it, notify the Italian Data Protection Authority (Garante per la protezione dei dati personali) within 72 hours.
11.Your rights
At any time you can ask to access your data, correct it, erase it, restrict its processing, receive it in a machine-readable format (portability) and object to processing based on legitimate interest (Articles 15–22 GDPR). Many of these you can do yourself, straight away:
- Download your data: from the account menu (top right in “Your projects”) you get a JSON file with your account and all your business software and projects.
- Delete a business software or a project: from its menu in the list.
- Delete your account: from the account menu, with your password; we also cancel your service subscriptions.
For anything else, write to info@outlinedigital.it: we reply within one month (usually much sooner). If you believe the processing breaches the law, you can lodge a complaint with the Italian Data Protection Authority, the Garante per la protezione dei dati personali (garanteprivacy.it).
Where applicable, you may also lodge a complaint with the supervisory authority of the country where you live or work. If you are in the United Kingdom, you may also have rights under the UK GDPR, overseen by the Information Commissioner’s Office (ICO); if you are in Switzerland, under the revised Federal Act on Data Protection (FADP), overseen by the Federal Data Protection and Information Commissioner (FDPIC).
Providing your account data is necessary to use the service; without it, we can’t create your account.
12.Minors, marketing and changes
Plannify is designed for professionals and businesses and for adults: we don’t knowingly collect data from anyone under 18.
We don’t send you newsletters or advertising. The only communications are service messages (notifications you turn on, important notices about your account or security).
Cookies and browser storage have their own page: Cookies. If we change this notice in a significant way, we will tell you beforehand, in the HQ or by email; the date at the top shows the latest revision.