Terms of Service
Effective Date: September 24, 2026
Last updated: September 24, 2026
These Terms of Service (the "Terms") are a binding agreement between you ("you," "User," or "Subscriber") and Mustro, Inc., a Delaware corporation ("Mustro," "we," "us," or "our"). They govern your access to and use of Mustro's web and mobile applications at mustro.ai (the "Platform") and all related services we provide (collectively, the "Services").
PLEASE READ THESE TERMS CAREFULLY. BY CREATING AN ACCOUNT OR ACCESSING THE SERVICES, YOU CONFIRM THAT YOU HAVE READ, UNDERSTOOD, AND AGREED TO BE BOUND BY THESE TERMS, INCLUDING THE BINDING ARBITRATION AND CLASS-ACTION WAIVER IN SECTION 17. IF YOU DO NOT AGREE, DO NOT CREATE AN ACCOUNT OR USE THE SERVICES.
1. About Mustro
Mustro is positioned as an agentic operating system for one human being: it holds your goals, budgets, and context, and acts inside them. With your explicit permission, Mustro connects to your bank, card, and brokerage accounts (via Plaid), your calendar (via Google Calendar), and up to three of your email inboxes (via Gmail), and helps you manage your money, time, and inbox in one place. Each connection is a "Connector" you install, configure, and can revoke at any time. The Services include:
- a unified Today view and per-domain dashboards with your accounts, balances, transactions, upcoming meetings, and inbox triage;
- a chat-first AI assistant that answers questions about your data and, where you have granted permission, can draft email replies, suggest categorizations, and surface anomalies for you to review;
- daily and weekly briefings delivered to your email and/or mobile device;
- ad-hoc anomaly alerts (e.g., unusual spend, calendar conflicts, VIP emails awaiting reply); and
- a connector-management surface for adding, viewing, and revoking the data sources you connect.
The Services are designed for a single individual: one account, one user. Mustro does not offer household, team, or shared-account functionality in V1.
Mustro is a software platform. Mustro is not a bank, broker-dealer, investment adviser, financial planner, tax preparer, or law firm, and nothing on the Platform is financial, legal, tax, or investment advice. See Section 8.
1.1 Autonomy posture
Mustro exposes a five-rung autonomy ladder that governs how much the assistant is allowed to do on your behalf for each Connector you install. The rungs, in order, are:
- Rung 0, "Suggests only". Mustro surfaces what it notices in chat and in your briefing. It never changes anything.
- Rung 1, "Drafts for approval". Mustro prepares the action and waits. Nothing happens until you approve it.
- Rung 2, "Acts, then tells you". Mustro acts without asking, tells you straight after, and leaves you a window to undo it.
- Rung 3, "Acts within limits". Mustro acts on its own inside limits you set, and sends a digest at the end of each period.
- Rung 4, "Works toward a goal". Mustro holds a goal across days, works it one step at a time, and only comes back when something needs you.
One exception applies at rung 1. When you dictate a check-in or a habit entry to Mustro in chat, Mustro writes it down in that turn without a separate approval step, because you asked for it in the same message. That entry stays inside Mustro, and you can edit or delete it from your history.
Every Connector starts at rung 0 or rung 1. You may raise a Connector to rung 2. Mustro raises a Connector to rung 2 only after it shows you in the product which actions will run without asking, you acknowledge that list, and you confirm your identity. At rung 2 the assistant carries out only the actions on that list without asking first, tells you afterwards, and gives you a set period to undo each one. That period depends on the action. The assistant may act at rung 2 while you are not using the app. At every rung available in V1, the assistant does not send mail from your accounts and does not move money; any action of that kind is created as an "intent" that requires your explicit approval before execution. If you switch on live calendar integration for the Health Connector, a workout that the assistant logs for you at rung 2 also creates an event in your connected calendar. You may lower a Connector to a lower rung or revoke a Connector at any time. Rungs 3 and 4 are not available in V1. Mustro will not enable them for any Connector without prior in-product disclosure, your explicit acknowledgment, and your continued ability to demote a Connector or revoke a Connector at any time.
