Privacy Policy
Last Updated: February 12, 2026
In Short: This application accesses your Gmail data solely to provide email management services. We do not store, share, or sell your email data to third parties. Your information remains private and under your control.
1. Introduction
This Privacy Policy explains how Test Mail ("the Application", "we", "us", or "our") collects, uses, and protects your information when you use our service to access and manage your Gmail account.
By using this Application, you agree to the collection and use of information in accordance with this policy. If you do not agree with this policy, please do not use our Application.
2. Information We Access
When you authorize our Application to access your Gmail account, we request the following permissions:
| Permission Scope |
Purpose |
| gmail.readonly |
Read your email messages, labels, and metadata to display them in the application interface |
| gmail.modify |
Modify your emails (e.g., mark as read/unread, archive, label, delete) based on your actions |
| gmail.compose |
Compose and send emails on your behalf when you use the compose feature |
What We Access:
- Email messages and their content
- Email metadata (sender, recipient, subject, date, labels)
- Gmail labels and folders
- Your Gmail profile information (email address, name)
- Message threads and conversation history
3. How We Use Your Information
We use the information accessed from your Gmail account exclusively to:
- Display your emails: Show your messages, threads, and labels in our application interface
- Perform actions you request: Send emails, archive messages, apply labels, mark as read/unread, or delete messages when you explicitly request these actions
- Search functionality: Enable you to search through your emails
- Provide email management features: Organize and manage your inbox according to your preferences
Important: We access your Gmail data only when you are actively using the Application. All data is processed in real-time and is not permanently stored on our servers.
4. Data Storage and Security
4.1 No Permanent Storage
We do not store your email content or Gmail data on our servers. All information is:
- Fetched directly from Gmail's API in real-time
- Processed temporarily in memory for display purposes
- Automatically cleared when you close the application
4.2 Authentication Tokens
To maintain your connection to Gmail, we handle OAuth authentication tokens as follows:
- Access Tokens: Stored temporarily in your browser's secure session storage
- Refresh Tokens: Used only to obtain new access tokens when needed
- Token Security: All tokens are transmitted over encrypted HTTPS connections
- Token Deletion: Tokens are automatically removed when you log out or revoke access
4.3 Security Measures
We implement industry-standard security measures to protect your data:
- All communications use HTTPS/TLS encryption
- OAuth 2.0 protocol for secure authentication
- No logging of email content or sensitive information
- Regular security audits and updates
- Secure API endpoints with rate limiting to prevent abuse
5. Data Sharing and Third Parties
We do not share, sell, rent, or trade your Gmail data with any third parties. Your email data is:
- Never shared with advertisers or marketing companies
- Never used for analytics or tracking purposes
- Never sold or monetized in any way
- Only accessed by you through our Application interface
Legal Requirements
We may disclose information only if required by law, such as in response to:
- Valid legal processes (subpoenas, court orders)
- Government requests
- Protection of our legal rights
However, since we do not store your email data, there is minimal information available for disclosure.
6. Your Rights and Control
You have complete control over your data and can exercise the following rights at any time:
6.1 Revoke Access
You can revoke our Application's access to your Gmail account at any time by:
- Visiting your Google Account settings at https://myaccount.google.com/permissions
- Finding our Application in the list of connected apps
- Clicking "Remove Access"
Once access is revoked, our Application will no longer be able to access your Gmail data.
6.2 Data Deletion
Since we do not store your email data:
- No email content needs to be deleted from our systems
- Authentication tokens are automatically removed when you revoke access
- All temporary data is cleared from your browser when you log out
6.3 Access and Review
You can review what permissions our Application has by checking the connected apps section of your Google Account. The Application only accesses data when you are actively using it.
7. Use of Google APIs
This Application's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Limited Use Disclosure
Our Application's use of information received from Gmail APIs will:
- Only be used to provide or improve user-facing features that are prominent in the requesting application's user interface
- Not be transferred to others unless necessary to provide or improve user-facing features, comply with applicable law, or as part of a merger, acquisition, or sale of assets with notice to users
- Not be used or transferred for purposes that are unrelated to our Application's core functionality
- Not be used or transferred to determine creditworthiness or for lending purposes
8. Children's Privacy
Our Application is not intended for use by children under the age of 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately.
9. International Data Transfers
Your data may be processed in different countries where we or our service providers operate. However, since we do not store your email data, the only transfers that occur are:
- Direct connections between your browser and Gmail's API servers
- Temporary processing for real-time display purposes
All data transfers are encrypted and comply with applicable data protection regulations.
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons. When we make changes:
- We will update the "Last Updated" date at the top of this policy
- Significant changes will be prominently displayed in the Application
- Continued use of the Application after changes constitutes acceptance of the updated policy
We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information.
11. Compliance and Certifications
Our Application complies with:
- Google API Services User Data Policy: Including Limited Use requirements
- GDPR: General Data Protection Regulation (where applicable)
- CCPA: California Consumer Privacy Act (where applicable)
- OAuth 2.0 Security Best Practices: For authentication and authorization
12. Contact Information
13. Additional Resources
For more information about how Google handles your data:
This privacy policy is effective as of the date listed above and applies to all users of the Application.