Introduction
Qurio is a desktop application developed by FocusKPI that provides an AI-powered workspace for managing files and notes. This Privacy Policy explains how Qurio handles your data when you use our application.
Key Principle: Qurio is a local-first application. Your files and data remain on your device and are only shared with third-party services (like Google Drive, Dropbox, OneDrive, Slack, or Claude AI) when you explicitly choose to use those integrations.
Google User Data and Limited Use
Qurio's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
When you sign in with Google and grant access, Qurio may request the following access, and uses it only to provide the features you directly ask for:
- Basic profile (email, name): to identify the Google account you connected.
- Gmail (read and compose drafts): to read, search and summarize your email when you ask, to create drafts, and to send email from your account. Qurio sends email only when you instruct it to, or as part of an automation that you configured.
- Google Drive and Google Sheets: to browse, open, and save the files you choose, and to read or write spreadsheets you ask Qurio to work on.
- Google Calendar: to show your events, check availability, and create or update events when you ask.
- Google Contacts (including “other contacts”): to suggest recipients when you compose an email or fill in a form.
We commit to the following with respect to Google user data:
- We use Google user data only to provide and improve the user-facing features described in this policy, and only as visible in Qurio's user interface.
- We do not sell Google user data, and we do not use it for advertising, including retargeting or interest-based advertising.
- We do not use Google user data to develop, improve, or train generalized AI or machine-learning models. Content is sent to the AI model (see Section 3) only to generate the response you requested.
- We do not allow humans to read Google user data, except (a) with your affirmative consent for specific items, for example when you choose to submit a bug report that includes it, (b) where necessary for security purposes such as investigating abuse, (c) to comply with applicable law, or (d) when the data is aggregated and anonymized for internal operations.
- We do not transfer Google user data to third parties except as necessary to provide the features you request, to comply with law, or as part of a merger or acquisition with notice to you.
You can disconnect a Google account at any time from the Integrations page in the Qurio desktop app, or from the Connectors page on the Qurio website. Disconnecting revokes Qurio's access with Google and deletes the authorization tokens we hold for that account. You can also revoke Qurio's access directly from your Google Account permissions. To request deletion of any other data we hold about your connection, contact us at the address below.
Data Collection and Usage
1. Local Data Storage
Qurio stores your files, notes, and application settings locally on your device. Except for the data described in Sections 4, 6 and 7 below, this data is not transmitted to our servers.
2. Cloud Storage Integrations (Google Drive, Dropbox, OneDrive)
When you connect Qurio to a cloud storage provider:
- Authentication: We use OAuth 2.0 for secure authentication. Your passwords are never stored by Qurio.
- File Access: Qurio only accesses files when you explicitly open them in the application.
- Local Processing: Files are temporarily downloaded to your device for viewing and editing, then uploaded back to your cloud storage when you save changes.
- No Server Storage: Qurio does not store copies of your cloud files on any servers we control. If you set up an automation that processes a file, the file is handled transiently to complete that run (see Section 4).
3. AI Processing (Claude API)
When you use AI features in Qurio:
- Explicit User Action: AI processing only occurs when you explicitly request it (e.g., asking a question about a file).
- Data Transmission:File content, email content, and your conversation are sent to Anthropic's Claude API only to generate the response you requested. This includes Google user data you ask Qurio to work on, and it is used for no other purpose.
- No Model Training: We do not use your Google user data to train AI or machine-learning models, and we do not permit it to be used for that purpose.
- Third-Party Privacy: Data sent to Claude API is governed by Anthropic's Privacy Policy.
- User Control: You can disconnect or stop using AI features at any time.
4. Google Account Connection and Automations
When you connect a Google account, Qurio's desktop app uses the access you granted to work with your Gmail, Drive, Sheets, Calendar and Contacts directly from your device, and the content is not stored on our servers.
To let the automations you configure run on your behalf (for example, when a scheduled task or a form you set up needs to read a mailbox, look up a contact, or fetch a Drive file), Qurio stores your Google authorization token on our servers and uses it only for those automations. During a run, the relevant Google data may pass through our servers and our automation engine transiently in order to complete that run. Qurio does not use this data for any other purpose and does not build profiles or advertising audiences from it.
5. Google Meet Recording
When you use the Google Meet recording feature, audio is recorded locally on your device and processed using local speech-to-text (Whisper). Recordings and transcripts are stored in the location you specify and are not transmitted to our servers.
6. Project / Team Metadata
When you create or join a Team and create Projects, lightweight metadata (project name, description, status, connected source references, member list) is stored on Qurio's server so that team members can collaborate. The contents of your files remain in the respective source (Google Drive, OneDrive, Dropbox, Slack, etc.) and are neverstored on Qurio's server.
7. Bug Reports
When you submit a bug report, it may include conversation context (limited to 3.5MB) and application logs. This data is sent to our development team to help diagnose and fix issues. Bug reports are submitted voluntarily and only when you explicitly choose to send them.
Data Sharing
Qurio does not sell, rent, or share your personal data with third parties, except:
- When you explicitly use integrations (Google services, Dropbox, OneDrive, Slack, Claude API) as described above, and only as needed to provide the feature you requested
- When required by law or to protect our legal rights
Data Security
We implement appropriate technical and organizational measures to protect your data:
- OAuth 2.0 for secure authentication with cloud services
- Local-first architecture minimizes data transmission
- Google authorization tokens stored on our servers are encrypted at rest in our database using AES-256-GCM
- Access to authorization tokens and Google user data on our servers is restricted to the systems and personnel that need it to operate the service
- Encrypted connections (HTTPS) for all API communications
Your Rights
You have the following rights regarding your data:
- Access: Your data is stored locally on your device and you have complete access to it
- Deletion: You can delete any local data by uninstalling the application or manually deleting files
- Disconnect Integrations: You can disconnect Google, Dropbox, OneDrive, Slack, or other services at any time from the Integrations page (for Google, you can also revoke access from your Google Account permissions)
- Portability: All your data is stored in standard formats and can be exported
Children's Privacy
Qurio is not intended for use by children under 13 years of age. We do not knowingly collect personal information from children under 13.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the “Last Updated” date.
Contact Us
If you have any questions about this Privacy Policy, please contact us:
Email: devops@focuskpi.com
Developer: FocusKPI