The short version
- Your calendar never leaves your phone. NextUp reads events locally to draw the widget. We have no servers, and nothing is uploaded to us.
- Google Tasks is optional. If you connect a Google account (NextUp Pro), your phone talks directly to Google to show your tasks and mark them done. We never receive your tasks or your sign-in tokens.
- No tracking. No ads, no analytics, no crash-reporting SDKs, no advertising ID, no selling or sharing of data.
- You're in control. Disconnect Google accounts, revoke permissions, or uninstall at any time. Uninstalling removes everything NextUp stores locally on your phone.
1. Who we are and what this covers
This policy explains how the NextUp Android app (package
com.nextup.calendarwidget), its home-screen widgets, and the website
nextup-widget.com handle information. NextUp is developed and published by
Clockworks ("we", "us"), which is responsible for the app and, where
data protection law uses the term, is the data controller. For privacy questions, see
Contact.
NextUp is designed so that we don't collect personal data at all: the app has no backend, no user accounts and no analytics. Where this policy describes data being "used", that processing happens on your device, or between your device and the services named in section 5.
2. Data NextUp uses
2.1 Calendar events (all users)
With your permission, NextUp reads the calendars synced to your phone through Android's calendar provider, for example from Google, Microsoft Exchange/Outlook or Samsung accounts. It reads:
- calendar names, colours and identifiers, so you can choose which calendars each widget shows;
- event titles, start and end times, all-day status, location, colour, event status (for example cancelled), your own response (for example declined) and the number of attendees.
Purpose: to show your upcoming agenda in the app and on your widgets, highlight what's happening now and next, hide declined or cancelled events if you ask it to, and open an event in your calendar app when you tap it.
Where it goes: nowhere. Calendar data is processed on your device only. A short-lived cache of the agenda is kept in app-private storage so widgets can redraw quickly; it is excluded from backups and is rebuilt from your calendar whenever it refreshes. NextUp has read-only access: it cannot create, edit or delete events (the write permission is explicitly blocked in the app).
2.2 Google account and Google Tasks (optional, NextUp Pro)
If you choose Connect Tasks, NextUp shows an explanation and then opens Google's own sign-in and consent screen. We never see your Google password. You grant these permissions (OAuth scopes):
| Scope | What NextUp does with it |
|---|---|
openid, email, profile |
Identify which Google account is connected so it can be labelled in settings, kept separate from other connected accounts, and disconnected. Only the email address is kept; your name and profile picture are not stored. |
https://www.googleapis.com/auth/tasks |
Read your task lists and tasks (list names, and each task's title, due date, completion status and Google Tasks link) to show them on your widgets, and update a task's completion status when you tick or un-tick it on a widget. NextUp does not create, rename or delete tasks or lists. |
Where it goes: requests go directly from your phone to Google's servers
(accounts.google.com, oauth2.googleapis.com,
tasks.googleapis.com). Nothing is routed through or copied to us. Task
data is cached on your device the same way as calendar data (app-private, excluded
from backups).
Credentials: the refresh token Google issues is stored in encrypted storage protected by the Android Keystore, which cannot be extracted from the device and is excluded from backups. When you disconnect an account, NextUp asks Google to revoke the token and deletes it, along with that account's cached tasks.
2.3 Purchases (NextUp Pro)
NextUp Pro is a one-time in-app purchase processed entirely by Google Play. We never receive your payment details, name or billing address. The app asks Google Play whether Pro is owned, and stores a record of the entitlement and the purchase token on your device (in Keystore-encrypted storage) so Pro keeps working offline. That record is deliberately excluded from backups; after a reinstall, Pro is restored by asking Google Play again.
2.4 Settings and widget configuration
Your preferences (language, app theme, and each widget's calendars, task lists, layout and colours) are stored on your device. They can include calendar and task list identifiers and the email addresses of connected Google accounts (with the colour you picked for each). They are never sent to us; see Backups for how Android may back them up to your own Google account.
2.5 App updates
Besides full releases through Google Play, small fixes can be delivered as over-the-air
updates using Expo Application Services (EAS Update), run by 650
Industries, Inc. ("Expo"). While you have NextUp open, and at most once an hour, the
app asks Expo's update server (u.expo.dev) whether a newer version exists,
and downloads it to apply the next time the app starts. It never checks when only a
widget is refreshing in the background.
