Legal

Privacy Policy

Last updated: July 28, 2026

Pivatt is operated by Mojave Assets LLC ("Pivatt," "we," "us"). Pivatt sends automatic SMS appointment reminders on behalf of small businesses by reading upcoming events from the business owner's Google Calendar.

732 S 6th St Ste N, Las Vegas, NV 89106 · dave@mojaveassets.com

This policy explains what we collect, how we use it, who we share it with, and how to delete it.

Who uses Pivatt

Pivatt has two kinds of people in it:

  • Business owners who sign up, connect their Google Calendar, and configure reminders.
  • Clients of those businesses, who receive reminder text messages. Clients do not have Pivatt accounts.

What we collect

  • Account information. When you sign in with Google, we receive your name, email address, and Google account ID. We also store your business name and reminder settings.
  • Google Calendar data. With your permission, we read upcoming events from your primary Google Calendar. Specifically, we read the event title, start time, and description field.
  • Client phone numbers. We read phone numbers that you place in the description field of your calendar events, so we know where to send each reminder.
  • Message records. We keep a record of which reminders were sent for which appointment, so the same client is not texted repeatedly.
  • Billing information. Payments are processed by Stripe. We do not receive or store your full card number.
  • Technical logs. Standard server logs including IP address and request time, retained for security and debugging.

Google user data

What we request

Pivatt requests exactly these Google OAuth scopes:

ScopeWhy
openidSign you in
emailIdentify your account
calendar.events.readonlyRead upcoming events so we can send reminders

What we do with it

We read upcoming events from your primary calendar and use them to send SMS reminders that you configure. The event title and start time populate the reminder message. The description field is read to find the client phone number the reminder should be sent to.

An example reminder: "Reminder: Dental cleaning, Tuesday at 2:00 PM."

What we cannot do

calendar.events.readonly is a read-only scope. Pivatt cannot create, modify, or delete events on your calendar. We do not request write access of any kind, and we do not access calendars other than your primary calendar.

Limited Use disclosure

Pivatt's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

We do not:

  • Use Google user data for advertising, ad targeting, or ad personalization
  • Sell Google user data
  • Transfer Google user data to data brokers, information resellers, or any party that aggregates data
  • Use Google user data to train generalized artificial intelligence or machine learning models
  • Allow humans to read your Google user data, except where you have given explicit consent for a specific issue, where required by law, or where necessary for security purposes such as investigating abuse

Information about your clients

When you place a client's phone number in a calendar event description, that number is personal information about someone who is not a Pivatt user.

We use client phone numbers solely to deliver the reminder message you configured. We do not market to your clients, add them to any list, sell their numbers, or use them for any purpose other than the reminder you requested.

You are responsible for having the appropriate consent from your clients to send them appointment reminders by text message.

Who we share information with

We do not sell your information. We do not share it for anyone else's marketing. We use the following service providers, each of which receives only what it needs to do its job:

ProviderWhat it receivesWhy
TwilioClient phone number and message textTo deliver SMS messages
StripeBilling contact and payment detailsTo process subscription payments
CloudflareApplication hosting and data storageTo run the Pivatt service

We may also disclose information where required by law, or to protect the rights, safety, or property of Pivatt, our users, or the public.

We do not share mobile opt-in data, SMS consent, or phone numbers with third parties or affiliates for their own marketing purposes.

How long we keep things

DataRetention
Google access and refresh tokensUntil you disconnect, or until the grant is revoked
Calendar event dataRead on demand for scheduling; not stored beyond what is needed to schedule pending reminders
Reminder delivery recordsUntil shortly after the appointment has passed
Account informationFor the life of your account
After account deletionDeleted within 30 days, except where retention is legally required

Your controls

  • Disconnect Google Calendar. Go to Settings and disconnect. We immediately stop reading your calendar and delete the stored access and refresh tokens.
  • Revoke access at Google. You can revoke Pivatt's access at any time from your Google Account permissions page at myaccount.google.com/permissions. We detect the revocation and clear the stored tokens.
  • Delete your account. Contact us at the address below and we will delete your account and associated data within 30 days.
  • Stop text messages. Any recipient can reply STOP to a Pivatt message to opt out of further texts.

Security

Data is transmitted over HTTPS and encrypted at rest. Access to production systems is limited to personnel who need it. No system is perfectly secure, and we cannot guarantee absolute security.

Children

Pivatt is a business tool and is not directed to children under 13. We do not knowingly collect information from children under 13.

Changes to this policy

If we make material changes to how we handle Google user data, we will update this page and notify account holders by email before the change takes effect.

Contact

Mojave Assets LLC

Email: dave@mojaveassets.com

For questions about this policy or to request deletion of your data, email us at the address above.