← Back to Pree

Privacy Policy

Last updated: 6 May 2026

This policy explains what personal data Pree collects, why we collect it, who we share it with, and the rights you have over it. We've tried to write it in plain English. If anything is unclear, email info@preeconnect.com and we'll explain it.

1. Who we are

Pree is operated by Pree Connect Ltd, a company registered in England and Wales (company number 16528271).

Registered address: Office 73, 182-184 High Street North, Area 1/1, East Ham, London E6 2JA.

For any questions about your data or this policy, contact info@preeconnect.com.

We are registered with the UK Information Commissioner's Office (ICO) as a data controller. You can verify our registration at ico.org.uk.

2. What Pree does

Pree is a behavioural intelligence tool for individuals. Pree helps you prepare for, navigate, and reflect on the meetings in your life — moments recorded manually or synced from your calendar — and shows you how those relationships evolve over time. The product includes a web app, a Microsoft Outlook add-in, and optional integrations with calendar and email accounts.

3. What personal data we collect

Information you give us

  • Account details: your name, email address, and password (passwords are hashed by Firebase Authentication; we never see them in readable form).
  • Profile information: job title, company, bio, professional links (e.g., LinkedIn URL), and any avatar or header image you upload.
  • Phone number, if you choose to add one.
  • Content you create inside Pree — chat messages, voice notes, reflections, prep notes, and feedback. We store these so the people you send them to can receive them, so you can revisit them later, and so the features you've opted into (such as briefings or PreeSense suggestions) can use them. Pree staff don't read your messages or listen to your voice notes as part of normal operations — we only need to access them in narrow situations, such as investigating abuse you've reported, fixing a bug at your request, or responding to a lawful order from authorities.
  • Your preferences and settings: notification choices, privacy settings, and any consents you've given (e.g., to receive emails or use optional AI features).

Information from accounts you connect

If you connect a Microsoft 365 or Google account in the Pree web app, you give us permission to read:

  • Your calendar: upcoming and past meeting details — titles, descriptions, times, locations, and attendees. We use this to bring meetings into Pree and generate briefings for them.
  • Email metadata only (sender, recipient, subject line, and timestamps — never the body or attachments): we use this to spot people you haven't been in touch with for a while, so we can surface gentle reconnect nudges. If you'd rather we didn't, you can disconnect the integration at any time, or skip the email connection entirely.
  • OAuth refresh tokens: stored in encrypted form so we can keep the integration in sync. Deleted when you disconnect.

The Pree Outlook add-in itself reads only the calendar event you have open inside Outlook — it does not access your emails or any other mailbox content.

Information generated by Pree

  • Briefings for upcoming meetings and events: we generate these from your connected calendar (if you've connected one) or from moments you record manually inside Pree, combined with your past interactions, to produce a written briefing and (optionally) an audio version.
  • PreeSense outputs: AI-generated suggestions, summaries, and conversational responses that you ask for inside the app.

Technical data

  • Session cookies (see "Cookies" below).
  • Server logs containing IP address, browser type, and the actions you took, kept for security and debugging.
  • Push-notification subscription details (if you opt in to browser notifications).

4. Why we use your data (lawful basis)

Under UK GDPR, we need a lawful basis to process your personal data. Ours are:

  • Performance of a contract — to give you the service you signed up for: account access, briefings, calendar sync, and messaging.
  • Legitimate interests — for security, fraud prevention, debugging, and improving Pree based on aggregate usage. You can object to processing based on legitimate interests.
  • Consent — for things like push notifications, marketing emails (if we ever send them), and any optional AI features. You can withdraw consent at any time.
  • Legal obligation — if we're legally required to retain or share data (for example, in response to a court order).

5. Who we share your data with

We don't sell your data. We share it only with the service providers we need to run Pree. Each one processes your data on our instructions, under their own data-protection terms.

ServiceWhat it doesWhere
Google Firebase Stores your account, profile, messages, briefings, and uploaded files. Handles sign-in. USA
Replit Hosts the Pree app and serves it over the internet. USA
OpenAI Generates briefing text (GPT‑4o‑mini) and transcribes voice notes (Whisper). Calendar and meeting data are sent to OpenAI to produce briefings. Voice files are sent to be transcribed into text. OpenAI does not use data sent through their API to train their models. USA
Microsoft If you connect your Microsoft 365 account, calendar and email-metadata requests go through Microsoft Graph. Global (Microsoft data centres)
Google (Workspace APIs) If you connect a Google account, calendar and Gmail-metadata requests go through Google APIs. USA
Stripe Processes payments. Used only for paid features. Stripe handles card details directly — we never see your full card number. USA / EU
GoDaddy (Workspace Email) Sends transactional emails such as welcome messages and sign-in prompts. We may change email providers from time to time and will update this list when we do. USA

PreeSense, our AI engine for conversation analysis and audio briefings, runs on Pree's own infrastructure (the same Replit deployment as the rest of the app). It's not a separate sub-processor.

