bluon.day Privacy Policy

Last updated: 19 July 2026

This privacy policy describes the processing of personal data connected with the use of bluon.day, the shared family diary with AI suggestions, available as a web application and as an Android app. It is provided under Regulation (EU) 2016/679 ("GDPR") and concerns this Application only. It is addressed both to registered Users and to the other people whose data may appear in a diary (people in the User's care, invited members, people mentioned in to-dos): the latter are also covered by the Privacy notice for people in your care, family members and invited members.

Data Controller

Blu Oberon S.r.l.

via Tadino, 52 — 20124 Milano (Italia) · VAT no. IT08399040966

Contact email address: privacy@bluoberon.it

Blu Oberon acts as an independent controller for all the data described in this privacy policy, including the data the User enters about other people.

Who the Service is for

bluon.day is reserved for people of legal age. Legal age is confirmed by an express declaration at first sign-in and, for those joining a circle, when the invitation is accepted. Minors cannot be Users: they have no account and do not access the Application. The adult User may, however, note in the diary certain deliberately limited data about the people in their care — for example children or family members. How this data is processed is explained below, under «Data on people in the User's care».

Types of data collected

When the User assigns a to-do to a member who has accepted the invitation, that member sees — in their own account — the title, category, date, time and status of the to-do and the name of the User who assigned it, and can mark it as done. They do not see other to-dos, they do not see the other members of the circle and they do not see the beneficiaries indicated with «@». Access is revoked at any time by removing the member from the circle, with immediate effect; the member, in turn, can leave the circle from their own Profile.

The Application uses only technical session cookies (authentication). It does not use profiling cookies, third-party analytics tools, advertising or remarketing.

Health-related data

bluon.day is not designed to process health data and never asks for it. We expressly ask you not to enter diagnoses, conditions, medicines, treatments or medical reports in the titles of to-dos and in the other free-text fields: for a reminder, a neutral wording is enough (e.g. «Andrea's appointment»). As a further precaution, the Application automatically excludes texts that appear to refer to health from artificial intelligence flows and from extended notifications. If, despite this request, a text of that kind is entered in a free-text field, it remains technically stored for the sole purpose of allowing the User to modify or delete it, and it is never used for health-related, profiling or advertising purposes.

Purposes and legal bases of processing

How and where data is processed

Data is processed by electronic means, with appropriate security measures: the Application's data resides on databases in the European Union (Ireland) and the Application runs on infrastructure with functions in Europe (Dublin). Google access tokens live solely in an encrypted session cookie: they are never exposed to the browser or saved in the database. Access to data is strictly separated per user.

Third-party services used

Registration and authentication

There are two ways to sign in, at the User's choice: with your own Google account (Google Ireland Ltd.), or with a sign-in link sent by email, valid for a few minutes and for one use only. In both cases bluon.day does not store passwords. The sign-in link is delivered through Brevo (Sendinblue SAS, France) and only a cryptographic fingerprint of it remains in the database, not the link itself.

Synchronisation with Google Calendar and Google Tasks is an optional feature, separate from signing in: those who sign in with the email link grant no permission over their Google data, and can link it later — or never.

Calendar and tasks synchronisation — Google Calendar API and Google Tasks API

Used to read and update, at the User's request, events and tasks in their Google account. The use of information received from Google APIs complies with the Google API Services User Data Policy, including the Limited Use requirements: such data is used only to provide the visible features of the Application, is not sold, is not used for advertising and is not read by humans, except with explicit consent, legal obligations or security reasons.

Artificial intelligence features — Anthropic (Anthropic, PBC — USA)

The AI features fall into two groups, with different rules.

Data sent through the API is not used to train the models. A data processing agreement (DPA) is in place with Anthropic incorporating the standard contractual clauses approved by the European Commission; the transfer to the United States is described in the section «Transfers outside the EU».

