← Back to Home SweepYourMail

Privacy Policy

Last Updated: December 2024

Our Privacy Commitment: SweepYourMail is built on a fundamental principle: your email data should never leave your device. We have designed our extension with a strict local-only architecture. We operate no servers, collect no data, and have no way to access your information.

The Most Important Points

  1. 100% LOCAL PROCESSING - All operations happen in your browser
  2. NO REMOTE SERVERS - We don't operate any servers or cloud infrastructure
  3. NO DATA TRANSMISSION - Your data is never sent anywhere except Gmail's official API
  4. NO DATA COLLECTION - We collect zero user data
  5. NO ANALYTICS - We don't track how you use the extension
  6. NO THIRD PARTIES - We don't share anything with anyone

Overview

SweepYourMail is a free Chrome extension that helps users clean and organize their Gmail inbox by grouping emails by sender and enabling bulk actions. This privacy policy explains what data we access, how we use it, and how we protect your privacy.

Data We Access

Email Metadata (Read-Only Access)

When you use SweepYourMail, we access the following email metadata through the official Gmail API:

Data TypePurpose
Sender nameTo group emails by sender
Sender email addressTo identify unique senders
Email subject linesFor category detection (newsletters, promotions, etc.)
Email datesTo show date ranges and sorting
Email labelsTo understand inbox organization
Email sizeTo show storage usage statistics
Message IDsTo perform actions on specific emails

What We NEVER Access

How We Use Your Data

Local Processing Only

All email metadata is processed entirely within your browser:

  1. Fetching: Email metadata is fetched directly from Gmail API to your browser
  2. Processing: Analysis and grouping happens in browser memory
  3. Storage: Only aggregated statistics are cached in your browser's IndexedDB
  4. Display: Results are shown in the extension sidebar
  5. Actions: Your commands are sent directly to Gmail API

At no point does any data pass through our infrastructure, because we have no infrastructure.

Actions We Perform

When you explicitly request it, SweepYourMail can perform these actions through the Gmail API:

ActionWhat HappensUser Confirmation
DeleteMoves emails to Gmail's TrashRequired - modal confirmation
ArchiveRemoves Inbox label from emailsRequired - modal confirmation
Mark as SpamMoves emails to Gmail's Spam folderRequired - modal confirmation
Block SenderCreates a Gmail filter to auto-delete future emailsRequired - modal confirmation
Mark as ReadSets email status to readRequired - modal confirmation
Empty SpamPermanently deletes all spam emailsRequired - warning modal with "cannot be undone"
Empty TrashPermanently deletes all trash emailsRequired - warning modal with "cannot be undone"
Permanent Deletion: The "Empty Spam" and "Empty Trash" features permanently delete emails and cannot be undone. These actions always require explicit user confirmation through a warning dialog that clearly states the irreversible nature of the action.

OAuth Scopes Explained

SweepYourMail requests the following Google OAuth scopes to function:

gmail.readonly

Purpose: Read email metadata (sender, date, labels, size) to group and display emails by sender.

What we read: Only email headers and metadata. We NEVER read email body content.

Why needed: Users need to see which senders have the most emails to decide what to clean.

gmail.modify

Purpose: Perform user-initiated bulk actions on emails.

Actions enabled: Archive, mark as spam, move to trash, add/remove labels, mark as read/unread.

Why needed: Users need to perform cleanup actions on their emails. Every action requires explicit user confirmation via a modal dialog.

https://mail.google.com/ (Full Access)

Purpose: Required ONLY for permanent deletion operations.

Actions enabled: "Empty Spam" and "Empty Trash" - permanently delete all emails in these folders.

Why needed: Gmail's batchDelete API requires this scope. The gmail.modify scope only allows moving to trash, not permanent deletion.

Safeguards:

  • Permanent deletion is ONLY available for Spam and Trash folders
  • Users must confirm via a warning modal before any permanent deletion
  • The modal explicitly states "This action cannot be undone"

Chrome Extension Permissions

PermissionWhy We Need It
identityTo authenticate with Google OAuth 2.0 securely
storageTo save your preferences locally in Chrome
alarmsFor optional background sync of new emails
notificationsTo notify you when background operations complete
offscreenTo enable background indexing when Gmail tab is not active

Third-Party Services

SweepYourMail communicates with only these services:

We do not use:

Data Flow Diagram

Your BrowserGmail API (googleapis.com)

That's it. Nothing else. No intermediary servers.

Data Security

Your Rights and Controls

Access Your Data

View locally stored data via Chrome DevTools (F12 → Application → IndexedDB → SweepYourMail)

Delete Your Data

Revoke Gmail Access

Remove SweepYourMail's access to your Google account at any time:

myaccount.google.com/permissions

Children's Privacy

SweepYourMail is not intended for use by children under 13 years of age. We do not knowingly collect any information from children.

Changes to This Policy

We may update this privacy policy from time to time. Significant changes will be communicated through extension update notes in the Chrome Web Store. The "Last Updated" date at the top of this policy indicates when it was last revised.

Open Source Philosophy

While SweepYourMail is not open source, we operate with transparency principles. Our architecture is deliberately simple and local-only, making it verifiable that no data leaves your browser.

Contact

For questions, concerns, or requests regarding this privacy policy:

Summary

SweepYourMail processes your email metadata 100% locally to help you organize your inbox.

  • ✓ We have NO servers - zero infrastructure
  • ✓ We collect NO data - nothing is sent to us
  • ✓ We share NOTHING with third parties
  • ✓ Your emails NEVER leave your browser
  • ✓ Every action requires your explicit confirmation
  • ✓ You can delete all data instantly by uninstalling
  • ✓ Extension is FREE with no monetization of user data

Your privacy is not just a feature - it's our architecture.