Skip to main content
Platform Review
PricingSign in
← All platforms
Workflow & Automation · dayflow.so

Dayflow

Graded against 811 verified platforms, from its own policy text. Automated assessment against a published rubric — not legal advice.

Overall riskLOWReviewed 2026-07-20
Creator: low · GRC: low · Counsel: low
Benchmark

No lens is bandable yet — banding requires fully verified documents with on-criteria findings. The gap is shown honestly, never estimated.

11 verified findings3 policy surfaces1/1 core docs verified

Partially verified: Privacy Policy assessed. Everything below comes only from what was read in full.

Risk triage

Watch: Privacy and data use

Start here. These are the highest-risk verified clauses AIRIN found in the platform's own policy text.

0
high
1
medium
2
low
1/1
docs
Trains on your data?
Not yet assessed
no verified finding covers this surface yet
Who owns outputs?
Not yet assessed
no verified finding covers this surface yet
Commercial use?
Not yet assessed
no verified finding covers this surface yet
Every rating:verbatim-citedsnapshot-datedchange-loggedHow we keep ratings honest →

How to read this page: Overall risk rates what Dayflow's own policy terms mean for your prompts, outputs, and data. The benchmark bands below grade those same verified terms relative to peers — a platform in a risky-by-default category can rate HIGH risk and still grade STRONG against its peer set. Both trace to the cited findings.

Partially verifiedWorkflow & Automation

Partially verified — Privacy Policy — Verified (read in full, 11 findings). Findings below are from fully-read, verified documents only; remaining core documents are pending capture.

Why partial?

Terms not yet captured

AIRIN has not yet captured a gate-verified Terms of Service document for this platform.

Document status
  • Privacy Policy
    Verified - read in full - 11 citationsLast captured 2026-07-20
Tier conditions

Only citation-backed plan differences are shown here; absent cells mean AIRIN has not verified a tier-specific claim.

plan language
Subprocessors & data sharing

Describes the data-flow procedure when a user configures a third-party AI provider: screenshots are sent directly to the user-chosen provider, Dayflow receives only anonymous analytics and account information, and directs the user to the provider's own privacy policy for handling of their data — allocates data-processing responsibility and limits Dayflow's data receipt.

" You can connect your own API keys for third-party AI providers. Your screenshots are sent directly to the provider you configure for analysis. Refer to your provider's privacy policy for how they handle your data. The only data Dayflow rec..."
📍 Privacy Policy › “DEFAULT”Jump to exact text →

Evidence appendix

Showing priority citations first. The full appendix is available for audit trails; not every citation is a severe risk.

High - 0
Medium - 1
Tier-specific - 0
Total citations - 11
Severity
Surface
Document
Tier
Privacy & data use
High
" We do not sell your data. We do not store your screenshots. Screenshots are only used to generate your Activity Data. Once that's done, they're removed from our servers. We never build a library of your raw screenshot captures. We do not allow our AI providers to train on your data. We require that every provider we work with use your data only for processing and not retain or use it for model training. We do not share your data with third parties for their own independent purposes. We may disclose information if required by law, such as in response to a subpoena or court order."
Privacy Policy › “Our data privacy commitments”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Sets out multiple operative restrictions in a single clause: prohibits sale of user data, prohibits storage of screenshots, limits screenshot use to Activity Data generation, prohibits building a screenshot library, prohibits AI providers from training on user data, requires providers to use data only for processing without retention or model training, prohibits sharing data with third parties for independent purposes, and permits disclosure only when legally compelled (e.g., subpoena or court order) — predominantly user-favorable restrictions on data use and sharing.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" Everything happens on your device using on-device AI models. Screenshots never leave your machine. Nothing is sent to Dayflow's servers except anonymous analytics, which you can turn off in settings, and basic account information."
Privacy Policy › “DEFAULT”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Restricts data transmission by providing that all AI processing occurs on-device, screenshots never leave the user's machine, and nothing is sent to Dayflow's servers except anonymous analytics (which can be disabled) and basic account information — user-favorable restriction on server-side data collection.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" This information helps us find bugs and figure out what to build next. It contains no screenshots, no Activity Data, and no personally identifiable information. You can turn it off in settings at any time."
Privacy Policy › “App launches, feature usage, crash reports”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Restricts the use of anonymous analytics to bug-finding and product development, affirms it contains no screenshots, no Activity Data, and no personally identifiable information, and grants users the right to opt out in settings at any time — user-favorable restriction on analytics scope and provides an opt-out right.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" California residents: Under the CCPA, you have the right to know what we collect, request deletion, and opt out of the sale or sharing of personal information. We do not sell or share personal information as defined by the CCPA. We will not discriminate against you for exercising these rights. EEA/UK residents: Teleport Labs, Inc. is the data controller. We process your data because it's needed to provide the service and because we have a legitimate interest in running and improving Dayflow. You have the right to access, correct, delete, or port your data, and to lodge a complaint with your local supervisory authority. Contact us to exercise your rights under GDPR."
Privacy Policy › “Turn off analytics”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Articulates multiple user rights regarding personal information — including the right to know, deletion, opt-out from sale or sharing, access, correction, portability, and complaint lodging — while also stating the platform does not sell or share personal information and will not discriminate against users for exercising these rights, and identifies the legal bases for processing as service necessity and legitimate interest.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" Dayflow is not intended for anyone under 13. We do not knowingly collect information from children."
Privacy Policy › “Children's Privacy”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Restricts the platform's intended user base to individuals 13 and older and imposes an obligation not to knowingly collect personal information from children, limiting data collection practices with respect to minors.

