Novus Task
Features Pricing Why Us Docs Login Get Started

Privacy Policy

Last updated: September 5, 2026

At Novus Task, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our project and task management service.

Novus Task is an application owned and operated by JrodCode. References to "we," "us," or "our" in this Privacy Policy mean JrodCode and Novus Task.

Scope

This policy applies to Novus Task website, application, and related services provided by JrodCode. By creating an account or using the service, you agree to the collection and use of information as described here. For terms governing your use of the service, see our Terms of Service.

Information We Collect

We collect information that you provide directly to us, as well as certain information that is collected automatically when you use Novus Task.

Account and profile information

  • Name, email address, and password (stored as a secure hash)
  • Company or workspace name, role (admin, editor, user, or guest), and team membership details
  • Profile preferences such as notification settings, theme, and two-factor authentication (2FA) configuration
  • Email change and account recovery activity

Work and collaboration data

  • Projects, tasks, subtasks, comments, @mentions, and activity history
  • Custom statuses, custom fields, status templates, sprints, and story points
  • Task drafts, archived tasks, dependencies, and recurrence settings
  • Files and attachments you upload (images, videos, documents) subject to your plan's storage limits
  • Support tickets, replies, and ticket attachments submitted through the app

Security and authentication data

  • Sign-in history including time, IP address, approximate location (city/region), browser, and device information
  • Session cookies and optional "remember me" tokens
  • 2FA secrets when you enable two-factor authentication

Billing and subscription data

  • Subscription plan, usage against plan limits (projects, tasks, team members, storage), and billing status
  • Payment and billing information processed by our payment provider (Stripe). We do not store full credit card numbers on our servers

Integration and API data

  • Slack workspace identifiers, slash command content, and related configuration when you connect Slack
  • OAuth tokens or CalDAV credentials when you connect Google Calendar or Apple CalDAV
  • API keys you create (we store a hash of the key, not the full key after initial display)
  • Prompts and task text you send to the Pro AI assistant (title, description, and recent comments used to draft or summarize a task)
  • White-label branding settings on Enterprise plans (custom name, logo, favicon, colors, and related assets)

Usage and analytics

  • Features you use, plan limit consumption, and high-level adoption metrics (for example tasks created or completed over time)
  • Search queries you run within the application
  • Communication data when you contact us for support, submit appeals, or send feedback

How We Use Your Information

We use the information we collect to:

  • Provide, operate, and maintain the service, including all task views, collaboration features, sprint planning, and reporting
  • Authenticate users, enforce role-based access, and protect accounts through sign-in monitoring and optional 2FA
  • Process subscriptions, enforce plan limits, and manage billing through Stripe
  • Operate integrations you choose to connect (Slack task creation, calendar sync, and external API access)
  • Provide Pro AI draft and summarize suggestions when you use those actions
  • Send notifications (in-app and email) according to your preferences
  • Respond to support requests and improve the product
  • Monitor performance, troubleshoot issues, and comply with legal obligations

Sign-In History and Security Logs

When you sign in, we record information such as the time and date of access, IP address, approximate location (city, region, country), browser, and device information. You can review recent sign-ins from Settings → Security. We use this data to help you audit account activity and to detect suspicious access.

Files and Uploads

When you upload files (avatars, company logos, favicons, task attachments, support ticket attachments, and other content), we store them so they are available to you and your team according to your plan's storage allowance. Storage usage is tracked against your plan limit on the Subscription settings tab. You are responsible for ensuring you have the right to upload content and that it does not contain personal data beyond what is necessary for your use of the service.

Slack, Calendar, and Other Integrations

If you connect Slack, a calendar provider (Google Calendar or Apple CalDAV), or use our Developer API, we store only the information needed to operate those features—such as workspace identifiers, OAuth tokens, CalDAV credentials, slash command content, and API key hashes. We use this information solely to perform the actions you request (creating tasks, syncing due dates, or serving authenticated API calls). You can revoke integrations from your account settings or from the third-party provider at any time.

API Access

Pro and Enterprise plans may create API keys for external integrations. API keys authenticate as your company admin and should be kept confidential. We log API key usage (such as last-used timestamps) for security and administration. Do not share API keys in public repositories or client-side code.

Payment Processing

Paid subscriptions are processed by Stripe. When you subscribe or manage billing, Stripe collects payment information according to its own privacy policy. We receive limited billing data from Stripe (such as subscription status and customer identifiers) to keep your plan and access in sync.

Location Information

We derive approximate location (city and region) from your IP address using a third-party geolocation service. This is used primarily for sign-in history display and security monitoring. We do not collect precise GPS location data.

Data Sharing

We do not sell your personal information. We may share data with:

  • Service providers who help us operate the service (for example hosting, email delivery, payment processing, and geolocation)
  • Other members of your company workspace according to your role and project access settings
  • Third-party integrations you explicitly connect (Slack, calendar providers)
  • AI provider (Google Gemini) when a Pro user requests a task draft or summary; we send only the prompt or the selected task's title, description, and recent comments
  • Legal authorities when required by law or to protect rights, safety, and security

Data Security

We implement technical and organizational measures to protect your information, including encryption in transit (HTTPS), password hashing, role-based access controls, optional 2FA, and restricted access to administrative tools. Uploads may be validated for file type and size. No method of transmission or storage is completely secure.

Data Retention

We retain your information for as long as your account is active and as needed to provide the service, maintain security logs, resolve disputes, and comply with legal obligations. If a company admin terminates an account, data may be scheduled for deletion after a grace period. When data is no longer needed, we take steps to delete or anonymize it.

Your Rights

Depending on your location, you may have rights regarding your personal information, including the right to:

  • Access the personal information we hold about you
  • Correct inaccurate or incomplete data through your profile settings
  • Request deletion of your data, subject to certain exceptions
  • Object to or restrict certain types of processing
  • Request a copy of your data in a portable format where technically feasible
  • Withdraw consent for optional integrations by disconnecting them in settings

To exercise these rights, contact us using the information below. Company admins may also manage user accounts and data within their workspace.

Children

Novus Task is not intended for users under 16 years of age. We do not knowingly collect personal information from children.

Changes to This Policy

We may update this Privacy Policy from time to time. We will update the "Last updated" date at the top of this page and, where appropriate, provide additional notice within the product or by email for material changes.

Contact Us

Novus Task is owned and operated by JrodCode. If you have questions about this Privacy Policy or how we handle your data, please contact us or email support@novustask.com.

Novus Task

Free for 5 users. Sprint planning, Gantt, time tracking, and calendar sync. A JrodCode product.

Product

Features Pricing Why Us Documentation Get Started

Company

About Contact Home

Legal

Privacy Policy Terms of Service

© 2026 Novus Task, a JrodCode product. All rights reserved.