SAPUN

SAPUN Managed Inbox

Privacy Policy

This policy explains what SAPUN processes when you visit the SAPUN website or use Managed Inbox.

Last updated: 2 September 2026

Scope and contact

This policy applies to the public SAPUN website and the current private pre-release version of SAPUN Managed Inbox. For privacy questions or requests, contact hello@sapun.net.

What we process

Depending on how you use SAPUN, this may include contact details you send to us, account and workspace information, technical information needed to operate and secure the service, and information from a mailbox that you explicitly connect.

Managed Inbox is designed to use the minimum Gmail access currently required for its workflow: gmail.readonly to read and process messages, and gmail.send to send an approved reply. SAPUN receives Gmail access only after you give explicit consent through Google's OAuth consent flow.

How Gmail data is used

Gmail data is used only to provide the connected Managed Inbox workflow, including:

  • ingesting and displaying relevant mailbox messages inside the authorised workspace;
  • organising threads and supporting reply workflows;
  • analysing message content to extract useful context and prepare AI-assisted drafts;
  • helping a user review, edit and confirm a draft before sending it through Gmail.

SAPUN does not sell Google user data and does not use it for advertising. Gmail remains the external mail provider. A person must explicitly confirm an outbound message before SAPUN sends it; SAPUN does not send an AI-prepared draft automatically.

Storage and security

The long-lived Gmail refresh token is stored server-side in encrypted form and is scoped to the authorised workspace and mail account. Short-lived access tokens are used for the provider interaction when needed; they are not used as a permanent credential store. Secrets and tokens are kept out of browser-facing pages and application logs.

Workspace isolation is enforced on the server: mailbox data and actions are resolved through the authenticated session, workspace membership and enabled Managed Inbox module. Changing a browser-supplied workspace identifier does not grant access to another workspace.

Sharing and service providers

SAPUN does not sell or rent personal data. Google user data is not shared with third parties for advertising or unrelated purposes. Google user data may be processed only by infrastructure or service providers that are necessary to deliver the user-facing SAPUN feature, and only for that purpose. If SAPUN later uses an AI processing provider, that use must also comply with the Google API Services User Data Policy, its Limited Use requirements and SAPUN's commitment not to use Gmail data to create, train or improve general-purpose or generalized machine-learning or AI models.

Human access to Gmail data

SAPUN does not permit people to read Google or Gmail user data as a routine practice. Human access is limited to circumstances allowed by the Google API Services User Data Policy, such as when you explicitly request or authorise support involving specific data, when access is necessary to investigate security or abuse, or when access is required by law.

Your control, disconnect and revocation

You choose whether to connect Gmail and can revoke SAPUN's access from your Google Account security settings. When a connection is disconnected or access is revoked, SAPUN treats the mail account as unavailable and stops using it for provider operations; existing workspace records are not silently reassigned to another workspace. Contact hello@sapun.net if you need help with a connection or a data request.

Retention and deletion

At the current private pre-release stage, SAPUN retains the records needed to operate the configured workspace workflow. There is not yet a universal automatic deletion schedule that we can promise. We do not claim that disconnecting a provider automatically deletes every historical workspace record. For a deletion or access request, contact us so we can review the specific workspace and records involved.

Google API Services and Limited Use

SAPUN's use and transfer of information received from Google APIs complies with the Google API Services User Data Policy, including the Limited Use requirements. We request only the Gmail scopes needed for the Managed Inbox workflow, use Google data only as necessary to provide the visible Managed Inbox features chosen by the user, and do not use Gmail or Google Workspace user data to create, train or improve general-purpose or generalized machine-learning or AI models. We also do not use it for advertising or sell it to data brokers.

Changes to this policy

We will update this page when SAPUN's data practices or Managed Inbox architecture materially change. The date at the top of the page identifies the current version.