AI-generated interpretation, not legal advice.

Data retention
High
" When you delete your account, all personal data, including Activity Data, is deleted from our active systems within 7 days."
Privacy Policy › “Delete your account”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Imposes a specific obligation on the platform to delete all personal data, including Activity Data, from active systems within 7 days of account deletion, establishing a defined retention limit tied to user action.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" Dayflow captures screenshots of your screen at low frequency, analyzes them with AI, and produces a structured timeline of what you worked on: descriptions, categories, and summaries. We call this your Activity Data. You choose how this processing happens:"
Privacy Policy › “How Dayflow Works”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Defines the product's core data-processing mechanism (screenshot capture, AI analysis, structured timeline output) and introduces the defined term 'Activity Data', which is used throughout the document.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" If we make material changes, we'll notify you by email or in-app notice before they take effect."
Privacy Policy › “Changes to This Policy”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Imposes an obligation on the platform to notify users by email or in-app notice before material changes to the policy take effect, establishing a procedural requirement for policy amendments.

AI-generated interpretation, not legal advice.

Data retention
High
" Screenshots are sent to our servers for AI analysis. Once processing is complete, the screenshots are deleted. We only keep the resulting Activity Data so your data can sync between devices."
Privacy Policy › “OPT-IN”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Describes the retention procedure for the cloud mode: screenshots are sent to servers for AI analysis and deleted once processing is complete; only the resulting Activity Data is retained for device-sync purposes — limits screenshot retention and specifies what data persists.

AI-generated interpretation, not legal advice.

Data retention
High
" We need this information to run your account. We keep these while your account is active."
Privacy Policy › “Name, email, subscription details”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

States that account information is retained for as long as the account is active — establishes a retention obligation/rule tied to account status.

AI-generated interpretation, not legal advice.

Subprocessors & data sharing
High
" You can connect your own API keys for third-party AI providers. Your screenshots are sent directly to the provider you configure for analysis. Refer to your provider's privacy policy for how they handle your data. The only data Dayflow receives is anonymous analytics and basic account information."
Privacy Policy › “DEFAULT”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Describes the data-flow procedure when a user configures a third-party AI provider: screenshots are sent directly to the user-chosen provider, Dayflow receives only anonymous analytics and account information, and directs the user to the provider's own privacy policy for handling of their data — allocates data-processing responsibility and limits Dayflow's data receipt.

AI-generated interpretation, not legal advice.

Clause detail — protections, your obligations, and coverage

Every clause below is a verbatim quote from Dayflow's own published policy, read in full and linked to its exact location. Protections and user obligations are reported separately from risk because they are different kinds of clause — an obligation on you is not a risk to your data. Informational only, not legal advice.

✅ Protections found

0 verified clauses

Clauses in Dayflow's policies that work in your favour — commitments the platform made to you.

No protective clause has been verified in Dayflow's published policies yet. That means we did not find one in the documents we read — not that the platform offers nothing.

📋 Rules you must follow

0 verified clauses

What Dayflow requires of YOU. These are your obligations, not risks to your data or IP, so they are cited here and excluded from this platform's risk rating.

No user-conduct rule has been verified in Dayflow's published policies yet.

What the policies actually cover

0 topics

None of Dayflow's verified clauses has been assigned a topic yet. The clause-trust review has not reached this platform's findings.

Clause intelligence

Canonical clauses and stance patterns extracted from the same gate-verified citations shown on this page.

14
clauses
5
patterns
5
stances
privacy sharing · 3data retention · 1training use · 1
data retentionLOWPrivacy Policy › “Delete your account”

The clause provides a deletion or time-bounded retention path.

When you delete your account, all personal data, including Activity Data, is deleted from our active systems within 7 days.
Open source citation
privacy sharingHIGHPrivacy Policy › “Our data privacy commitments”

The clause permits sale of personal data or information.

We do not sell your data. We do not store your screenshots. Screenshots are only used to generate your Activity Data. Once that's done, they're removed from our servers. We never build a library of your raw screenshot captures. We do not allow our AI providers to train on your data. We require that every provider we work with use your data only for processing and not retain or use it for model training. We do not ...
Open source citation
privacy sharingHIGHPrivacy Policy › “Turn off analytics”

The clause permits sale of personal data or information.

