Privacy Policy

Mail Sync · last updated 18 September 2026

Mail Sync is a single-user Google Apps Script. It is run by one person, on their own Google account, against their own two mailboxes. This policy describes what it does with data.

What data is accessed

The contents and metadata of email messages in the source Gmail mailbox, including headers, message bodies and attachments. Access to that mailbox is read-only.

What is done with it

Each new message is read and a copy is inserted into the destination Gmail mailbox, which belongs to the same person. That is the tool's only function.

Where data is stored

Nowhere outside Google. Message content is never written to a server, database, log or file controlled by anyone. It moves between two Google mailboxes through Google's own API and is held only in the destination mailbox, under that mailbox's own retention and deletion.

What is retained by the script

Only operational state: a timestamp marking the last synchronised message, a Gmail label ID, and OAuth credentials for the two accounts. These live in the script's own property store in the owner's Google account. No message content is retained.

Sharing

Data is not sold, shared, transferred or disclosed to anyone. There are no third parties, no analytics, no advertising and no subprocessors. The script has no users other than its owner.

Google user data

Use of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.

Revoking access

Access can be withdrawn at any time at myaccount.google.com/permissions, which immediately and permanently stops the script from reading the source mailbox.

Cookies

This website sets no cookies and collects nothing from visitors.