What is sent: like any internet request, your IP address, plus the platform (Android), the app's version and release channel, the identifier of the update currently installed, and a random installation ID generated on your device. That ID is not linked to your name, email, Google account or anything in your calendar; it lets Expo roll out updates gradually and show us aggregate counts of how many installs run each update. No calendar, task, account or settings data is ever included.
3. Android permissions
These are the permissions NextUp declares, and why. Only the calendar permission asks you directly.
| Permission | Why |
|---|---|
Calendar (read)READ_CALENDAR | Read events and calendars to build your agenda (section 2.1). Requested at runtime; you can deny or revoke it at any time. |
Internet & network stateINTERNET, ACCESS_NETWORK_STATE | Talk to Google for sign-in, Google Tasks and Google Play purchases, check Expo for app updates (section 2.5), and avoid retrying while offline. Calendar data is never sent over the network by NextUp. |
Alarms & remindersSCHEDULE_EXACT_ALARM | Refresh a widget exactly when an event starts or ends ("Smart updates"). No reminders or notifications are shown. You can turn this off in Android settings; widgets then refresh on a regular interval. |
Run at startupRECEIVE_BOOT_COMPLETED | Re-schedule widget refreshes after your phone restarts. |
Google Play billingcom.android.vending.BILLING | Buy and restore NextUp Pro (section 2.3). |
Background workWAKE_LOCK, FOREGROUND_SERVICE | Added by Android system libraries so a widget refresh can finish reliably in the background. |
| App visibility package queries | Check whether a calendar app or Google Tasks is installed, so tapping an item on the widget can open it there. NextUp does not collect or transmit your list of installed apps. |
NextUp explicitly blocks permissions it has no use for, even where a library it is built with would otherwise add them: calendar write access, "display over other apps", shared/external storage, vibration, biometrics/fingerprint and install-referrer access.
4. Google user data and the Limited Use requirements
NextUp's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Specifically, data obtained through Google APIs (your email address and Google Tasks):
- is used only to provide the user-facing features described in section 2.2: showing tasks on your widgets and marking them complete;
- is not transferred to anyone, except to Google itself as needed to provide those features, or if required by applicable law;
- is never used for advertising, including personalised, retargeted or interest-based ads;
- is never sold, and never used to determine creditworthiness or for lending purposes;
- is never read by a human, and never used to train or improve artificial-intelligence or machine-learning models.
Because the data never reaches us, nobody at NextUp has the technical ability to read it.
5. Third parties
NextUp does not include advertising or analytics SDKs. The only third parties involved are:
- Google (Google Play, Google Play Billing, Google sign-in and the Google Tasks API): to install and update the app, process the Pro purchase, and provide Google Tasks if you connect it. Google's handling of your data is governed by the Google Privacy Policy.
- Android and Google Play system services: if you have enabled device backup or chosen to share usage and diagnostics with Google, Android may back up app settings (section 7) or send Google crash and performance reports for all apps. These are controlled in your device settings, not by NextUp; any aggregate crash statistics we see in the Google Play Console do not identify you.
- Expo (650 Industries, Inc.): delivers over-the-air app updates (section 2.5). Expo's handling of that request data is governed by the Expo Privacy Policy.
- Your calendar provider: the accounts you have synced to your phone (for example Google or Microsoft) supply the events. NextUp reads them locally and does not contact those services.
- Vercel: hosts this website (section 12).
We do not sell, rent, trade or share personal information with anyone.
6. Storage, security and retention
- All app data lives in NextUp's private storage on your device, which other apps cannot read.
- Google sign-in tokens and the Pro entitlement are encrypted with keys held in the Android Keystore.
- All network traffic, to Google and to Expo, uses HTTPS.
- Agenda caches are overwritten on every refresh and removed when you remove a widget or disconnect an account.
- Everything NextUp stores is kept only until you delete it: disconnecting an account, clearing the app's storage in Android settings, or uninstalling the app removes it from your device.
No method of storage is perfectly secure, but because we hold no copy of your data, there is no NextUp server that could be breached.