Time's automatic scheduling controls are being introduced in stages. When those controls become available in your account and you enable them, Mustro may place and adjust its own calendar events under your rules and daily move cap. If you select Move for your own events without guests, Mustro may move those events under the same cap. Mustro tells you about each automatic change and provides a 24-hour undo window. Changes involving guests require your approval. Health information reaches a connected calendar only under the separate health-sharing choices disclosed to you.
Strava automatic sharing uses the separate agreement and session-kind choices in You > Strava. Once you enable a kind, Mustro can send future eligible native sessions without asking again for each session. The assistant's autonomy rung does not enable that setting. Strava sharing does not provide an undo period that removes the Strava copy. You can stop future sharing or delete an existing activity in Strava. Section 4.1 and Privacy Policy Section 1.8 describe these choices.
2. Eligibility
To use the Services you must:
- be at least 18 years of age;
- have legal capacity to enter into a binding contract;
- not be prohibited from using the Services under applicable law (including U.S. export-control and sanctions law); and
- agree to these Terms and our Privacy Policy.
The Services are currently intended for residents of the United States. Availability in other jurisdictions will be communicated separately.
3. Account, Access, and Security
To use the Platform you will create an account secured by Firebase Authentication. You are responsible for:
- safeguarding access to your account and the devices you use to access it;
- keeping your contact information up to date so we can authenticate you and communicate with you about the Services;
- enabling multi-factor authentication when prompted (Mustro relies on Google's Identity Platform for MFA);
- promptly notifying us at security@mustro.ai of any actual or suspected unauthorized access; and
- all activity that occurs under your account.
You may not share your account, allow others to use your credentials, or impersonate another person. Each account is for one natural person.
4. Connected Accounts and Connector Data
4.1 You Authorize Each Connection Individually
The Services rely on data sources that you explicitly connect on the /connectors page (each, a "Connector"). The current Connectors that draw on an outside account are Plaid (financial accounts), Google Calendar, Gmail (up to three Gmail mailboxes per Mustro account), and Mustro Health (Apple HealthKit and Oura). Mustro also offers one first-party Connector, Habits, which holds the ideal week, nightly check-ins and journal entries you write inside Mustro; it draws on no outside account, so there is no third-party authorization step for it, and the rest of this Section applies to it as it does to the others. Additional Connectors, for example journal, goals, news, investments, tax, travel, and memberships, may be added over time; each new Connector is opt-in and goes through the same per-source consent flow before any data is synced. You authorize each Connector that draws on an outside account through that source's own consent flow. You can disconnect any Connector at any time from /connectors; we will stop syncing immediately and delete the underlying data on the schedule described in our Privacy Policy.
Strava is an optional destination for completed sessions you share from Mustro. You accept the Strava sharing disclosure and authorize the connection through Strava. We do not import your Strava activity history. The Privacy Policy, Section 1.8, describes the fields and referral link we send.
Disconnecting Strava stops new sharing from Mustro. It does not remove activities already created in Strava. A request already in progress may still complete. If we cannot confirm that Strava revoked access, remove Mustro in your Strava app settings. Privacy rights and deletion requests remain governed by our privacy policies and applicable law.
4.2 What Mustro Does with Connector Data
Mustro syncs the Connector data described in our Privacy Policy and uses it only to operate the Services for you. Specifically:
- We do not use Gmail or Google Calendar data for advertising, do not sell it, and do not allow humans to read it except in the narrow circumstances described in Section 4 of the Privacy Policy.
- We do not use any Connector Data to train machine-learning models. Our AI subprocessors operate under zero-retention enterprise agreements.
- We use the
gmail.modifyGmail scope to read email, organize it with labels you request, and create drafts in your Drafts folder for your review. We do not, and will not, send mail on your behalf from the Platform. The assistant has no working send capability: the one tool named for sending refuses every call it receives, and sending is capped at the drafts level at every rung of the autonomy ladder, so no permission level you choose can enable it.
4.3 Your Responsibilities
You are responsible for the lawfulness of each Connector you authorize, including for ensuring you have the right to grant access to the underlying account. If you share an inbox or a bank account with someone else, the other account-holder has not consented to Mustro syncing that data unless they have also become a Mustro user, so please be thoughtful about which accounts you connect.
