Security & privacy
Your inbox is sacred.
An agent that acts on your email has to earn deep trust. Here's exactly how we handle your data — plainly, specifically, no fear-mongering. For the full legal detail, read our Privacy Policy and Terms.
Private
Your mail is never sold, never used for ads, never used to train AI.
Yours
Export or delete everything any time. On-device and bring-your-own-key options.
Bounded
The agent acts only within rules you set, with mandatory approval before sending in v1.
Auditable
Every autonomous action is reversible and logged with the reasoning behind it.
How the AI handles your data
Private by architecture, not by promise.
Zero-retention inference
Cloud model calls run with zero data-retention. Prompts and outputs aren't stored by providers.
No training on your mail
Your email is never used to train models — ours or anyone's. Full stop.
On-device option
Sensitive triage and drafting can run on a local model, so the content never leaves your device.
Bring your own key
Use your own Anthropic, OpenAI, or Google key. Keys are decrypted only in an isolated worker — never client-side, never logged.
Provider data & permissions
Least access, on every provider.
AI Emaily connects to Gmail, Outlook / Microsoft 365, iCloud, Fastmail, Proton and IMAP. We ask for the narrowest access that makes the features work — and you stay in control of the connection.
Minimum scopes
We request the least OAuth permission needed for the features you use — nothing more — and you can review them at connect time.
Google & Microsoft limited use
Use of Gmail and Microsoft Graph data follows Google's Limited Use policy and Microsoft's terms. We never use Gmail data to train generalized AI/ML models.
Disconnect any time
Removing a mailbox revokes our ongoing access immediately. You're always one click from cutting the connection.
Sanitized rendering
Incoming mail is treated as untrusted: tracking pixels are blocked, links sandboxed, and AI output validated before it's rendered or sent.
Encryption & architecture
Crown jewels, treated like crown jewels.
Encrypted in transit & at rest
TLS everywhere; data encrypted at rest. Message bodies live in encrypted object storage, referenced by id.
Envelope-encrypted secrets
OAuth tokens and BYOK keys are envelope-encrypted via KMS — never stored inline, never written to logs.
Least-privilege access
Minimum OAuth scopes, object-level authorization on every read and write, signed webhooks, idempotency keys, strict CORS + CSP.
Server-authoritative writes
Privileged actions run server-side behind authorization checks — never trusted from the client, never exposed in client bundles.
Operational security
Discipline behind the scenes.
Least-privilege staff access
Employees can't read your mail. Production access is restricted, role-based, and granted only when strictly necessary.
Audit logging
Sensitive actions are logged with actor and reason, so there's a verifiable record of who or what did what.
Monitoring & incident response
We monitor for anomalies and follow a defined incident-response process, including breach notification as required by law.
Encrypted, isolated backups
Backups are encrypted and access-controlled, with a short retention window before they're overwritten.
You're in control
Autonomy you can take back any time.
Copilot before Autopilot
In v1, a human approves before anything is sent. Autopilot is opt-in, bounded by rules you set.
Undo on everything
Every autonomous action is reversible. Changed your mind? One tap puts it back.
Full audit trail
Each action is logged with the reasoning behind it — the trust layer that makes autonomy usable daily.
Your data, your rights
It's your data — and it stays that way.
Export any time
Take your data with you — your mail stays portable, never held hostage.
Delete any time
Close your account and your data is deleted or anonymized within a commercially reasonable period.
GDPR & CCPA requests
Access, correct, port, or delete your personal data. Email us and we respond within the time the law requires.
Compliance
The paperwork, handled.
Security FAQ
Straight answers to the hard questions.
Found a vulnerability? Responsible disclosure to [email protected]. We respond fast and credit researchers.
Email you can finally trust to act.
Start free. Add a card when you're ready.
- No credit card
- Free plan forever
- Every provider