Privacy Policy

Effective August 5, 2026

In short: WhenWhen stores what a scheduling poll needs and deletes it on a schedule. No ads, no trackers, and we do not sell your personal data. Third-party code runs in your browser in two places: the anti-bot check when you create an event, and Paddle's checkout if you buy a paid subscription.

WhenWhen is operated by Red Ninja LLC, a Minnesota limited liability company ("Red Ninja", "we", "us"). This policy explains what data the service at whenwhen.io handles and why.

What we collect

Who can see what

A scheduling poll is a shared page. Anyone with an event's share link sees the event details, every participant's name, and their votes - that is what the link is for. If you would rather not be recognizable, you can vote under any name you like. An email address left with a vote is never exposed through any page or API response, and admin and edit links are never revealed to anyone who does not already hold them.

Email we send

The service sends four kinds of email, each to someone it already has a reason to write to:

A message to a participant carries two ways out. One stops email about that event, by deleting the address we were using for it. The other stops all email from WhenWhen, now and later; to keep not emailing you we remember that you asked, as the one-way fingerprint described under How long we keep data. A message to an organizer carries the all-email link. The unsubscribe button built into your email program stops everything. Unsubscribing costs you no access: the links you hold keep working either way.

If you have an account you can turn all email off and back on from your account page. If you have no account and want email again, write to us.

Cookies and your browser

There is no cookie banner because nothing we place in your browser tracks you. We set two cookies, both for sign-in: __Host-ww_session keeps you signed in for 30 days, and __Host-ww_auth_state protects the sign-in handshake and lasts only minutes. Neither is set unless you use sign-in.

Your browser's localStorage keeps the links to events you created and votes you cast, and - if you sign in - your email address, so the site can show who is signed in. Your dashboard reads those stored links to list the events you created. These stay on your device. The anti-bot widget on the create page is Cloudflare's code, and any state it keeps is Cloudflare's, used to tell humans from bots.

Usage statistics

We count usage with aggregate counters recorded on the server. No analytics script runs in your browser, and no identifier is recorded - no account id, token, event id, name, email address, or IP address - so a count can never be tied back to a person. Counters record things like the type of page viewed (never which event), the hostname of the referring site, campaign tags if the link carried them, a country code, and what kind of action happened on which tier. Our host keeps these counters for about three months.

What we do not do

Service providers

These companies process data to run the service, on our instructions:

Independent of us, each under its own privacy policy:

Where data goes

Our providers are in the United States, so using the service moves personal data there. Where the law where you live restricts such transfers, our providers offer recognized safeguards, set out in each provider's own privacy documentation.

How long we keep data

Deleting data

Organizers can delete an event at any time from its admin page, which removes the event, its participants, and their votes from the live database immediately. Deleting your account removes the account record, every session, and every API token immediately, and clears any reply address our database still holds with one of your support requests. The helpdesk keeps your support history filed under the address you gave for replies; ask us and we will delete it. Events you created are not deleted with the account - other people may be mid-vote - but they stop being linked to you and age out on their normal schedule. Deleting an event does not unsend email the service already sent about it.

Your rights

To access, correct, or delete personal data, email support@whenwhen.io. You do not need an account - we verify you through what you already hold: an edit link, an admin link, or the email address a record carries. If someone else entered your email address into the service, use the unsubscribe link in the message you received to stop all WhenWhen email: no more will be sent to that address, and what we keep to enforce that is the one-way fingerprint described under How long we keep data, never the address itself. Depending on where you live you may have statutory rights to access, correct, delete, or object, and to complain to your local data-protection authority.

Children

The service is not directed to children under 13, and we do not knowingly collect their personal information. If you believe a child has provided us personal information, contact us and we will delete it.

Changes to this policy

Updates are posted here with a new effective date. Changes work forward: we will not use data we already collected in a way this policy did not allow when we collected it, unless we ask you first.

Contact

Red Ninja LLC, Minnesota, USA · support@whenwhen.io