MicroBack to Micro

Your data, explained plainly

Privacy policy

Micro stores the information you choose to add so your tasks, habits, health metrics, and shared work remain available across your devices. It does not sell your information, show ads, or use advertising trackers.

Effective August 7, 2026
No ads or tracking

Micro has no advertising SDKs and does not track you across other companies’ apps or websites.

Your workspace is private

Your work is scoped to your account unless you intentionally share selected resources.

You stay in control

You can edit or remove individual records in Micro and request deletion of your account data.

1. What this policy covers

This policy covers the Micro web service at micro2do.com and the Micro iOS app. It applies to signed-in and Guest workspaces. It does not cover websites or services you open from an external link.

2. Information Micro processes

Account information

When you sign in with Google or Apple, Amazon Cognito provides Micro with a provider-linked account identifier, the email address shared by that provider, and a name when the provider makes one available. Micro uses these values to open the correct workspace and identify people in collaboration features. Micro does not receive your Google or Apple password.

Workspace content

Micro stores content you create or import, including:

  • tasks, projects, subtasks, habits, schedules, reminders, statuses, flags, labels, contexts, perspectives, and ordering;
  • due dates, deferrals, completion history, streaks, habit notes, general notes, comments, and comment threads;
  • attachments you upload and their file names, formats, sizes, and related items;
  • personal metrics such as weight, nutrition, steps, exercise, sleep, heart measurements, and the notes you add to them; and
  • sharing invitations, collaborator roles, and changes made inside shared resources.

Device and preference information

Micro creates a random installation identifier for device-aware context rules. This identifier is not derived from a hardware fingerprint. Micro can also store the device name you choose, its broad type, when it was last seen, your default view, visual preferences, and reminder setting. Some display preferences and the signed-in session are also stored in your browser or app storage.

Operational information

Like most online services, Micro and its hosting providers necessarily process network information such as IP address, request time, and browser or app details to deliver requests, protect the service, and diagnose failures. Micro does not use this information for advertising.

3. Location and maps

Location features are optional. When you choose device location, your browser or iPhone asks for permission and provides a current coordinate. Micro uses it to highlight contexts whose saved boundaries are nearby. Micro does not continuously track your location in the background.

If you save a context boundary, its address or label, latitude, longitude, and radius are stored with your workspace. Collaborators who can access that context can see the saved location information.

The optional map picker uses Google Maps. Searches and map interactions are sent to Google under Google’s terms and privacy policy. If you choose approximate IP location, your browser contacts ipwho.is directly; that provider receives your public IP address and returns an approximate city and coordinate. VPNs and corporate networks can make this inaccurate.

4. Imports and health information

You can choose exports from OmniFocus, Habitify, MyFitnessPal, or Apple Health. Micro parses the selected file in your browser or app, shows a preview, and saves the records or daily summaries you approve. Micro does not connect directly to your Apple Health database, and it does not keep the original import file as an attachment merely because you imported it.

Health and fitness information is used only to provide the metrics, history, and charts you request. Micro does not use it for advertising, credit, employment, or insurance decisions.

5. Sharing and collaboration

Your workspace is private by default. When you share a task, project, context, label, or an intersection of resources, Micro stores the invited email address, role, invitation status, and resulting membership. People you authorize can see or change content according to the role you assign.

Notes, comments, attachments, completion activity, and saved location boundaries inside a shared resource may be visible to its collaborators. Review a resource and its role before inviting someone. You can revoke a pending invitation or collaborator access from the sharing controls.

6. How Micro uses information

  • Provide, synchronize, and personalize your workspace.
  • Calculate schedules, streaks, statistics, and context activation.
  • Deliver reminders you enable on a supported device.
  • Import data and store attachments at your direction.
  • Operate collaboration, resolve invitations, and enforce permissions.
  • Protect accounts, prevent abuse, troubleshoot failures, and maintain backups.

Micro does not sell personal information, build advertising profiles, or use your activity to track you across unrelated services.

7. Service providers

Micro relies on a small number of providers to operate:

  • Amazon Web Services hosts Micro, stores private attachments and recovery backups, and provides Cognito authentication.
  • Google provides optional account authentication and the optional Maps and geocoding experience.
  • ipwho.is provides approximate location only when you request the IP-location option.
  • Apple provides optional account authentication, distributes the iOS app, and provides platform-level permissions.

These providers process information to perform services for Micro or directly at your request. Their own policies also apply to interactions that occur on their authentication, map, or platform surfaces.

8. Retention and deletion

Active workspace data is retained while your account or Guest workspace remains in use. Removing an item removes it from the active workspace. Uploaded attachments are stored in a private, encrypted, versioned object store and are not publicly listed.

Micro keeps daily database recovery copies and encrypted volume snapshots on an approximately seven-day rolling schedule. Deleted information can remain in those protected recovery copies until they expire. Historical attachment versions are also removed on an approximately seven-day lifecycle after the active attachment is deleted or replaced.

After account deletion, Micro retains a one-way hash of the former internal account identifier, deletion status, completion time, and aggregate deletion counts. This minimal security record cannot be used to sign in or recover the deleted workspace; it is kept to prevent an old session from recreating the account and to make interrupted deletion cleanup safely retryable.

Guest workspaces use a random identifier and are not connected to an email address. You can permanently delete a Guest workspace from Settings; merely closing the browser or allowing the Guest session to expire does not request deletion.

Account deletion is available in Settings. The deletion control removes active profile data, attachments, and authored shared contributions, deletes the associated Cognito identity for signed-in accounts, and signs the browser or app out. For help, contact support@micro2do.com, but never send your password, access code, health export, or attachment files by email.

If you used Sign in with Apple, Cognito does not expose Apple’s authorization token for Micro to revoke directly. Before deleting your Micro account, open Settings → [your name] → Sign in with Apple → Micro → Delete on your iPhone. See Apple’s official instructions.

9. Security

Micro uses HTTPS, signed HttpOnly session cookies, server-side access controls, private object storage, encryption at rest for production storage, and one-time native authentication handoffs. No online system can promise absolute security, so use a unique, protected sign-in account and report suspected unauthorized access promptly.

10. Children

Micro is a general productivity service and is not directed to children under 13. Do not create an account or provide personal information if you are not old enough to consent to this processing in your location.

11. Changes and contact

This policy may change as Micro adds features or providers. The effective date above will be updated when material changes are published.

For privacy questions, access requests, corrections, or deletion requests, email support@micro2do.com. You can also review practical help on the Micro support page.