Privacy policy
Last updated 9 October 2026
AintMail (“AintMail”, “we”, “us”) runs the AintMail app at aintmail.com. AintMail reads the email inboxes you connect, read-only, and keeps one ledger of what needs you: replies you owe, replies owed to you, bills and documents, orders and deliveries, renewals, and money a company owes you back. This policy explains what we read, what we keep, why, who helps us run the service, and the choices you have.
The short version
- Access to your email is read-only. We cannot send, delete, move or label your email.
- We use your email only to provide AintMail’s features to you.
- We never sell your data, use it for advertising, or use it to train general-purpose AI models.
- People don’t read your email, except with your permission, for security, or when the law requires it.
- Email text and inbox sign-in tokens are encrypted by our application on top of the database’s own encryption.
- You can download everything, erase kept email text, disconnect an inbox or delete your account at any time.
1. What we collect
Your account
- Your email address, and your name if your Google or Microsoft sign-in provides it.
- If you sign in with an email and password, the password is stored only as a secure hash by our sign-in provider.
- Your settings: time zone, notification choices and quiet hours, recipes, VIP and muted senders, and the consents you give.
Your connected inboxes
When you connect a Gmail or Microsoft inbox, you grant read-only access on Google’s or Microsoft’s own screen: Google’s gmail.readonly scope or Microsoft’s Mail.Read permission, plus your email address to identify the inbox. We keep the inbox sign-in tokens, encrypted, so we can check for new mail. From your email we read and keep:
- Message details: sender, recipients, the number of people copied, subject, date, read state and labels or folders, whether there are attachments, and a few technical headers (for example the unsubscribe link and sender-authentication results, used to catch fake senders).
- Email text: the preview and body of each message, for inboxes where “Keep email text” is on (the default for personal plans). It is encrypted with AES-256-GCM using a key held only by our servers. Turning the setting off erases the text already kept from that inbox. We never download or keep attachments.
- How far back: when you first connect, we read the last 30 days; after that, new mail as it arrives.
What we work out from your email
- For each message: its category, whether and how it needs you, its priority, tags, and the reason in plain words.
- Facts in the email that drive features: due dates and other key dates (return-by, renewals, trial ends), order numbers, tracking numbers and delivery dates, amounts charged, recurring payments, and refunds or credits promised to you, with a short quote of the promise.
- Per-sender statistics, such as how often a sender writes and whether you read or reply, used to sort mail and suggest unsubscribing.
Your actions
What you do in AintMail (settling, snoozing, “not mine”, corrections, unsubscribe requests), so the app reflects it and makes better decisions for you.
Billing
Your plan and subscription status. Payments are handled by Stripe; we never see or store your card number.
Technical information
- Sign-in cookies that keep you signed in (essential; no advertising cookies).
- In your browser’s local storage: a random identifier used by our feature-flag service, and small preferences such as when you last opened the Feed.
- If you turn on browser notifications, the push address your browser gives us.
- Server logs with IP address, browser type and the pages or requests made, kept for 30 days for security and troubleshooting.
2. How we use it
Only to provide AintMail to you and keep it secure and working:
- Deciding which emails need you, why, and how urgently, and showing them in Today and the Feed.
- Showing your own conversations, deliveries, key dates, recurring payments and money owed to you.
- Sending the notifications you chose, by email, browser push or Slack.
- Carrying out actions you ask for (see section 4).
- Keeping the service secure, preventing abuse and fixing problems.
- Measuring how the product is used with counts and events that contain no email content (for example “an item was settled”), to decide what to improve and to roll out features gradually.
- Billing, and complying with the law.
3. Google and Microsoft user data
AintMail’s use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. We apply the same rules to data from Microsoft. In particular:
- We use email data only to provide and improve the user-facing features described in this policy and visible in the app.
- We transfer it to others only as needed to provide or improve those features (to the service providers in section 6), for security, to comply with the law, or as part of a merger or acquisition with your notice.
- We never use it for advertising, including retargeting, personalized or interest-based ads.
- We never sell it, or transfer it to data brokers or information resellers.
- People do not read it, unless you give us permission for specific messages (for example in a support request), it is needed for security (such as investigating abuse or a bug), it is required by law, or it has been aggregated and anonymized for internal operations.
- We do not use it to develop, improve or train generalized or non-personalized AI or machine-learning models.
4. AI and actions we take for you
AI
Most decisions are made by rules that run on our own servers. Optional AI features are available on paid plans, and only after you turn them on in your profile:
- AI decisions and recipes described in words: the subject, sender, number of recipients and a short preview of the latest message are sent to an AI service to decide whether an email needs you or matches your recipe.
