What it keeps, and how to get rid of it
MiniBilly is an assistant that works by knowing things about you. That only holds together if you can see exactly what it keeps and remove it whenever you like. This page describes what the product actually does, checked against the code rather than written from a template. Where something is awkward, it says so.
Last updated 9 October 2026. MiniBilly is pre-incorporation and currently run by Billy Mycroft-Edwards as an individual. Contact billy@minibilly.ai.
The short version
- Meeting audio never leaves your computer. It is transcribed on your own machine and the recording is deleted afterwards.
- Your email and documents are read, not stored. When you ask something, MiniBilly reads what it needs to answer and keeps the answer, not the mail.
- It proposes; you decide. Nothing is sent, booked, bought or created without you tapping approve.
- Your content goes to OpenAI to be processed, and is not used to train models. That is the main place your data goes outside MiniBilly.
- Nothing is sold, ever. No advertising, no tracking pixels, no analytics on your content.
- You can delete everything from Settings, in one step, and it is genuinely gone.
What MiniBilly holds
| What | Detail |
|---|---|
| Your account | Email address and display name, handled by Supabase Auth. If you sign in with Google, Google tells us your email and name. |
| What you put in | Notes, todos, meeting transcripts and their summaries, and your conversations with the assistant. This is the substance of the product. |
| What it works out about you | Short written facts, so it does not start cold every morning — that you think best before eleven, who your co-founder is, what you promised by Friday. |
| Credentials for tools you connect | Access tokens for Google, Shortcut, Slack, Discord or Granola, so it can act on your behalf. |
| Running costs | A count of requests and tokens, so one person cannot accidentally run up the bill. It records how much was used, never what was in it. |
Two things about those remembered facts are worth knowing. Anything it decides is temporary carries an expiry date and removes itself without being asked. Anything it wants to remember permanently is only ever proposed to you — it is not kept unless you confirm it. You can read and delete any of it from the Memory page.
Your email, calendar and documents
If you connect Google, MiniBilly can search your mail, read a thread, look through Drive, and see your calendar. You can connect more than one account — a personal mailbox, a work one, a side business — and it searches all of them, telling you which one each result came from.
Almost none of it is stored. Search results, message contents, documents and calendar events are read at the moment they are needed, used to answer, and discarded. They are not copied into our database.
The one exception is if you ask MiniBilly to watch your inbox. Then each message produces one row holding the sender, the subject, a short preview, and a line about why it did or did not think you needed to know. That is what lets it say “this is the fourth time” instead of telling you the same thing four times. Full message bodies are never written down.
MiniBilly asks for the narrowest Google permissions that do the job. It can read your mail and write drafts; it cannot relabel, archive or delete anything, because it never asks for the permission that would allow it. Sending only happens after you approve a draft you can see and edit.
MiniBilly’s use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Google user data is never sold or transferred, never used for advertising, and never used to train generalised AI models.
Where it goes
MiniBilly is assembled from other people’s services. Each one below receives something, and the ones you have not connected receive nothing at all.
| Who | What they get |
|---|---|
| OpenAI | Note text, transcripts, your messages, and the context the assistant has about you. Whenever it does anything. Excluded from training by their API terms. |
| Supabase | Everything stored — they host the database and handle sign-in. |
| Only requests you trigger: a search, a draft, an event. Only if connected. | |
| Twilio | Your WhatsApp messages and your number, if you choose to message it on WhatsApp. |
| Slack, Discord | Your briefing and nudges, if connected. |
| Shortcut | The content of tickets you approve, if connected. |
| Sentry | Crash reports, with the content fields stripped out before they are sent. |
There is no advertising network, no analytics on your content, and no data broker. Nothing is sold.
How long it is kept
Things you wrote are kept until you delete them. Things the assistant worked out are thrown away on a timer, because a two-year-old summary of who emailed you is a liability rather than a feature.
| What | How long |
|---|---|
| Notes, todos, transcripts, your conversations | Until you delete them, or delete your account |
| Inbox and feed summaries | 90 days |
| Daily summaries and reports | 90 days |
| Nightly reflections | 180 days |
| Temporary remembered facts | Their own expiry, then removed a month later |
| Verification codes | Ten minutes, single use |
| Meeting recordings | Deleted as soon as they are transcribed, on your machine |
Your conversations with the assistant are deliberately not on a timer. A product that quietly forgets a conversation from four months ago might be the right one, but that should be your decision rather than something we do to tidy up.
Deleting everything
Settings has a delete-account button. It removes your account and every row attached to it — notes, todos, transcripts, conversations, remembered facts, connected credentials, everything. There is an automated test that seeds all twenty tables, deletes an account and checks each one is empty, so this is a verified claim rather than an intention.
You can also delete things individually at any time: a note, a todo, a conversation, a connected Google account, a remembered fact.
Your rights
If you are in the UK or EU, you have the right to see what is held about you, correct it, take it elsewhere, or have it erased. Most of that is in the product already — the Memory page shows what it knows, Settings exports your data, and deletion is one button.
For anything else, email billy@minibilly.ai. MiniBilly is run by an individual rather than a company at the moment, so that is a person reading it, not a ticketing system.
Children
MiniBilly is not intended for anyone under 16.
Changes
If this policy changes in a way that affects what is collected or where it goes, the date at the top changes and anyone with an account is told by email. Quietly broadening a privacy policy is the sort of thing this product exists not to do.