Your program stays in your Drive.

What HeyPM handles, what it sends where, and what you can ask me to delete. Written to be read once and understood, rather than to be technically survivable.

Last updated 26 August 2026
On this page
The short version
  • Your program lives in a Google Sheet in your Drive, under your account, from the first minute. It is never moved and never copied into a database of mine.
  • Nobody on your team creates an account, so there is no profile of them anywhere.
  • To answer a question, the rows in question are sent to the model that reads them. They are read and discarded, not stored and not used to train anything.
  • Nothing is sold, rented, or shared for advertising. There is nobody to sell it to.
  • Revoke my access to the sheet and the agent stops that morning. You keep everything.

The short version, in full

This page describes what happens to your information when you use HeyPM: the website, the demo, and the agent once it is running on a program of yours. It is written in plain English on purpose. If your legal or security team needs it in their own format, email hello@heypm.ai and I will work through their questionnaire with them.

Everything below is what actually happens today, not what is planned. Where a thing is a limitation rather than a feature, it says so.

Who is responsible

HeyPM is a product of Yavade, Inc., a corporation registered in Ontario, Canada and based in LaSalle, Ontario. Where this page says I or me, it means Yavade, Inc. Where it says you, it means whoever the workbook belongs to.

Yavade is run by Aman Vohra. There is no team, no support desk and no third party administering your account. When you email hello@heypm.ai, I read it.

That is a genuine trade. It means questions get answered by the person who wrote the code. It also means there is one person, and you should size your risk accordingly.

Where your program lives

The workbook is created in your Google Drive, under your Google account, in the first minute of the first conversation. It is yours the way any spreadsheet you made is yours.

For the agent to read the plan and write back to it, you grant HeyPM access to that one file. That access is what makes the morning run possible, and it is the only thing you are granting. It does not extend to the rest of your Drive.

  • You can see the access in the sheet’s own sharing panel, like any other collaborator.
  • You can revoke it there at any moment, without telling me first.
  • When you revoke it, the next morning run simply does not happen. Nothing is deleted, because there is nothing of yours held anywhere else to delete.

The workbook is not mirrored into a database, a data warehouse or a backup of mine. The sheet is the system of record, which is the whole point of building it this way.

What the agent handles once it is running

Every weekday morning the agent reads your workbook, works out what has moved and what has not, and writes back. Doing that means it handles:

  • The content of your program. Departments, process areas, outcomes, owners, dates, dependencies, fit gaps, risks, actions, issues and decisions.
  • Your colleagues. Name, email address, the role they hold on the program, who covers for them and who they escalate to. This is the personal information in the system, and it is there because a brief has to reach somebody.
  • What people send back. The answers to the morning brief, and the time they arrived.
  • What it did. The Agent Log and Agent State tabs, which are in your workbook and visible to you, not held privately by me.

Documents you send during discovery, such as a charter or an existing plan, are read to build the program and are not needed afterwards. See how long things are kept.

What goes where

Four services are involved in running HeyPM. This is the complete list, and what each one sees.

ServiceWhat it is forWhat it sees
GoogleThe workbook itself, your Drive, and the mail that carries each brief.Everything in the workbook, because the workbook is a Google Sheet in your own Google account.
AnthropicThe model that reads the rows and writes the answers and briefs.The rows relevant to the question being answered, sent at the moment of answering and not retained afterwards.
n8nThe automation that wakes up each morning and runs the sequence.The workbook contents in transit while a run is in progress, and the run’s own log.
CloudflareHosting for this website and the demo.Standard web request data. Nothing from any customer workbook.

Ask me for the current hosting regions and the model provider’s terms before you sign anything. A security review should not have to take my word for it, and I will send the actual documents.

Training, and the honest answer to it

Your program content is not used to train any model. The commercial terms of the model provider are what make that true, and I will send you those terms if you want to read them rather than take the sentence at face value.

Nor do I use your workbook to improve HeyPM’s own templates. What I learn from running programs is the kind of thing anybody learns from doing the work, and it never travels as your content.

What this website collects

WhereWhat it takesWhy
The intake formYour name, your email, what you wrote about your program, and up to six files.So I can read the real thing before the call instead of guessing on it.
Booking a callWhatever Google Calendar asks you for.The booking runs on Google Calendar, so their privacy terms apply to that step.
Anything you emailYour address and what you wrote.To answer you.

There is no advertising pixel, no cross-site tracker, no session recorder and no newsletter you get put on for filling something in. If you send the intake form, you get a reply from a person about that program, and nothing else unless you ask for it.

What the demo collects

The demo runs on a fictional program that ships with HeyPM. It is not your data and it never becomes your data.

  • You give an email address and receive a code. That is so one person cannot run the demo two hundred times, not so you can be marketed to.
  • A private copy of the demo workbook is made for you. What you do in it is invisible to everyone else.
  • The conversation is capped. When it ends, the copy stops being useful and is cleared.

Do not paste anything confidential into the demo. It is a sandbox on a fictional program, and it was not built to be the place your real numbers live.

Your colleagues’ email addresses

You give me the names and addresses of the people on your program so the agent can send them their brief. Two things follow from that.

You need the right to give them. These are work addresses being used for work, which is ordinary, but you are the one who knows your own obligations to your staff and your contractors. I am relying on you here.

They are used for one thing. Their brief, about their items, on your program. They are never marketed to, never added to a list, and never used to reach them about anything else. When they come off the program, they come out of the workbook and the briefs stop.

How long things are kept

WhatHow longWho ends it
Your workbookForever, because it is in your Drive and it is yours. I never delete it.You. Revoke access or delete the file.
Files you sent during discoveryThrough the engagement, then deleted within 30 days of it ending.Automatic, or sooner if you ask.
Intake form submissionsTwelve months, so I can remember a conversation we started.Ask and it goes immediately.
Demo workbook copiesDeleted 30 days after the demo.Automatic.
Demo email addressesKept to stop the same person running it endlessly.Ask and it goes.
Email you sent meKept like any working correspondence.Ask and it goes.

What you can ask for

One email to hello@heypm.ai gets you any of these. No form, no ticket number.

  • A copy of what I hold about you, which for most customers is a short list.
  • A correction to anything wrong in it.
  • Deletion of anything I am not required to keep.
  • My access to your workbook revoked, which you can also just do yourself.

I will answer within 30 days and usually within the same week. If you are somewhere whose law gives you these rights formally, you have them here regardless of where I am sitting, because arguing about jurisdiction is a poor way to treat somebody asking a reasonable question.

Security, honestly

What is true today:

  • Your program data stays in your own Google account, under your own organisation’s controls, including whatever your admin already enforces on Drive.
  • Access to your workbook is per file, granted by you, and revocable by you.
  • Answer links are signed and scoped to one person and one item.
  • Every service in the chain is a named, established provider, listed above.

What is not true today, and I would rather you hear it here than find out in a questionnaire: HeyPM has no SOC 2 report, no ISO 27001 certification and no penetration test on file. It is a young product run by one person. If your organisation requires those before a tool can touch program data, HeyPM does not clear that bar yet, and I will say so on the call rather than waste your procurement team’s time.

Changes to this page

When this page changes, the date at the top changes with it. If a change actually affects what happens to your data, you get an email about it before it takes effect, not a quiet edit and a new timestamp.

Something here not clear enough?These pages are meant to be readable. If a line is ambiguous, tell me which one and I will rewrite it rather than explain it away.
Email hello@heypm.ai