Privacy
What tada stores about you and your boards, how long it keeps it, and who can see it. Last updated October 1, 2026.
tada is run by one developer. A company is being set up, and this page will name it when it exists. tada has no ads, sells no data, and takes no payments.
What tada stores
- Your account. Your email address, name and profile picture. Sign-in is handled by Clerk, so tada never sees or stores a password.
- Your boards. Everything you or your agent put on a board: Stories, Tasks, descriptions, tags, due dates and the links between Stories.
- A record of edits. For each change to a Story or Task: who made it, when, whether it came from the browser or from an agent, and which fields changed.
- Test runs, if you upload them. Pass and fail counts, test names, the first line of each failure, the git branch and commit, the computer's model, and an anonymous ID for the computer made by scrambling its hardware ID. If the hardware ID can't be read, the computer's network name is used instead.
- API tokens. A token's name and when it was last used. The secret itself is shown to you once and only a scrambled copy is kept, so nobody can read it back.
- Server logs. One line per request: the address requested, how long it took, and an internal account ID. Logs never include your email or anything written on a board.
- Page views. The app at app.tada-ai.app counts page views with Vercel Web Analytics, which uses no cookies. This site, tada-ai.app, runs no analytics and no scripts.
Your browser also remembers a few preferences, such as the last board you opened and which lanes you collapsed. These stay in your browser and are never sent to tada. Clerk sets the cookies that keep you signed in.
Who can see it
- A board is private until you make it public. Nobody else can open a private board, or tell that it exists.
- Anyone can read a public board, signed in or not. That includes its Changelog and its test runs. A public board shows an internal ID for whoever last edited each Story or Task and whoever uploaded each test run. It never shows a name or an email address.
- Only a board's owner can change it or see its record of edits.
- The developer who runs tada can read the database and the server logs, and does so only to keep the service working. Boards are not encrypted separately from the database they sit in.
- The services tada runs on hold the data they need to do their part: Clerk (accounts and sign-in), MongoDB Atlas (the database), Render (the server and its logs) and Vercel (the web pages and page-view counts).
Data travels over encrypted connections, and the database is encrypted where it is stored.
How long it's kept
- Your account and your boards: until they are deleted (see below).
- Finished Stories: a Story that has been Done for 30 days moves to the board's Changelog. It stays there, and you can restore it.
- The record of edits: 90 days.
- Test runs: 90 days, though a board always keeps its newest 100 runs and never more than 500.
- API tokens: a token stops working when it expires or you revoke it. Its entry stays in your list.
- Server logs: up to 30 days.
Deleting things
- A Story or Task is removed as soon as you delete it. Its title stays in the record of edits for up to 90 days.
- A board you delete is hidden from everyone straight away, and you can restore it. It is not yet removed for good on a schedule.
- Your account. Deleting it ends your access and cancels your API tokens. Today your account record and your boards are kept afterwards. We are building the next step: when you delete your account, your boards will be hidden straight away, and your account and boards will be deleted for good one year later. This page will change when that is live.
Changes to this page
When what tada stores or how long it keeps it changes, this page changes with it, and the date at the top moves.