Legal

Privacy Policy

This policy explains what data Mailgineer processes, why we process it, and the choices you have. We built our service to collect as little as possible and never to read your mail.

Last updated: 8 October 2026

1. Our principles

  • No content scanning. We do not read or analyse the contents of your email for advertising or profiling.
  • No selling data. We do not sell your personal data.
  • Data minimisation. We collect what we need to run the Service and keep it secure.
  • You stay in control. You can export your data and close your account at any time.

2. Data we process

Account data
Name, email address, password hash, and billing details you provide when you sign up.
Domain & mailbox data
Domains you add, mailbox names, aliases, forwarding rules, and filter configuration.
Message metadata
Technical headers needed to deliver and authenticate mail (such as sending and receiving addresses, timestamps, and delivery results).
Usage & logs
Limited technical logs such as IP address, login events, and connection activity, used for security, abuse prevention, and troubleshooting.
Payment data
Processed by our payment providers; we do not store full card numbers on our servers.

3. Why we use it

  • To provide, operate, and maintain the Service.
  • To authenticate mail and keep deliverability healthy.
  • To process payments and manage your plan.
  • To detect, prevent, and respond to spam, abuse, and security incidents.
  • To provide support and communicate important service notices.
  • To comply with legal obligations.

We rely on contract performance to deliver the Service, legitimate interests for security and abuse prevention, and consent where required (for example, optional marketing messages).

4. Your email content

We do not scan the content of your messages for advertising, and we do not sell or rent it. Automated spam filtering runs on incoming mail to protect your mailbox; it works on technical signals and is not used to build advertising profiles.

Messages you store in your mailboxes remain yours. We process them only to store, transmit, back up, and deliver them, and to investigate abuse where strictly necessary and permitted by law.

5. Cookies and similar technologies

We use a small number of essential cookies and local storage to keep you logged in, remember preferences, and protect against fraud. We do not use third-party advertising cookies. Where we use analytics, it is configured to respect your privacy and can be disabled where legally required.

6. When we share data

We share data only with:

  • Service providers who help us run the Service, such as payment processors, datacentre providers, and email delivery infrastructure, under contracts that protect your data.
  • Authorities where we are legally required to do so, or where necessary to investigate serious abuse or protect rights and safety.
  • Successors in the event of a merger or acquisition, with notice to you as required by law.

7. How long we keep data

We keep account data for as long as your account is active and for a limited period afterwards to meet legal, tax, and accounting requirements and to resolve disputes. Operational logs are kept for a short, defined period. When data is no longer needed, we delete or anonymise it.

8. Your rights

Depending on where you live, you may have the right to access, correct, export, or delete your personal data, to restrict or object to certain processing, and to withdraw consent. You can exercise many of these directly in your dashboard, or contact us and we will respond within the time required by law.

If you are in the EU/EEA or UK, you also have the right to lodge a complaint with your local data protection authority.

9. Security

We protect data with encryption in transit, access controls, monitoring, and regular patching. No system is perfectly secure, but we take security seriously and investigate incidents promptly. If a breach affects you, we will notify you and any relevant regulators as required by law.

10. International transfers

We may process data in countries other than yours. Where we transfer personal data across borders, we use appropriate safeguards such as standard contractual clauses. Where available, you may choose a data residency region for your mail data.

11. Changes to this policy

We may update this policy from time to time. We will revise the "last updated" date and, for material changes, provide additional notice by email or in the dashboard.

12. Contact us

For privacy questions or to exercise your rights, email [email protected].