Privacy Policy
Last updated: June 18, 2026
MailDeck ("the app") is an iOS email-triage app. This policy explains what data the app accesses and how it is handled. In short: MailDeck runs entirely on your device, and your email content is never sent to or stored on our servers.
Information we access
When you sign in with Google, MailDeck requests permission to access your Google account data using these scopes:
- Gmail (gmail.modify) — to read your inbox messages, archive them (remove the Inbox label), send replies, and forward messages. MailDeck never permanently deletes your email.
- Contacts (contacts.readonly) — to autocomplete recipient addresses when you forward an email. This is optional; if you decline it, autocomplete falls back to people in your loaded mail.
How your data is used
- Email messages and contacts are fetched directly from Google's APIs to your device and used only to display and triage your mail within the app.
- Data is cached locally on your device (using Apple's on-device storage) so the app loads quickly. It is not transmitted to MailDeck or any third party.
- Your Google sign-in tokens are stored securely in the iOS Keychain on your device.
What we do NOT do
- We do not operate a server that receives, stores, or processes your email or contacts.
- We do not sell, share, or transfer your data to third parties.
- We do not use your Gmail data for advertising or train any models on it.
Subscriptions
MailDeck offers an optional auto-renewable subscription ("MailDeck Pro") processed by Apple. Payment and billing are handled entirely by Apple; we do not receive your payment details. Subscriptions can be managed or cancelled in your Apple ID settings.
Data retention & deletion
Cached data lives only on your device. Signing out of an account removes that account's cached data and stored tokens from your device. Deleting the app removes all locally stored data. You can also revoke MailDeck's access at any time from your Google Account permissions page.
Google API Services disclosure
MailDeck's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Contact
Questions about this policy? Email ron@sentra.io.