4.4 Provider Terms Apply
Your use of Plaid, Google, and any other Connector remains governed by that provider's own terms. Mustro is not responsible for downtime, data quality, or policy changes at any Connector provider.
5. AI Features
5.1 What the Assistant Is and Is Not
The assistant, which the product presents under the Mustro name, is a large-language-model agent runtime sitting on top of your installed Connectors. It can read your Connector Data (with appropriate tenant scoping), summarize it, and propose write actions (such as drafting an email reply). In V1, the assistant operates at rungs 0 to 2 of the autonomy ladder described in Section 1.1. At rungs 0 and 1 it cannot perform write actions on its own. At rung 2, which you switch on for each Connector under the conditions in Section 1.1, it performs the actions Mustro disclosed to you on its own, records each one, tells you, and gives you a set period to undo it. Any action that sends mail, deletes, moves money, or otherwise changes state at a Connector outside that disclosed list is created as an "intent" and requires your explicit approval before execution.
The Platform surfaces a single assistant. Connectors do not surface independent chatbots; they extend what it can see and propose. The assistant is not a financial adviser, tax adviser, lawyer, doctor, or therapist. It can be wrong, can hallucinate, and can miss context. Verify any consequential output before acting on it.
Strava automatic sharing follows the separate controls described in Section 1.1.
5.2 AI Subprocessors
By default, the assistant uses Anthropic's Claude. You may switch to OpenAI in /settings → AI. Both providers operate under zero-retention enterprise agreements with Mustro. We will update the list of AI subprocessors in our Subprocessors page and notify you of material additions.
5.3 Token Budget
Each account has a per-day token budget for the assistant to keep costs predictable. When you exceed your budget for the day, it will return a "resting" message. You can adjust the budget within the limits posted in /settings → AI.
5.4 No Reliance for High-Stakes Decisions
Do not rely on the assistant for medical, legal, tax, regulatory, or other high-stakes decisions. Information from it is provided for your convenience and is not a substitute for advice from a qualified professional.
6. Subscriptions, Fees, and Payment
6.1 Plans
Mustro offers a free initial tier and one or more paid subscription tiers. The features and fees for each tier are described on the Platform and may change with reasonable notice.
6.2 Where You Subscribed Decides Who Bills You
There are three ways to buy a paid subscription, and the one you complete the purchase through governs how you are charged, how the subscription renews, how you cancel, and who can refund you. We call this your billing path. Exactly one billing path applies to any given subscription.
| Where you subscribed | Who takes the payment and holds the subscription | Where you cancel |
|---|---|---|
| --- | --- | --- |
| The web app at [mustro.ai](https://mustro.ai) | Mustro, through our payment processor Stripe | `/settings → Billing` |
| The Mustro app, through the Apple App Store | Apple, through your Apple Account | Your Apple Account subscription settings |
| The Mustro app on Android | Google, through your Google Play account | Your Google Play subscription settings |
If an in-app purchase is not available on your device, the app may send you to the web to subscribe instead. That is a web subscription, and Section 6.3 governs it.
Where these Terms and a store's own terms differ on the billing, renewal, cancellation, or refund of a subscription you bought in that store, the store's terms govern those subjects for that purchase. The rest of these Terms continues to apply to your use of the Services.
6.3 Web Subscriptions (Stripe)
Fees for subscriptions bought on the web are processed by Stripe. Mustro does not store complete payment card numbers on its servers.
A web subscription renews automatically at the start of each billing cycle unless you cancel before the renewal date. You can cancel at any time from /settings → Billing. Cancellation takes effect at the end of the then-current billing period, and your paid access continues until that date. We do not pro-rate refunds for partial periods unless the law requires it. Refunds for a web subscription are ours to grant or decline; ask for one at support@mustro.ai.
6.4 Apple App Store Subscriptions
If you subscribed inside the Mustro app through the Apple App Store, on any Apple device, Apple takes the payment and holds the subscription. That purchase is also subject to Apple's own terms for the App Store and Apple Media Services.
