Worldlet

PRIVACY POLICY

Your data, in your hands.

Effective September 19, 2026

Worldlet brings your apps and information into a personal world on your Mac. This policy explains what we access, why we use it, and the choices you have.

Who we are

Worldlet is provided by Clockless LLC. This policy covers the Worldlet Mac app, worldlet.ai, and our supporting services. For privacy questions or deletion assistance, email kelvin@clockless.ai.

Information you choose to connect

Worldlet accesses a connected account only after you authorize it. Depending on the Applet, this can include account identifiers, email messages and their metadata, calendar events, document metadata or content, and subscriptions or playlists. Access varies by the connection and permissions you grant.

Google connections use read-only permissions: Gmail reads messages and threads to surface relevant tasks and updates; Calendar reads calendars and events to show upcoming commitments; Drive discovers files and reads metadata to show recent documents and links; YouTube reads account, subscription and playlist information to support your viewing experience. The current Drive connection requests read access to files but its automatic collection retrieves file metadata, not file bodies. These connections do not send email, modify your calendar or edit Drive files.

Other sources, including Notion, can provide page content through their authorized connector. Website logins inside Applets are separate from data connections and follow the website's own policies.

How your information is used

We use connected content to display your Applets, answer your questions, find related context, and organize tasks, events and updates. Automated source checks may run while Worldlet is open. They are bounded checks, not a complete backup of your accounts.

Your world, saved items, imported content and conversation history are stored on your Mac. The included Hermes agent may also store tool results and memory locally, including content retrieved from connected accounts. Connection credentials are retained locally so authorized services can remain connected.

Models and other service providers

When available, Apple's on-device Foundation Models can support local conversation. When you configure an external model through Hermes, your messages and relevant conversation context are sent to that provider. Connecting a source and allowing private-content processing are separate choices. After you allow that processing, relevant source content may be included in model requests to answer questions or extract items. You can decline this processing. Your provider's retention policies and account settings apply.

Google account reads by the desktop connection go directly to Google's APIs. Content may subsequently reach your chosen model provider when you authorize private-content processing. Local storage does not mean all processing stays on your Mac.

Voice prefers on-device recognition when available. Cloud transcription fallback sends audio through Worldlet's Cloudflare service, and optional live voice uses an online voice service. These features process audio to provide the requested transcription or conversation. Requested weather uses approximate coordinates sent to a weather service. Websites, media streams and embedded services receive the requests needed to load their content.

Cloudflare hosts our website and supporting services and may process IP addresses, request metadata and operational logs to deliver and secure them. Third-party services may process information in countries other than your own.

Google data and Limited Use

Worldlet's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including its Limited Use requirements.

Google data is used for the user-facing features described above. It is not sold, used for advertising, or used to train generalized AI or machine-learning models. Transfers are limited to providing these features with your consent, security, legal obligations, or a business transfer with your prior consent. Our personnel do not read your Google content except with your specific agreement, when necessary for security or legal obligations, or in the limited aggregated circumstances permitted by Google's policy.

Retention, disconnection and deletion

Local information remains until you remove it. Disconnecting an account stops Worldlet's connection but does not erase previously saved tasks, imported material, conversation history or agent memory. Google Applets that share one grant may disconnect together. You can also revoke Worldlet in your Google account's third-party connections.

To delete all local Worldlet data or selected history, contact us for current instructions before removing files. Uninstalling the app alone may leave application data on your Mac. Deleting local data does not delete originals in Google or another source, or copies already held by a model provider. Requests concerning those copies should also be directed to that provider.

If you email us, we retain the correspondence while needed to resolve the request and meet legal or security obligations. You can request access, correction or deletion of information we hold by contacting us. We may need to verify that a request concerns your information.

Security and diagnostics

Worldlet uses HTTPS for supported online services and stores its local library and agent configuration under your macOS user account. Protect your Mac and backups; local storage is not a separate promise of application-level encryption. No storage or transmission method is completely secure.

Export diagnostics creates a local file with version information, connection states and recent error codes. It does not automatically upload the file. Review it before sharing. Do not send us API keys, authorization tokens or private source content unless specifically needed and agreed for support.

Browsing memory

The Mac app locally remembers eligible pages visited inside Worldlet’s embedded browser, including URLs, titles, visit times and short visible-text excerpts. It does not import Safari or Chrome history. Some sensitive routes and password pages are excluded, but snippets may contain personal information. Fox searches this history only under your private-context processing permission; returned excerpts may then be sent to your configured model provider. Recording itself makes no model request. Clearing all local Worldlet data also removes this history.

Children and policy changes

Worldlet is not directed to children under 13. If you believe a child has provided us personal information, contact us. We will update the date on this page when this policy changes. A materially different use of connected Google data will require updated disclosure and consent before that new use.

Back to Worldlet →