- Draft a reply, only when you press it: up to the last six messages of that conversation and a few short samples of your own sent emails (so the draft sounds like you) are sent to an AI service. The draft opens in your own email app; AintMail never sends it.
AI services process this on our behalf under contract, do not use it to train their models, and may keep it only briefly (typically up to 30 days) for abuse monitoring. You can turn AI off at any time.
Unsubscribing
When you ask us to unsubscribe you from a mailing list, our servers send the unsubscribe request to the link the sender published in its email. If the sender only offers an email address, we open a pre-filled message in your own email app for you to send.
Finding order updates
To complete an order’s tracking, we may search your connected inbox (read-only) for that order’s number, at most once a day.
5. What we never do
- Send, delete, move or label your email.
- Sell or rent your data, or share it for advertising.
- Use email content in analytics or product metrics.
- Train general-purpose AI models on your email.
6. Who helps us run AintMail
These service providers process data only on our instructions and only to provide their part of the service:
- Supabase (database and sign-in) and Amazon Web Services (hosting, encrypted configuration and logs): all the data above. United States.
- Google and Microsoft: your inboxes. For faster updates, they can notify us that new mail arrived; these notices contain only an inbox address and a change number, not email content.
- TypeSafe, Anthropic and OpenAI: AI features, only if you turn them on (section 4).
- Resend: sends notification emails. A notification can include the sender’s name and an email’s subject, because that’s what it tells you about.
- Slack and your browser’s push service (for example Google, Apple or Mozilla): notifications, only if you turn them on. Browser push messages are encrypted end to end.
- Stripe: payments, on paid plans.
- Statsig: feature flags, gradual rollouts and product metrics. Receives your account ID, email address, plan and sign-up date, and product events such as “an item was settled”. Never email content.
- Cloudflare: our domain name records. It does not receive your data.
We may also disclose information if the law requires it, to protect the rights and safety of our users or others, or as part of a merger or acquisition, in which case this policy continues to apply and we will tell you first.
7. How long we keep it
- Account data, settings and what we work out from your email: while your account is open.
- Email text: until you turn off “Keep email text” for that inbox, disconnect it, or delete your account.
- Disconnecting an inbox erases everything we kept from it. Deleting your account erases all your data and cancels any paid plan.
- Server logs: 30 days. Database backups roll off within 30 days, after which deleted data is gone from them too.
- Billing records Stripe must keep for tax and accounting, for as long as the law requires.
8. Security
- Data is encrypted in transit (TLS) and at rest.
- Inbox sign-in tokens and email text are additionally encrypted by our application, with keys kept in a secrets manager, separate from the database.
- Each user’s data is isolated by database access rules; only the service itself and a small number of authorized people can access production systems.
- Inbox access is read-only, so even a compromised account at AintMail could not change your email.
If we learn of a breach that affects your data, we will notify you and the relevant authorities as the law requires.
9. Your choices and rights
- Download everything we hold about you, including kept email text, from your profile (“Download my data”).
- Erase email text for an inbox by turning off “Keep email text”.
- Turn AI off, or change notifications, at any time in your profile.
- Disconnect an inbox or delete your account from your profile.
- Revoke access from your Google account or Microsoft account at any time; we then can’t read that inbox anymore.
Depending on where you live, you may have the right to access, correct, delete or port your data, to object to or restrict some processing, and to withdraw consent. Most of these are self-serve above; for anything else, email support@aintmail.com and we will respond within 30 days. We will not treat you differently for using these rights.
EEA and UK: we process your data to provide the service you asked for (contract), with your consent for optional AI features, and for our legitimate interests in keeping the service secure and improving it. You can complain to your local data protection authority.
California: we collect the categories of information described in section 1 for the purposes in section 2. We do not sell personal information or share it for cross-context behavioral advertising, and we do not use sensitive personal information to infer characteristics about you.
10. Where your data is processed
AintMail and its service providers store and process data in the United States. Where the law requires it for transfers from other countries, we rely on standard contractual clauses or equivalent safeguards.
11. Children
AintMail is not meant for children under 16, and we do not knowingly collect their data. If you believe a child has signed up, contact us and we will delete the account.
12. Changes
If we change this policy in a way that matters, we will tell you by email or in the app before the change applies, and ask for your consent again where the law requires it. The date at the top shows the latest version.
13. Contact
Questions or requests: support@aintmail.com. See also our terms of service.