Privacy policy
Last updated 18 September 2026
Three-Inbox is a private email workspace built for and used by one person, Dr Nick Azizi, operating through Persismed Pty Ltd (“we”, “us”). It is not offered to the public. This policy explains what the application does with data from the Google accounts connected to it.
What the application accesses
With your consent through Google sign-in, the application requests the Gmail permission gmail.modify for each connected mailbox. That permission is used to read messages and attachments, to change labels (for example marking a conversation read, starring, archiving or moving it to Trash), to read existing drafts and to send messages that you have written and explicitly confirmed. Sign-in itself uses only your basic Google profile (name and email address) to confirm you are the owner.
How Gmail data is used
- Messages are fetched from Gmail when you open a folder or conversation and shown to you. Message metadata (sender, subject, date, labels, snippet) is cached briefly on the server to make the inbox fast; cached entries expire within 24 hours.
- Optional AI features (summarising a conversation, suggesting a reply, plain-English search, and extracting tasks from email into the Day Sheet) send the text of the relevant conversation to the Anthropic API for processing. Attachments are never sent. These features are off until you enable them in Settings.
- Nothing is ever sent, forwarded, deleted or labelled automatically. AI only prepares drafts and suggestions; every send requires your own confirmation.
What is stored
- Google refresh and access tokens for each connected mailbox, encrypted at rest (AES-GCM) in the application’s database on Cloudflare.
- Day Sheet tasks, which may contain names and short extracts from emails, encrypted at rest in the same way.
- Workspace drafts you write, files you attach to them (stored in Cloudflare R2 until the draft is sent or discarded), saved review findings, and your settings and signatures.
- A daily morning brief built from the items above.
Message bodies and attachments read from Gmail are not retained by the application beyond the short metadata cache described above.
Google API Services User Data Policy
The application’s use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Gmail data is used only to provide the workspace features described here. It is not sold, not used for advertising, and not transferred to anyone else, except to the Anthropic API for the AI features you switch on, and to service providers (Cloudflare) that host the application. Humans do not read your Gmail data except you.
Third parties
- Cloudflare hosts the application, its database and attachment storage.
- Anthropic processes conversation text for the optional AI features under its API data terms; the application does not request that any output be stored.
- Google provides sign-in and Gmail access under your Google Account settings.
Retention and deletion
Tasks, drafts and findings remain until you delete them in the application. Disconnecting a mailbox in Settings removes its stored tokens and cached messages and asks Google to revoke the grant; you can also revoke access at any time from your Google Account permissions. Deleting the application’s Cloudflare resources removes all stored data.
Contact
Questions about this policy: nickazizi@persismed.com.au.