We may also disclose your data if we're legally required to (e.g., in response to a court order or to protect users from harm), or if we sell or transfer the business — in which case we'll tell you in advance.

6. International data transfers

Most of the providers above are based in the United States. When personal data is transferred outside the UK or EU, we rely on the safeguards those providers offer — typically the UK Addendum to the EU Standard Contractual Clauses (SCCs), or the equivalent under each provider's standard data-processing terms (Google Cloud, OpenAI, Microsoft, Stripe, Replit, SendGrid).

If you'd like to see the specific safeguard that applies to a particular provider, email info@preeconnect.com.

7. How long we keep your data

  • Account and profile: for as long as you have an account. If you delete your account, your profile is removed immediately (see "Account deletion" below).
  • Messages and briefings: kept while your account is active so you can revisit them.
  • OAuth tokens: kept while the integration is connected; deleted when you disconnect.
  • Server logs: typically kept for up to 90 days for security and debugging.
  • Stripe / payment records: kept for the period required by UK tax law (typically six years), separate from your Pree account data.

Account deletion

Honest note: When you delete your account, we remove your profile, account record, and direct settings immediately. However, content you authored in shared spaces (for example, messages you sent in a chat with another person, or interactions tied to events you attended) may remain in those shared records, attributed to your former user ID. We're working on a stronger cascade-delete process and will update this policy when it's live. If you want everything you authored fully removed today, email info@preeconnect.com and we'll do it manually.

8. Your rights

Under UK GDPR you have the right to:

  • Access the personal data we hold about you.
  • Ask us to correct it if it's wrong.
  • Ask us to delete it ("right to be forgotten").
  • Restrict or object to how we process it.
  • Receive a copy of your data in a portable format (we support exporting your profile, connections, messages, and event history as a JSON file from Settings → Data).
  • Withdraw consent at any time, where consent is the basis for processing.
  • Complain to the UK ICO at ico.org.uk/make-a-complaint.

To exercise any of these rights, email info@preeconnect.com. We'll respond within one calendar month.

9. Cookies and similar technologies

Pree uses a small number of cookies, all of which are essential to the service:

  • Session cookie (pree.sid): keeps you signed in. Lasts up to 30 days; refreshed on each visit. Marked Secure and SameSite=None so the Outlook add-in can authenticate.
  • CSRF token: protects against cross-site request forgery on actions you take.

We do not use third-party advertising cookies, and we do not run analytics tools such as Google Analytics, Mixpanel, or PostHog. The only data stored in your browser's local storage relates to the offline functionality of the Pree progressive web app — no tokens or personal data are stored there.

10. Voice recordings

If you record a voice note inside Pree, the audio is sent to OpenAI Whisper to be turned into a text transcript so the recipient (and you) can read it. We store the audio and the transcript so they remain available in your conversation history. We do not analyse voice recordings for biometric identification, voice fingerprinting, speaker recognition, or any similar purpose.

Voice notes and their transcripts are deleted along with the rest of your account content when you close your account, subject to the cascade-delete note in section 7.

11. Automated decision-making

Pree's AI features generate briefings, summaries, and suggestions to support your decisions. We do not use automated decision-making that produces legal or similarly significant effects on you (UK GDPR Article 22).

12. Security

We rely on the security controls of our infrastructure providers (Google Firebase, Replit, Microsoft, Google, Stripe), all of which use encryption in transit and at rest. We add an additional layer by encrypting OAuth refresh tokens with an application-level key before storing them. No system is perfectly secure, but we take security seriously and will tell you promptly if a breach affects your data.

13. Children

Pree is not intended for people under 16. If you're under 16, please don't sign up. If we discover an account belongs to someone under 16, we'll close it.

14. Changes to this policy

We'll update this policy as Pree evolves. When we make material changes, we'll notify you in the app or by email before they take effect. The "Last updated" date at the top of this page will always reflect the current version.

15. Contact

For any privacy question, request, or complaint:

  • Email: info@preeconnect.com
  • Post: Pree Connect Ltd, Office 73, 182-184 High Street North, Area 1/1, East Ham, London E6 2JA

If you're not satisfied with our response, you can complain to the UK ICO at ico.org.uk/make-a-complaint or call 0303 123 1113.

© 2026 Pree Connect Ltd. Company number 16528271. Registered in England and Wales.