Textxt policies
Privacy Policy.
Last updated: 2026-09-24
Overview
Textxt is a messaging app. This policy explains what information we collect, how we use it, and the choices you have.
By using Textxt, you agree to this Privacy Policy.
Information we collect
- Account information such as email, phone number, display name, and avatar.
- Message content, attachments, stickers, tags, and topics that you choose to send or store.
- TXT credit balances, transfers, tips, paid group subscriptions, task bounties, and related audit records.
- TXT top-up details such as the order code, requested amount, status, timestamps, payment-provider transaction and reference identifiers, bank brand, and hashed or limited account identifiers used for reconciliation and fraud prevention.
- For PayPal top-ups, PayPal processes the payment. Textxt receives the order, capture, amount, status, refund, and dispute references needed to issue or reverse TXT. Textxt does not receive or store your PayPal password or full payment-card number.
- For Textxt Team purchases through Paddle, Textxt receives the customer, subscription, transaction, seat quantity, billing period, status, refund, and dispute references needed to manage workspace access and billing support. Textxt does not receive or store your full payment-card number.
- Device and usage data such as device model, OS version, app version, IP address, and diagnostic logs.
- Push notification tokens for delivering message alerts.
- When you submit an AI Assistant request from the Textxt Chrome Sidebar while a Gmail thread or WhatsApp Web conversation is open, visible conversation text and source metadata from that active conversation.
- When you connect Gmail for an Agent, the Google account address, authorized scopes, mailbox history position, and incoming email content needed by your published workflows. Textxt stores an encrypted OAuth refresh token; it does not receive your Google password.
How we use information
- Provide, operate, and improve the Textxt service.
- Sync messages and content across your devices.
- Deliver notifications and in-app updates.
- Maintain security and prevent abuse.
- Operate TXT credit features, reconcile balances, resolve disputes, and investigate fraud or misuse.
- Match supported bank transfers to TXT top-up orders and place unusual or mismatched payments into manual review.
- Confirm PayPal captures, process verified refund and dispute events, prevent duplicate TXT issuance, and reverse TXT when a payment is refunded or reversed.
- Activate and administer Textxt Team subscriptions after verified Paddle payment events, reconcile seat access, and respond to billing or refund issues.
- Provide the active Gmail thread or WhatsApp Web conversation as temporary context when you submit an AI Assistant request from the Chrome Sidebar.
- Monitor the connected Gmail inbox for new messages, run only the Agent workflows you publish, prepare an email reply for your approval, and send it through Gmail only after you approve the run.
Connected apps and AI integrations
If you choose to connect Textxt to an external assistant or app, such as ChatGPT, Textxt may provide that app with the chat content and chat metadata needed to answer your request.
The current Textxt ChatGPT connector is read-only. It can search, list, and retrieve chats that your Textxt account is already allowed to read, and it does not send, edit, or delete messages.
You can revoke a connected app from the external app settings, and Textxt may also restrict or revoke connector access to protect account security.
The Textxt Chrome Sidebar reads an open Gmail thread or WhatsApp Web conversation only when you submit a related AI Assistant question or invoke a Read action from the Sidebar. It does not read when the panel opens, scan your mailbox or chat list in the background, read compose fields, or request browsing-history access.
The extracted conversation text is sent with that Assistant request to the AI provider configured for the selected bot. Textxt does not intentionally store the raw source text in Assistant history; it stores limited metadata about the attached context. The Assistant answer is stored normally and may reflect information from the shared conversation. The selected AI provider may process or retain request data under its own terms and configuration.
The optional Gmail Agent connection is separate from the Chrome Sidebar. After you authorize it, Textxt uses Gmail API push notifications to detect new inbox messages in the background. Matching email content may be stored temporarily in Agent events and runs and sent to the AI provider configured for your bot so it can decide whether to act and draft a reply.
Gmail Agent replies always require your explicit approval in Textxt before they are queued for Gmail. You can disconnect Gmail from Settings > Connected Apps to stop mailbox monitoring and revoke the stored connection.
How we share information
- With service providers such as Firebase/Google Cloud to host and deliver the service.
- With SePay and participating banking or payment infrastructure to create payment instructions, receive transaction notifications, and reconcile TXT top-ups.
- With PayPal when you choose PayPal Checkout, so PayPal can process the payment and send verified capture, refund, reversal, and dispute status to Textxt.
- With Paddle when you choose a Textxt Team checkout processed by Paddle, so Paddle can process the purchase and send subscription, payment, refund, and dispute status to Textxt.
- With other users when you participate in chats or share content.
- With external apps or assistants only when you intentionally connect your Textxt account and authorize the requested access.
- With the AI provider configured for the selected bot when you submit an Assistant request while a Gmail thread or WhatsApp Web conversation is open in the active tab.
- With Google Gmail APIs when you connect Gmail, renew mailbox monitoring, read messages selected by your published Agent workflows, or approve an Agent email reply for sending.
- If required by law or to protect the safety and integrity of the service.
Data storage and security
We store data in Firebase (Google Cloud). Data is encrypted in transit, and access is restricted by authentication and security rules.
Messages are not end-to-end encrypted. This means authorized personnel may access message content when necessary for technical support, abuse prevention, or legal compliance.
No system is completely secure, but we work to protect your information.
Retention and deletion
We retain data for as long as your account is active or as needed to provide the service.
You can delete messages and files within the app.
You can delete your account from Settings > Delete account inside the app.
Disconnecting Gmail deletes Textxt's stored connector and encrypted token. Agent event and outbox records expire automatically; account deletion removes connector records and pending Gmail Agent data associated with your account.
TXT credit operations and pseudonymous account identifiers may be retained after account deletion to preserve ledger integrity, resolve disputes, prevent abuse, and meet legal obligations. The deleted account cannot continue receiving or spending TXT.
Some other records may be retained where required for security, abuse prevention, fraud investigation, or legal compliance.
Children
Textxt is not intended for children under 13. If you believe a child has provided personal information, contact us.
Changes to this policy
We may update this policy from time to time. We will post updates here with a new "Last updated" date.
Contact
If you have questions, contact us at trungdoanhong@gmail.com.