Privacy Policy

Assistant for Google Home · Effective July 21, 2026

1. Overview

Assistant for Google Home is a Garmin watch application operated by Veloro Labs. It lets you authorize your Google account and send selected smart-home commands from a compatible Garmin watch. This policy explains the information we process and why.

2. Information we process

When you connect Google, we receive your Google account identifier, email address, OAuth authorization tokens, and the OAuth scopes you approve. We also store device sessions needed to keep the watch signed in, the command templates you create, queued automation actions and delays, and command event details such as the area, label, outcome, and time of a command. Completed and failed automation jobs are removed after 30 days.

OAuth refresh tokens are encrypted at rest. We do not receive or store your Google password, payment details, audio recordings, camera feeds, or the state of your Google Home devices.

3. How we use information

We use this information only to authenticate your watch, send the command you select to Google Assistant, maintain the command list you create, secure and troubleshoot the service, and comply with legal obligations. We do not sell personal information or use it for advertising.

4. Sharing and service providers

Commands and the Google authorization flow are sent to Google so that Google Assistant can process the action you request. The service is hosted using Railway and its PostgreSQL service. These providers process information only as needed to operate their services. We may disclose information where required by law or to protect the service and its users.

5. Retention and deletion

We retain connection and command information while your account remains connected. You can stop using Assistant for Google Home at any time. To request deletion of your connected account and associated server data, email [email protected] from the connected email address. We will verify the request and delete the associated data unless retention is required by law.

6. Security

We use reasonable technical and organizational safeguards, including encrypted storage for OAuth refresh tokens and short-lived device sessions. No internet service can guarantee absolute security.

7. International processing

Your information may be processed in countries where our providers operate. We take reasonable steps to protect information in accordance with this policy and applicable law.

8. Changes and contact

We may update this policy when the service or legal requirements change. The effective date identifies the current version. Questions, privacy requests, and deletion requests can be sent to [email protected].