Publication draft · reviewed 6 October 2026 · v0.41

Terms of use

InboxGuardian is a personal-use Windows email assistant. These draft terms describe its intended use and current limitations; they do not create a commercial service, support agreement, or guaranteed delivery service.

1. Scope of the application

The app reads connected inboxes, maintains local processing history, and optionally uses the OpenAI API to classify email, summarize it, and identify possible actions or deadlines. It is not a replacement for your email client.

Gmail access requests only https://www.googleapis.com/auth/gmail.readonly. InboxGuardian does not send, reply to, delete, archive, move, mark as read, or otherwise modify messages or mailbox rules. Its suggestions are not automatically executed.

2. Authorized personal use

Connect only accounts you are entitled to access and process. Follow the relevant mailbox provider's terms and, for school or work accounts, your organization's permissions and data-handling rules. Having access to a mailbox does not necessarily authorize sending its contents to an AI provider.

Provider or administrator approval may be required. Do not use the app to bypass an organization's consent or security policies. Browser authorization, publishing status, or these pages do not establish that Google has verified InboxGuardian.

3. Optional AI and charges

Saving an OpenAI API key enables eligible pending email content and metadata to be sent to the OpenAI API for classification, summary, and action identification, as explained in the privacy policy. Attachment contents and mailbox credentials are not sent as analysis text.

You use your own API account. Provider charges and terms apply. The app's local token-cost estimate and budget gate are not a promise of a fixed bill, a platform-wide spending cap, or free failed requests. You can remove the API key to stop subsequent AI requests; requests already submitted may still complete or incur charges.

4. Accuracy and availability

Classifications, summaries, suggested actions, and deadlines can be incomplete or wrong. No guarantee is made that every important email, fraudulent message, or deadline will be detected, or that a desktop notification will be seen.

Verify important details in the original mailbox before replying, paying, submitting information, or taking other action. Keep using your mailbox for urgent or time-sensitive matters.

Checks depend on the app running, the computer being awake, connectivity, provider availability, and valid authorization. Tokens can expire or be revoked. The current project offers no uptime SLA, guaranteed response time, or dedicated support channel.

5. Local data and stopping use

The current implementation stores email records and results locally, uses a default 30-day cleaned-body retention window, and protects app-managed login secrets using Windows Credential Manager. See the privacy policy for the maintenance timing, longer-lived metadata, and limits of deletion.

You can pause accounts, remove the AI key, exit the app, revoke provider access, or remove accounts. Removing an account clears its associated local records and app-managed account credentials without deleting the provider's messages. Re-adding does not restore deleted local history. Shared settings, the separate API key, and the cost ledger remain unless handled separately.

6. Draft status and changes

These public review drafts describe v0.41 as reviewed on 6 October 2026. They do not offer a public software download or imply a relationship with Google, Microsoft, or OpenAI. The selected host is Cloudflare Pages, as disclosed in the privacy policy. A real maintainer contact must be confirmed before adopting these drafts as final policies.

These are review drafts, not a claim of completed legal or OAuth compliance review. They do not assert a company address, legal jurisdiction, data protection officer, or commercial support obligation. Future product changes require corresponding review of the published description and policies.