Privacy Policy
Last Updated: August 3, 2026.

1. Scope

This Privacy Policy explains how the Email Management Chrome extension ("Email Management," "we," "us," or "the extension") handles information when a user checks a draft email in Gmail.

2. Information the Extension Handles

Email draft content. When the user clicks the extension’s Check button, the extension reads the text of the open Gmail draft to provide local checks and the requested AI-assisted analysis.

Recipient information. Recipient email addresses and names may be processed locally to identify external recipients, multiple recipients, or a possible name mismatch. The extension sends only limited recipient metadata to the Email Management API, such as recipient count and whether a recipient is external; it does not intentionally send complete recipient addresses.

Potentially sensitive content. The extension locally detects and masks recognized phone numbers, passport or identification numbers, bank details, tokenized links, URLs, document identifiers, postal addresses, API keys, email addresses, names, and monetary amounts before AI-assisted analysis. Because automated detection cannot guarantee that every sensitive item will be recognized, users should review draft content before requesting analysis.

Technical and access information. The extension handles a randomly generated installation identifier, a hardware-derived device hash based on limited CPU and memory information, access and recovery tokens, license status, request identifiers, and quota information. The API may temporarily process an IP address for security and rate limiting.

Analysis metadata. The extension may send the interface and email language, recipient count, external-recipient indicator, and counts of detected sensitive items and placeholders.

3. How Information Is Used

We use this information only to:

• perform the email check requested by the user;
• identify potential risks and sensitive information;
• generate recommendations and an improved version of the draft;
• manage access, licensing, quotas, abuse prevention, and recovery;
• maintain the security and reliability of the service.

We do not use user data for advertising, profiling, creditworthiness, lending, or purposes unrelated to the extension’s single purpose.

4. Local Processing and AI Processing

Local checks and masking are performed in the user’s browser. After masking recognized sensitive items, the extension transmits the masked draft text and limited metadata over HTTPS to the Email Management API. The API forwards the masked text to an AI service provider, currently DeepSeek, solely to generate the analysis requested by the user.

The extension does not automatically send emails and does not analyze a draft until the user initiates a check.

5. Storage and Retention

The extension stores installation and access information in Chrome local storage, including the installation identifier, hardware-derived hash, access token, recovery token, and license status. This information remains until it is replaced, the extension’s data is cleared, or the extension is removed.

The Email Management server stores license, device-binding, token-hash, recovery-hash, quota, and security records for as long as needed to provide and secure access. Raw access and recovery tokens are not stored by the server.

For reliable request replay and quota accounting, the server may retain a non-reversible hash of an analysis request and the generated analysis response for up to 24 hours. The masked email draft itself is not stored in the Email Management server database.

6. Sharing and Transfers

We do not sell user data. We transfer masked draft content and limited metadata only to service providers necessary to operate the requested analysis, including the Email Management hosting infrastructure and the AI service provider. We may disclose information when required by law or when reasonably necessary to protect users, the service, or legal rights.

We do not transfer user data for advertising, data brokerage, creditworthiness, or lending purposes.

7. Data We Do Not Intentionally Collect

The extension does not collect browsing history, precise geolocation, general browsing activity, advertising identifiers, or health information as separate data categories. It does not track websites outside the Gmail and Email Management service domains listed in its manifest.

8. Security

Data transmitted to the Email Management API is protected with HTTPS. The extension masks recognized sensitive content locally before AI-assisted analysis. Access and recovery credentials are device-bound and handled using restricted extension storage and server-side hashes. No security measure or automated masking process can guarantee absolute protection.

9. User Choices and Deletion

Users may stop processing a draft by not clicking Check. They may clear locally stored extension data by removing the extension or clearing its storage. To request deletion of server-side license or device records, contact us using the address below. Some limited records may be retained where necessary for security, fraud prevention, legal compliance, or enforcement of trial and quota limits.

10. Children

Email Management is intended for business and general productivity use and is not directed to children under 13.

11. Changes to This Policy

We may update this Privacy Policy when the extension’s functionality or data practices change. The updated date will be shown at the top of this page. Material changes will be disclosed as required by applicable law and Chrome Web Store policies.

12. Contact

For privacy questions or deletion requests, contact:

romandosov2@gmail.com


1
1
1
1
1
1
1
1
1
1
1
1
This site was made on Tilda — a website builder that helps to create a website without any code
Create a website