hacküLegal
hackü Assistant

Privacy Policy

Last updated: September 11, 2026

This policy explains what data the hackü Assistant handles when you connect Google Drive, what we use it for, and how you delete it. It supplements hackü's general privacy policy; where the two differ, this page governs the Assistant.

01Who processes your data

hackü, as data controller. For any question or request about your data, write to soporte@hacku.co.

02What Google data we receive

We only access your Google Drive if you explicitly authorize it on Google's consent screen. We request these permissions and no others:

ScopeWhat we use it for
drive.readonly
See and download your Drive files
Read the content of the documents inside the folders you choose, so the Assistant can answer questions and cite those documents. We also use it to detect when a document changes, so answers stay current.
userinfo.email
See your primary email address
Show you which Google account is connected, so you can recognize and revoke it.

We never write to your Drive. We do not edit, delete, move, create or share files. Access is read-only and limited to the folders and documents you select — the rest of your Drive is never read or indexed.

03What we do with the content

When you connect a folder, we read the documents inside it and prepare them for search:

  • Google-native files (Docs, Sheets, Slides) are exported to text.
  • Regular files (PDF, Word, Excel) are read as they are.
  • Formats the Assistant cannot read — video, audio, images, archives — are skipped, and the product shows them to you as "left out".

Third-party processing

The content of those documents is sent to OpenAI, which indexes it to enable the semantic search the Assistant uses when answering. OpenAI acts as a processor on hackü's behalf. That content is not used to train models.

We do not sell your data, do not use it for advertising or profiling, and do not share it with any other third party except where legally required.

04Who can see your documents

Connected documents become available to your company's Assistant, and therefore to the people who talk to it inside your organization. Choose folders with that in mind: anything you connect can be quoted in an answer.

Our staff does not access the content of your documents unless you explicitly ask us to, to resolve a support issue.

05How long we keep it, and how you delete it

  • Disconnecting Google Drive from the dashboard deletes the copies of those documents from our systems and from OpenAI, and deletes the access credentials. The original files in your Drive are untouched.
  • Removing a folder from the selection deletes the copies of that folder's documents.
  • You can revoke access at any time from your Google account's permissions page, without going through hackü.
  • You can ask us to delete your data at soporte@hacku.co. We respond within the timeframes required by applicable law.

06Security

Google access credentials are stored on our servers and are never sent to the browser. Traffic is encrypted in transit. Internal access to these systems is restricted to the staff who need it to operate the service.

07Limited Use of Google user data

hackü's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

08Changes

If we change how we handle Google data, we will update this page and the date above before the change takes effect.