Voice capture — browser/device recognition

Voice recognition takes place through the features of the User's browser or operating system. Depending on the device, the audio may be processed locally or by the provider of the recognition service (e.g. the maker of the browser or of the system). Blu Oberon does not receive and does not store the audio recording: it processes only the transcribed text, which the User sees and confirms.

Payments and subscriptions — Stripe (Stripe Payments Europe, Ltd. — Ireland)

Plus subscriptions and the related payments are managed by Stripe. Payment takes place on pages hosted by Stripe: card data is collected and processed directly by Stripe and does not pass through, and is not stored by, bluon.day. On subscribing, the User's name and email address are shared with Stripe for customer management and tax obligations. The Controller keeps only a customer identifier and the subscription status, which are needed to activate and manage the plan. Stripe's privacy policy: stripe.com/privacy.

Hosting and infrastructure — Vercel Inc. · Database — Turso (CHISELSTRIKE Inc.)

Technical delivery of the Application (functions run in the EU) and storage of application data on databases in the EU region (Ireland).

Circle invitations

To invite someone into your circle, bluon.day does not ask for and does not store their email address or any other contact details: it generates a link that the User shares themselves through whichever channel they prefer, and no communication goes out from our systems to the invitee. Until acceptance, however, Blu Oberon processes some minimal data about the invitee entered by the User: name or alias, relationship, role, status and expiry of the invitation, visible only to the User who entered them. Whoever opens the link sees only the name of the person who invited them, and nothing is shared in either direction until they accept. The link is valid for 7 days, usable once only and lapses on acceptance; on expiry, the token and the status of the invitation are deleted or rendered unusable. The Privacy notice for people in your care, family members and invited members also applies to invitees.

Push notifications — browser/device push service

Reminders are delivered through the push service of the User's browser (e.g. Google, Mozilla, Apple). By default the content is generic — for example «Reminder at 15:00» — and does not include the title of the to-do. The User can optionally turn on the «Show the title in notifications» option, after a warning about the risk that the title may appear on the device's lock screen; even with the option on, titles potentially referring to health remain excluded from extended notifications. The morning brief notification (Plus) contains only the numerical summary described above.

Transfers outside the EU

Some providers may process data in the United States: in particular Anthropic (AI features) and, for certain technical components, Vercel, Stripe and the push services. Depending on the provider, the transfers are based on the EU–US adequacy decision (Data Privacy Framework, for providers that are certified) or on the standard contractual clauses of the European Commission, supplemented where necessary by additional measures. We do not claim safeguards that we have not verified: an up-to-date list of the providers and of their respective safeguards can be requested at privacy@bluoberon.it.

Retention period

The push subscription is removed when it expires or when the User withdraws the permission. The User can delete the account and the linked data from the Application (Profile → «Delete my account»), following the instructions on the page Deleting your account, or by writing to the Controller: deletion erases the data and cancels the subscription. Only the data already lawfully received by other members of the circle (the to-dos assigned to them, in their account) and the data subject to tax and accounting obligations may survive, within the limits of the law.

Rights of data subjects

Under Arts. 15–22 GDPR, every data subject has the right to:

These rights belong not only to Users, but to anyone affected by the processing: people in the User's care, invited members, people mentioned in to-dos. For minors and for other people who are represented, the request may be submitted by whoever exercises parental responsibility or is otherwise entitled to do so. Requests can be sent to privacy@bluoberon.it; those who are not Users will find practical guidance in the Privacy notice for people in your care, family members and invited members. bluon.day's access to the Google account can be revoked directly at myaccount.google.com/permissions.

Complaint to the supervisory authority

Every data subject has the right to lodge a complaint with the competent supervisory authority in their country of residence or, as the Controller is established in Italy, with the Italian Garante per la protezione dei dati personali (garanteprivacy.it).

Changes to this privacy policy

The Controller may update this privacy policy at any time, publishing the updated version on this page with the relevant date. In the event of substantial changes, the User will be informed in the Application.

← Back to bluon.day