California residents: Under the CCPA, you have the right to know what we collect, request deletion, and opt out of the sale or sharing of personal information. We do not sell or share personal information as defined by the CCPA. We will not discriminate against you for exercising these rights. EEA/UK residents: Teleport Labs, Inc. is the data controller. We process your data because it's needed to provide the serv...
Open source citation
privacy sharingMEDIUMPrivacy Policy › “Our data privacy commitments”

The clause permits disclosure or sharing with third parties, affiliates, vendors, or subprocessors.

We do not sell your data. We do not store your screenshots. Screenshots are only used to generate your Activity Data. Once that's done, they're removed from our servers. We never build a library of your raw screenshot captures. We do not allow our AI providers to train on your data. We require that every provider we work with use your data only for processing and not retain or use it for model training. We do not ...
Open source citation
training useHIGHPrivacy Policy › “Activity Data”

The clause permits using submitted content for training, development, or model/service improvement.

Activity Data is only stored when you opt into Dayflow Pro, in order to sync your data between devices. These are the timeline entries, summaries, and categories that make up your Dayflow experience. We keep this on our servers so you can search your work history and access everything from wherever you are. When we improve our AI, we may use your existing Activity Data to refine your timeline entries automatically.
Open source citation

Tier matrix

Plan-level conditions detected from citation-backed clauses. Empty tiers mean AIRIN has not captured decisive tier language yet.

TierSurfaceVerdictRiskCitations
All applicable tiersdata retentionimprovesLOW1
All applicable tiersprivacy data useworsensHIGH3
Pro / Paidtraining useworsensHIGH1

Policy evolution

Open full timeline

Before/after stance changes across captured policy versions. When no material delta exists yet, AIRIN shows the latest citation-backed stance events instead.

Jul 20, 2026data sharingHIGH

Latest stance: sale or sell on privacy data use

We do not sell your data. We do not store your screenshots. Screenshots are only used to generate your Activity Data. Once that's done, they're removed from our servers. We never build a library of your raw screenshot captures. We do not allow our AI providers to train on your data. We require that every provider we work with use your data only for processing and not retain or use it for model training. We do not share your data with third parties for their own independent purposes. We may disclose information if required by law, such as in response to a subpoena or court order.
Open timeline citation
Jul 20, 2026data sharingMEDIUM

Latest stance: third party or vendor sharing on privacy data use

We do not sell your data. We do not store your screenshots. Screenshots are only used to generate your Activity Data. Once that's done, they're removed from our servers. We never build a library of your raw screenshot captures. We do not allow our AI providers to train on your data. We require that every provider we work with use your data only for processing and not retain or use it for model training. We do not share your data with third parties for their own independent purposes. We may disclose information if required by law, such as in response to a subpoena or court order.
Open timeline citation
Jul 20, 2026data sharingHIGH

Latest stance: sale or sell on privacy data use

California residents: Under the CCPA, you have the right to know what we collect, request deletion, and opt out of the sale or sharing of personal information. We do not sell or share personal information as defined by the CCPA. We will not discriminate against you for exercising these rights. EEA/UK residents: Teleport Labs, Inc. is the data controller. We process your data because it's needed to provide the service and because we have a legitimate interest in running and improving Dayflow. You have the right to access, correct, delete, or port your data, and to lodge a complaint with your local supervisory authority. Contact us to exercise your rights under GDPR.
Open timeline citation
Jul 20, 2026model trainingHIGH

Latest stance: training permitted on training use

Activity Data is only stored when you opt into Dayflow Pro, in order to sync your data between devices. These are the timeline entries, summaries, and categories that make up your Dayflow experience. We keep this on our servers so you can search your work history and access everything from wherever you are. When we improve our AI, we may use your existing Activity Data to refine your timeline entries automatically.
Open timeline citation
Jul 20, 2026retentionLOW

Latest stance: deletion or time bound on data retention

When you delete your account, all personal data, including Activity Data, is deleted from our active systems within 7 days.
Open timeline citation

Capture recency

  • Privacy Policy:Last captured 2026-07-20· verified 2026-07-20verified once — not yet re-verified

Dates state when our pipeline captured and verified each document — not when the vendor last changed it. Documents are re-scanned on a recurring cadence; a document verified once says so until a re-scan confirms it again.

14 findings first captured First scan: July 2026.

Claim this profile

Compare and stack are saved in your browser. Open compare · View your stack. A correction triggers an automated re-read of Dayflow's policies — no human edits the data.

Need this for procurement or legal diligence?

Free shows today's risk. A Stack Audit gives you a citable, verbatim-sourced PDF across your whole AI stack — and flags the moment a vendor's terms change.

Know where the missing document lives?

We haven't yet verified Dayflow's Terms of Service. Point us at the official page and our pipeline will attempt to capture and read it in full. Submissions are candidates only — nothing is published until it passes the same verification gates as every other document on this site.

Every finding above is a verbatim quote from Dayflow's own published policy, captured to an immutable snapshot and read in full through a two-gate verification pipeline. Confidence labels and any analysis are AI-generated and informational only — not legal advice.

📢 POLICY UPDATES ALERT

AIRIN Brief

Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.