Who we are
gantt-chart.io is operated by Morton Technology Consulting LLC, 2241 N Monroe St #1309, Tallahassee, FL 32303, USA.
What we collect
Account data. When you sign in, we receive your email address from your authentication provider. We use this to associate your projects with your account.
Project data. Timeline items, milestones, dependencies, and any text you enter into the editor are stored in our database so you can access them across sessions.
Files you upload. If you upload files for AI analysis, they are transmitted to the AI provider for processing and are not stored by gantt-chart.io after the request completes.
Usage data. We collect standard server logs (request paths, response codes, timestamps) to operate and improve the service. Optional browser analytics (Google Analytics 4 and PostHog) load only after you accept analytics in the cookie banner. Selected server-side account and billing events may include your account email and plan so we can diagnose activation and subscription issues.
Billing data. Payment is handled by Stripe. gantt-chart.io receives only your subscription status and plan tier — never card numbers or full payment details.
How we use your data
- To save and retrieve your projects
- To authenticate you and associate your subscription
- To process AI requests you initiate
- To send receipts and billing notifications (via Stripe)
- To diagnose errors and improve service reliability
Data sharing
We do not sell your data. We share it only with the following processors:
- Cloudflare — infrastructure, Workers, and D1 database hosting
- Control.io and configured AI model providers — AI-assisted requests are sent to our Control.io inference service, which routes them to a configured model provider that may include OpenAI. The request can include your prompt, attached files or data, conversation context, and timeline items in scope. We have not verified or promised Zero Data Retention for every routed provider. Provider handling and retention are governed by the applicable service configuration and provider terms. Do not submit regulated, legally privileged, or highly sensitive data unless you have independently confirmed that this processing is appropriate for your use case.
- Stripe — payment processing
- Google — Google sign-in, and Google Analytics 4 after cookie consent
- PostHog — product analytics after cookie consent
Share links
When you create a share link, the snapshot of your project becomes readable by anyone with the link. Share links expire after 30 days by default. You can delete a share link at any time from the editor.
Data retention
Project data is retained while the account remains active, including after a paid plan is canceled. After a verified account-deletion request, project data is deleted within 30 days. Operational server logs may be retained for up to 90 days.
Your rights
You may export your account data from a signed-in session via GET /api/account/export, request correction, or delete your account from settings or by contacting us at our contact page. For EU/EEA residents, you may also lodge a complaint with your local data protection authority.
Cookies
Authentication uses secure session and OAuth-attempt cookies. The cookie banner lets you choose essential cookies only, or accept optional Google Analytics 4 and PostHog. Analytics identifiers are stored in browser storage only after that acceptance. Google advertising tags fire only if analytics is accepted and a conversion event is present.
Children
gantt-chart.io is not directed at children under 13. We do not knowingly collect data from children under 13.
Changes
We will post updates to this policy on this page. Material changes will be communicated via email if you have a paid account.
Contact
Questions about this policy: contact us or write to Morton Technology Consulting LLC, 2241 N Monroe St #1309, Tallahassee, FL 32303.