- Renewal. The subscription renews automatically and Apple charges your Apple Account until you turn off auto-renew. Apple requires that to be done at least 24 hours before the current period ends; otherwise the next period is charged.
- Cancellation. You cancel in your Apple Account subscription settings (on an iPhone or iPad,
Settings → your name → Subscriptions, or at <https://apps.apple.com/account/subscriptions>), not in Mustro. Mustro cannot cancel an App Store subscription for you. Deleting the Mustro app does not cancel it. Cancelling stops future renewals, and your paid access continues to the end of the period you have already paid for. - Refunds. A refund for an App Store purchase is Apple's to grant, under Apple's refund policy rather than ours. Request one from Apple at <https://reportaproblem.apple.com>. Mustro cannot refund a payment Apple took, and the refund practice described in Section 6.3 does not apply to it.
6.5 Google Play Subscriptions (Android)
If you subscribed inside the Mustro app on Android, Google takes the payment and holds the subscription. That purchase is also subject to Google Play's own terms of service.
- Renewal. The subscription renews automatically and Google charges your Google Play account until you cancel it in Google Play.
- Cancellation. You cancel in your Google Play subscription settings (in the Play Store app,
Payments and subscriptions → Subscriptions, or at <https://play.google.com/store/account/subscriptions>), not in Mustro. Mustro cannot cancel a Google Play subscription for you. Uninstalling the Mustro app does not cancel it. Cancelling stops future renewals, and your paid access continues to the end of the period you have already paid for. - Refunds. A refund for a Google Play purchase is Google's to grant, under Google Play's refund policy rather than ours. Request one from Google through Google Play. Mustro cannot refund a payment Google took, and the refund practice described in Section 6.3 does not apply to it.
6.6 When a Paid Subscription Ends
A renewal payment that fails does not end the subscription on its own. Stripe, Apple, and Google each retry it over a period they set, and your paid access continues while that retry runs.
What happens next is the same on all three billing paths. We delete nothing, and the paid features go read-only. You can still read and export everything held under them, including your history. Those features stop writing and stop syncing, so no new paid content is created until you subscribe again. Subscribing again restores the paid features over the data that was already there.
Closing your account is a different act with a different result. It deletes your data on the schedule set out in Section 5 of our Privacy Policy, and Section 13 of these Terms governs how you close it.
Closing your account is not the only act that deletes. Disconnecting a Connector, including Mustro Health or one of the sources behind it, and deleting a training plan each delete data too, on the schedules Section 5 of the Privacy Policy sets out for them, whether or not you hold a paid subscription. A lapsed subscription leaves your history in place; removing the source it came from does not. If you want that history kept, leave the source connected.
6.7 Taxes
Fees are exclusive of applicable taxes, which you are responsible for paying.
6.8 Free Tier
We may change the limits and features of any free tier with reasonable notice. We may withdraw a free tier entirely if doing so is necessary to operate the Services sustainably.
7. Acceptable Use
You will not, and will not permit anyone else to:
- use the Services in violation of any law or regulation;
- access another user's account or attempt to do so;
- attempt to defeat Mustro's tenant-isolation, authentication, encryption, or rate-limiting controls;
- introduce malware, viruses, or other harmful code into the Platform;
- scrape, harvest, or systematically extract data from the Platform other than your own data through the user-facing export feature;
- reverse-engineer, decompile, or attempt to derive source code from the Platform except as permitted by applicable law;
- use the Services to develop a competing product or service;
- impersonate any person or misrepresent your affiliation with any person or organization;
- use the assistant to generate or distribute content that is illegal, harassing, defamatory, infringing, sexually explicit involving minors, or otherwise prohibited by applicable AI-provider policies; or
- use the Services for high-volume automated workflows that exceed the budgets posted in
/settings.
We may suspend or terminate accounts that we reasonably believe have violated these rules.
8. Disclaimers
THE SERVICES ARE PROVIDED "AS IS" AND "AS AVAILABLE," WITHOUT ANY WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING THE IMPLIED WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, AND NON-INFRINGEMENT.