7. Backups
If Android backup is turned on for your device, Android may back up NextUp's settings and widget configuration (section 2.4) to your own Google account, end-to-end encrypted by Android where your device supports it, so your widgets come back after you reinstall or move to a new phone. NextUp limits that backup deliberately: calendar events, tasks, agenda caches, Google tokens and the Pro entitlement are excluded. Backups are managed by Google and your device settings; we cannot access them.
8. What we never do
- Upload your calendar events or tasks to any server of ours (we don't have one).
- Show ads or use advertising identifiers.
- Use analytics, fingerprinting, or crash-reporting SDKs.
- Access your location, contacts, camera, microphone, photos, files or SMS.
- Sell or share personal data, or use it for profiling.
- Modify your calendar.
9. Your choices and rights
Controls you have at any time
- Calendar access: Android Settings → Apps → NextUp → Permissions → Calendar.
- Choose what's shown: pick calendars and task lists per widget in NextUp.
- Google accounts: disconnect in NextUp's settings, or revoke access from your Google Account at myaccount.google.com/connections.
- Exact alarms: Android Settings → Apps → NextUp → Alarms & reminders.
- Delete everything: Android Settings → Apps → NextUp → Storage → Clear storage, or uninstall the app. To remove a cloud backup, manage backups in your Google account.
Legal rights
Depending on where you live, for example under the EU/UK General Data Protection Regulation (GDPR) or California privacy law (CCPA/CPRA), you may have the right to access, correct, delete, restrict or port your personal data, to object to processing, to withdraw consent, and to lodge a complaint with your data protection authority.
Because NextUp does not collect personal data onto our systems, we generally hold no data about you to access or delete: the controls above let you exercise these rights directly on your device. If you have a question or a request, contact us and we will respond within 30 days. We do not sell or share personal information as those terms are defined under California law, and we will never discriminate against you for exercising your rights.
10. Legal bases (EEA and UK)
To the extent the GDPR applies to the processing performed by the app on your device:
- Contract (Art. 6(1)(b)): reading your calendar and tasks to provide the widget you installed, and processing your Pro purchase;
- Consent (Art. 6(1)(a)): granting the calendar permission and connecting a Google account, which you can withdraw at any time as described in section 9;
- Legitimate interests (Art. 6(1)(f)): keeping the website secure and available (section 12), and delivering bug fixes through app updates (section 2.5).
Where data is processed by Google or Expo, including outside your country (for example in the United States), that is governed by their terms and their international data transfer safeguards.
11. Children
NextUp is a general productivity app and is not directed to children under 13 (or the minimum age of digital consent in your country). We do not knowingly collect personal data from children. If you believe a child has provided us with information, contact us and we will delete it.
12. This website
nextup-widget.com is a static website hosted by Vercel Inc. It uses no
cookies, no analytics and no third-party trackers, and loads no external fonts or
scripts. Like any web host, Vercel automatically processes technical request data, such
as your IP address, browser user agent and the page requested, to deliver the site and
protect it from abuse, and keeps these logs for a limited period. See the
Vercel Privacy Policy.
If you email us, see Contact for how we handle your message.
13. Changes and version history
If NextUp's handling of data changes (for example, a new feature that uses new data or permissions), we will update this policy before the change ships, increase its version number, and summarise what changed. Where a change is material, we will also tell you in the app or on Google Play before it takes effect. Every version is published at a permanent address and kept unchanged, so you can always compare versions on the version history page.
The current policy always lives at nextup-widget.com/privacy. This is version 1.0, permanently available at nextup-widget.com/privacy/v1.
14. Contact and bug reports
Questions, requests or concerns about privacy: privacy@nextup-widget.com.
Reporting a bug
NextUp never sends crash reports or diagnostics on its own. If something isn't working, email bugs@nextup-widget.com. It helps to include your phone model, Android version, NextUp version (Android Settings → Apps → NextUp) and what you were doing when it happened.
You decide what to share. Screenshots of the app or a widget can show your event and task titles, so crop or blur anything private before attaching them.
Whatever you email us, whether a bug report or any other message, is used only to reply to you and to investigate and fix the problem. It is never shared, sold or used for anything else, and we delete it once the issue is resolved and it is no longer needed. Our mailboxes are provided by Cloudflare Email Routing, which forwards messages to our inbox.