Security & privacy

Your inbox is sacred.

An agent that acts on your email has to earn deep trust. Here's exactly how we handle your data — plainly, specifically, no fear-mongering. For the full legal detail, read our Privacy Policy and Terms.

Private

Your mail is never sold, never used for ads, never used to train AI.

Yours

Export or delete everything any time. On-device and bring-your-own-key options.

Bounded

The agent acts only within rules you set, with mandatory approval before sending in v1.

Auditable

Every autonomous action is reversible and logged with the reasoning behind it.

How the AI handles your data

Private by architecture, not by promise.

Zero-retention inference

Cloud model calls run with zero data-retention. Prompts and outputs aren't stored by providers.

No training on your mail

Your email is never used to train models — ours or anyone's. Full stop.

On-device option

Sensitive triage and drafting can run on a local model, so the content never leaves your device.

Bring your own key

Use your own Anthropic, OpenAI, or Google key. Keys are decrypted only in an isolated worker — never client-side, never logged.

Provider data & permissions

Least access, on every provider.

AI Emaily connects to Gmail, Outlook / Microsoft 365, iCloud, Fastmail, Proton and IMAP. We ask for the narrowest access that makes the features work — and you stay in control of the connection.

Minimum scopes

We request the least OAuth permission needed for the features you use — nothing more — and you can review them at connect time.

Google & Microsoft limited use

Use of Gmail and Microsoft Graph data follows Google's Limited Use policy and Microsoft's terms. We never use Gmail data to train generalized AI/ML models.

Disconnect any time

Removing a mailbox revokes our ongoing access immediately. You're always one click from cutting the connection.

Sanitized rendering

Incoming mail is treated as untrusted: tracking pixels are blocked, links sandboxed, and AI output validated before it's rendered or sent.

Encryption & architecture

Crown jewels, treated like crown jewels.

Encrypted in transit & at rest

TLS everywhere; data encrypted at rest. Message bodies live in encrypted object storage, referenced by id.

Envelope-encrypted secrets

OAuth tokens and BYOK keys are envelope-encrypted via KMS — never stored inline, never written to logs.

Least-privilege access

Minimum OAuth scopes, object-level authorization on every read and write, signed webhooks, idempotency keys, strict CORS + CSP.

Server-authoritative writes

Privileged actions run server-side behind authorization checks — never trusted from the client, never exposed in client bundles.

Operational security

Discipline behind the scenes.

Least-privilege staff access

Employees can't read your mail. Production access is restricted, role-based, and granted only when strictly necessary.

Audit logging

Sensitive actions are logged with actor and reason, so there's a verifiable record of who or what did what.

Monitoring & incident response

We monitor for anomalies and follow a defined incident-response process, including breach notification as required by law.

Encrypted, isolated backups

Backups are encrypted and access-controlled, with a short retention window before they're overwritten.

You're in control

Autonomy you can take back any time.

Copilot before Autopilot

In v1, a human approves before anything is sent. Autopilot is opt-in, bounded by rules you set.

Undo on everything

Every autonomous action is reversible. Changed your mind? One tap puts it back.

Full audit trail

Each action is logged with the reasoning behind it — the trust layer that makes autonomy usable daily.

Your data, your rights

It's your data — and it stays that way.

Export any time

Take your data with you — your mail stays portable, never held hostage.

Delete any time

Close your account and your data is deleted or anonymized within a commercially reasonable period.

GDPR & CCPA requests

Access, correct, port, or delete your personal data. Email us and we respond within the time the law requires.

Compliance

The paperwork, handled.

GDPR & UK GDPR aligned
CCPA / CPRA aligned
Data residency options
SOC 2 on the roadmap
Sub-processor list published
Data Processing Agreement (DPA) available
PCI via Stripe — card data never touches our servers
Standard Contractual Clauses for transfers
No sale of personal data

Security FAQ

Straight answers to the hard questions.

Found a vulnerability? Responsible disclosure to [email protected]. We respond fast and credit researchers.

Ready when you are

Email you can finally trust to act.

Start free. Add a card when you're ready.

  • No credit card
  • Free plan forever
  • Every provider