We make the same warranty disclaimer on behalf of third-party service providers, including Strava, to the extent permitted by applicable law.
WITHOUT LIMITING THE FOREGOING:
- Not financial advice. Mustro is not a registered investment adviser, broker-dealer, financial planner, or accountant. The Services display information about your accounts and propose suggestions; they do not provide individualized investment, tax, or financial advice.
- Not legal advice. Mustro does not provide legal advice.
- Not medical advice. Mustro does not provide medical, mental-health, or wellness advice.
- Data accuracy. Connector data is sourced from third parties (Plaid, Google) and may be incomplete, delayed, or inaccurate. Always verify against the source of record before acting on it.
- AI output. The assistant is a probabilistic system. Output may be incorrect. Verify before acting.
- Availability. We do not guarantee uninterrupted availability of the Services.
9. Limitation of Liability
IN NO EVENT WILL EITHER PARTY BE LIABLE TO THE OTHER FOR ANY INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, EXEMPLARY, OR PUNITIVE DAMAGES (INCLUDING LOST PROFITS, LOST REVENUE, OR LOSS OF DATA), REGARDLESS OF THE CAUSE OF ACTION OR THE THEORY OF LIABILITY, EVEN IF SUCH PARTY HAS BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES.
EXCEPT FOR (a) YOUR PAYMENT OBLIGATIONS, (b) YOUR INDEMNIFICATION OBLIGATIONS, OR (c) A PARTY'S WILLFUL MISCONDUCT, EACH PARTY'S AGGREGATE LIABILITY ARISING OUT OF OR RELATING TO THESE TERMS OR THE SERVICES WILL NOT EXCEED THE GREATER OF (i) THE TOTAL FEES YOU PAID MUSTRO IN THE TWELVE (12) MONTHS PRECEDING THE EVENT GIVING RISE TO THE CLAIM AND (ii) ONE HUNDRED U.S. DOLLARS ($100).
Third-party service providers, including Strava, are not liable for consequential, special, punitive, or indirect damages arising from the Services. This exclusion applies only to the extent permitted by applicable law.
Some jurisdictions do not allow the exclusion or limitation of certain damages. The exclusions and limitations above apply only to the maximum extent permitted by law.
10. Indemnification
You will indemnify, defend, and hold harmless Mustro and its officers, directors, employees, and agents from and against any third-party claim, loss, damage, liability, cost, or expense (including reasonable attorneys' fees) arising out of or related to (a) your breach of these Terms, (b) your misuse of the Services, (c) your violation of any Connector provider's terms, or (d) your violation of any applicable law.
11. Intellectual Property
Mustro owns all right, title, and interest in and to the Platform, including its software, design, content (other than your data), trademarks, and logos. These Terms do not grant you any ownership rights in the Platform.
You retain all rights in your data, including your Connector Data, your conversations with Mustro, and any content you upload. You grant Mustro a worldwide, non-exclusive, royalty-free license to host, copy, transmit, display, modify, and process your data solely as needed to provide the Services to you.
We welcome feedback. If you submit suggestions, ideas, or feedback to us, you grant us a perpetual, irrevocable, royalty-free license to use it without obligation.
12. Third-Party Services and Open-Source Components
The Platform integrates with third-party services (Plaid, Google, Anthropic, OpenAI, Stripe, Resend, Expo, Cloudflare, Sentry, and others listed in our Subprocessors page). Your use of those services is governed by the providers' own terms.
The Platform incorporates open-source software. Open-source components are licensed under their own terms, which prevail over these Terms for those components only.
13. Termination
13.1 By You
You may close your Mustro account at any time from /settings → Account or by emailing support@mustro.ai. Account closure triggers the deletion described in our Privacy Policy. Closing your Mustro account does not automatically remove activities you shared to Strava. You can delete those activities in Strava. This does not limit your statutory rights or Mustro's duties for a request to delete consumer health data.
13.2 By Mustro
We may suspend or terminate your account, with or without notice, if (a) you breach these Terms, (b) we are required to do so by law, (c) we reasonably believe that continued operation of your account presents a security risk to other users or to Mustro, or (d) we discontinue the Services or a feature you depend on.
