Privacy Policy
PantaList · Effective 10 September 2026
PantaList ("the app", "we", "us") is a mobile and web application that lets you view and edit spreadsheets as mobile-friendly lists. PantaList is operated by independent developer Moshe Meiseles. This policy explains what information the app handles, why it is handled, and the choices you have. You can contact us at [email protected].
Information PantaList handles
- Google account information. If you connect Google, PantaList receives your email address and basic profile information to identify the active account. It requests access only to Google Drive files that you open with or create through PantaList, rather than access to your entire Drive.
- Microsoft account information. If you connect Microsoft, PantaList receives the account information needed to identify the active account and requests permission to work with Excel 365 workbooks in OneDrive that you choose to use with the app.
- Spreadsheet and workbook content. The app reads and writes the Google Sheets, Excel 365 workbooks, and local CSV or Excel files that you choose to open or create. Cloud content is exchanged directly with Google or Microsoft. Local files remain on your device unless you choose to share or upload them.
- App settings and file references. PantaList stores settings, recent-file references, list configuration, and pending edits locally on your device or in your browser. If you choose to publish PantaList settings into a cloud workbook, those settings become part of that workbook.
- Diagnostics. PantaList uses Sentry for crash reports and technical error information. Session replay is off by default. If you separately enable it for troubleshooting, Sentry records one diagnostic app launch with text and images masked, then the setting turns off automatically.
Authentication and storage
For Google sign-in on the web, PantaList uses a limited authentication service hosted on Cloudflare. It stores the Google identity and credentials needed to restore the session in encrypted form. The browser receives short-lived access tokens, not the Google refresh credential. The service does not proxy or store spreadsheet content or file metadata.
Microsoft browser credentials and app data are stored in the browser's local storage. Native credentials are stored using device storage intended for authentication secrets. Removing site data, signing out, or uninstalling the app can remove local information, as described below.
How information is used
Information is used to authenticate you, open and manage the files you select, display and edit lists, save your changes, restore your preferences, and diagnose reliability problems. We do not sell personal information or spreadsheet content, use it for advertising, or use Google or Microsoft user data to train generalized artificial-intelligence or machine-learning models.
Sharing and service providers
We disclose information only as needed to operate the features you use:
- Google provides account authentication and Google Sheets and Drive access that you authorize.
- Microsoft provides account authentication and Excel 365 and OneDrive access that you authorize.
- Cloudflare hosts the website, the web app, and the encrypted Google web-authentication service. The authentication service does not receive workbook content.
- Sentry receives crash and technical error data. It receives masked session-replay data only when you explicitly enable the one-session diagnostic option.
- Legal requirements may require disclosure when necessary to comply with applicable law, legal process, or an enforceable governmental request.
Security
PantaList minimizes the data and permissions it requests. Google web identity and credential records are encrypted before storage, session-verification secrets are stored as cryptographic hashes, and network traffic uses HTTPS/TLS. Native credentials use protected device storage where the platform supports it. Diagnostic events are designed not to include spreadsheet content, and production systems are limited to the developer operating PantaList. No method of storage or transmission is completely secure, so we cannot guarantee absolute security.
Google API Services User Data Policy
PantaList's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Your choices and deletion
- You can sign out of a connected Google or Microsoft account from PantaList at any time.
- You can revoke Google access at Google Account permissions.
- You can revoke Microsoft access from the apps and services section of your Microsoft account.
- You can clear browser site data or uninstall the native app to remove locally stored settings, file references, cached data, credentials, and pending edits from that device.
- You can request deletion help or confirmation for PantaList-controlled account records by emailing [email protected].
Deleting PantaList data does not delete files that you own in Google Drive, OneDrive, or local storage. Delete those files through their storage provider if you also want to remove the source content.
Retention
We do not retain copies of your spreadsheet or workbook content on PantaList servers. Google web sessions expire after 30 days of inactivity and have a maximum lifetime of 180 days. When the final Google web session is signed out or expires, PantaList revokes and deletes the stored credential; unused credentials are retained no longer than 180 days. Microsoft web sessions normally require reauthorization after 24 hours. Local data remains until you clear it, sign out where applicable, or uninstall the app. Sentry retains diagnostic information according to the configured Sentry retention period and only as long as needed to investigate reliability and security issues.
Children
PantaList is not directed to children under 13, and we do not knowingly collect personal information from children under 13.
International processing
Google, Microsoft, Cloudflare, and Sentry may process information in countries other than your own under their respective privacy and data-transfer arrangements.
Changes to this policy
We may update this policy. The effective date above will change when an updated policy is published.
Contact
Email privacy or data-deletion questions to [email protected].