Last updated: September 24, 2026
This policy describes what data NeoCEO ("the Service") collects, how it is used, and how it is protected. The Service is operated by ELERMOND STUDIO SRL ("we", "the company"). For any privacy question, write to privacy@neoceo.me.
NeoCEO is a conversational executive assistant, accessible via Telegram and a web dashboard, that helps the user manage email, calendar, tasks, reminders and a simple CRM pipeline from natural-language requests.
Email address, display name and profile photo, obtained via Google sign-in, plus the internal Google account identifier (sub).
Messages sent to the assistant (via Telegram or the dashboard) and the generated replies, kept to maintain conversation history and allow continuing a discussion. The link between your Telegram account and your NeoCEO account is made via a temporary linking code.
If you authorize Gmail access, we use the following Google permissions, strictly for the features you activate — reading and sending email, organizing calendar events, and reading contacts and Drive files when a request of yours requires it:
| Permission (scope) | Used for |
|---|---|
| gmail.send | Sending emails, always with your explicit confirmation before sending |
| gmail.modify | Reading messages to answer requests ("summarize today's emails"), archiving, marking as read, moving to another folder |
| contacts.readonly | Recipient suggestions when composing an email |
| calendar.events | Creating and reading calendar events |
| drive.readonly | Reading files on request (e.g. relevant attachments) |
NeoCEO's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not use data from Gmail/Calendar/Drive/Contacts for advertising, we do not sell it, and we do not share it with third parties beyond what's strictly necessary to deliver the functionality you requested (see section 4). Data received from Google Workspace APIs is never used to develop, improve or train generalized AI/ML models.
If you connect another (non-Gmail) email account, we store the server host, port and credentials required for the connection. The password/token is encrypted in the database before being saved and is never kept in plain text beyond the strict duration of the connection request.
If you use the Telegram bot, we receive the conversation identifier (chat ID) and the content of messages sent to the bot, needed to reply and to deliver reminders.
Session cookies (required for authentication, not marketing/tracking) and, in case of an error, technical reports sent to our error-monitoring provider (Sentry) — see section 4.
We do not use the content of your conversations to train our own models and we do not sell it to third parties.
We do not sell your data. We only share it with the providers strictly necessary for the Service to function, each acting as a data processor on our behalf:
We keep account data and conversation history for as long as the account is active. You can request deletion of your account and associated data at any time, at privacy@neoceo.me. Google access tokens can be revoked at any time directly from your Google account settings.
Each account is isolated at the database level. Email credentials connected via IMAP/SMTP are encrypted at rest. Communication with the Service happens exclusively over HTTPS. Internal access is restricted and audited.
No matter where you are, you have the right to:
You can exercise these rights by writing to privacy@neoceo.me.
The Service is not intended for individuals under 16 and we do not knowingly collect data from them.
We may update this policy periodically. Significant changes will be communicated via the Service or by email.
ELERMOND STUDIO SRL — privacy@neoceo.me