13.3 Effect of Termination
On termination, your right to access the Services ends immediately. The provisions of these Terms that by their nature should survive (including Sections 8, 9, 10, 11, 14, 15, 16, 17, 18, and 19) survive termination.
14. Changes to the Services and these Terms
We may add, change, or remove features over time. For material adverse changes to the Services or to these Terms, we will provide reasonable advance notice through the Platform or by email. Your continued use after the change becomes effective constitutes your acceptance of the change. If you do not agree, you may close your account before the change takes effect.
15. Privacy
Our Privacy Policy describes how we handle your information. It is incorporated into these Terms by reference. By using the Services, you consent to our handling of your information as described in the Privacy Policy.
16. Governing Law
These Terms are governed by the laws of the State of Delaware, without regard to its conflict-of-laws principles. The United Nations Convention on Contracts for the International Sale of Goods does not apply.
Subject to Section 17, any action arising out of or relating to these Terms or the Services that is not subject to arbitration must be brought exclusively in the state or federal courts located in New Castle County, Delaware, and you irrevocably consent to the jurisdiction of those courts.
17. Binding Arbitration; Class-Action Waiver
Read this section carefully, because it affects your legal rights.
17.1 Arbitration
Any dispute, claim, or controversy arising out of or relating to these Terms or the Services ("Dispute") will be resolved by binding individual arbitration administered by JAMS under its Streamlined Arbitration Rules then in effect, except as set out below. The arbitration will take place in New Castle County, Delaware (or by video where permitted), in English, before a single arbitrator. The arbitrator's award is final and binding and may be entered as a judgment in any court of competent jurisdiction.
17.2 Class-Action Waiver
You and Mustro each waive the right to bring or participate in any class, collective, or representative action. The arbitrator may not consolidate more than one person's claims and may not preside over any form of representative proceeding. If this waiver is found unenforceable, the entire Section 17 is null and void, and the parties agree to resolve the Dispute in court under Section 16.
17.3 Exceptions
This Section 17 does not require arbitration of (a) small-claims-court actions, (b) actions to enforce intellectual-property rights, or (c) injunctive relief for unauthorized use or access.
17.4 Opt-Out
You may opt out of this arbitration agreement by emailing legal@mustro.ai within thirty (30) days of first accepting these Terms. Your opt-out notice must include your name, account email, and a clear statement that you decline arbitration.
18. Export Controls and Sanctions
You may not access or use the Services if you are located in, or are a national or resident of, any country or region subject to U.S. comprehensive sanctions, or if you are on a U.S. government denied-party list. You will not export, re-export, or transfer the Services in violation of applicable export laws.
19. General
19.1 Entire Agreement
These Terms, together with the Privacy Policy and any plan- or feature-specific terms incorporated by reference, are the entire agreement between you and Mustro regarding the Services and supersede any prior agreements. This Section 19.1 does not displace Section 6.2: for a subscription you bought in the Apple App Store or in Google Play, that store's own terms continue to govern the subjects Section 6.2 gives them.
19.2 Severability
If any provision of these Terms is held invalid or unenforceable, the remaining provisions remain in full force and effect.
19.3 No Waiver
Our failure to enforce a provision is not a waiver of our right to enforce it later.
19.4 Assignment
You may not assign these Terms without our prior written consent. We may assign these Terms in connection with a merger, acquisition, financing, or sale of assets, with notice to you.
19.5 Notices
We may give you notice through the Platform, by email to the address on file, or by push notification. You may give us notice at legal@mustro.ai.
19.6 Relationship of the Parties
These Terms do not create a partnership, joint venture, employment, or agency relationship between you and Mustro.
19.7 Force Majeure
Neither party is liable for failure or delay caused by events beyond its reasonable control, including acts of God, war, terrorism, civil unrest, labor disputes, infrastructure or third-party-service outages, or governmental action.
20. Contact Us
Mustro, Inc. Support: support@mustro.ai Legal: legal@mustro.ai Security: security@mustro.ai Privacy: privacy@mustro.ai Website: mustro.ai