Effective August 27, 2026
Privacy Policy
This policy describes what personal information Togetherward collects, what the service can and cannot read, who processes data on our behalf, and the choices you have.
Who operates Togetherward
Togetherward is an independently operated service. It is run by a single operator rather than a registered company, and there is no parent organisation, investor, or agency behind it.
This policy applies to accounts created at togetherward.app, the case workspaces you share with a partner, and the public pages on this site.
What we collect
- Account information. Email address, display name, and the authentication material our identity provider issues for your session.
- Case content. Everything you and your partner record in a case: tasks, timeline events, appointments, travel plans, notes, decisions, and uploaded documents.
- Billing metadata. If and when you subscribe, our payment processor holds card details and transaction history. We retain only plan, status, and identifiers.
- Product telemetry. Coarse, anonymous events such as “onboarding step completed” — only after you opt in, and never containing case content. See Cookies and Local Storage.
- Diagnostic logs. Server error traces, stripped of document names, note bodies, contact details, invitation tokens, and signed URLs.
- Request metadata. IP address, user agent, and requested URL, recorded by our edge network for delivery, abuse prevention, and debugging.
What is end-to-end encrypted
Once a case has encryption enabled, protected content is encrypted on your device before it reaches our servers. We do not hold the keys, so we cannot read it, and neither can our storage provider or any automated processing.
- File bytes of document and evidence uploads
- Shared note bodies
- Case memory bodies
- Attorney-question drafts and their answers
The technical detail — key derivation, per-member key wrapping, and the recovery consequences — is on the security page.
What the service can read
Encryption protects content, not the existence of records. Our servers can read the metadata needed to operate the workspace:
- Who the members of a case are, and when they joined
- That a record exists, its type, and when it was created or changed
- Dates you attach to tasks, appointments, reminders, and travel
- Unencrypted fields you deliberately record as structured data, such as a task title
- Object sizes and storage paths for encrypted uploads
We state this plainly because a privacy claim that hides its own limits is not a privacy claim.
Connected assistants
When you choose to connect Togetherward to ChatGPT, you authorize ChatGPT to call Togetherward tools for you. Public tools return only public information. Member tools require you to sign in and can return only the server-readable structural information needed for your request.
- Your case display name and opaque case, stage, milestone, and task identifiers
- Current stage or milestone labels, task status, assignee, due date, and last-updated time
- A short task title you ask ChatGPT to create
- Receipts that record an assistant-initiated change
Protected encrypted content — including document and evidence files, shared notes, case memories, and attorney-question drafts — cannot be returned through these tools. The tools also do not provide government identification numbers, billing or payment details, or legal strategy.
OpenAI processes the conversation and tool results under its own terms and privacy policy. You can disconnect Togetherward or revoke access to stop future calls. Disconnecting does not delete information OpenAI has already kept in an existing conversation; use OpenAI’s controls for that.
What we never do
How data is shared inside a case
Who processes data on our behalf
Managed application backend (Postgres, authentication, object storage)
Stores accounts, case records, and uploaded files, and issues sign-in sessions.
Account identifiers, case metadata, and stored objects. Protected case content arrives already encrypted on your device.
Cloudflare
Serves the site and runs the server-side application code at the network edge.
Request metadata such as IP address, user agent, and requested URL.
Stripe
Processes payments if and when a paid plan is offered.
Card details and transaction history, held by Stripe. Togetherward retains only plan, status, and identifiers.
Transactional email delivery
Sends sign-in, invitation, reminder, and receipt email.
Email address, message subject and body, and delivery status.
Each provider processes data only to deliver the service we buy from them. We update this list when a provider changes, and record the change in the revision history below.
Where data is stored and transferred
How long we keep data
- Account and case records: for as long as the account or case exists.
- Deleted cases and accounts: removed from the live database and object storage at the time of deletion.
- Encrypted database backups: rolled off on our provider’s standard schedule after deletion.
- Billing and email delivery records: retained by those providers for the period their own legal obligations require.
- Diagnostic logs: short-lived and rotated automatically.
Deleting your data
Your rights
Depending on where you live, you may have the right to access, correct, export, delete, or object to the processing of personal data we hold about you, and to withdraw analytics consent at any time. Most of these are available directly in the product.
For anything that is not, write to support@togetherward.app. We answer data requests ourselves and will confirm receipt.
Togetherward is not intended for children, and we do not knowingly create accounts for them.
Contact
Revision history
We review this document whenever Togetherward's practices or applicable requirements materially change, and we record what changed in the revision history below.
- August 27, 2026Added the connected-assistant disclosure: what a deliberate ChatGPT connection can share, what protected content remains unavailable, and how revocation and provider retention work.
- August 7, 2026Published as a complete policy: named subprocessors, separated end-to-end encrypted content from server-readable metadata, and documented retention, deletion, and data rights.
- July 16, 2026First published description of what Togetherward collects and why.
Not legal advice.
Togetherward is an organizational and planning tool for couples navigating international immigration paperwork. It is not a law firm, is not affiliated with any government agency, and does not guarantee any immigration outcome, eligibility, or admission. For legal advice, consult a licensed attorney in the relevant jurisdiction.