Effective August 8, 2026
Privacy Policy
This policy explains how Kenzi Mail, a service operated by Kenzi, handles information when a user connects a Google account and uses the inbox dashboard.
Information we access
- Google account email address and the authorization needed to connect the selected Gmail account.
- Recent Gmail message identifiers, thread identifiers, senders, subjects, dates, labels, importance state, unread state, and Gmail-provided message snippets.
- Attachment filenames, file types, sizes, and Gmail attachment identifiers so available files can be shown in the related email card.
- Product-generated categories, priorities, summaries, recommended actions, and reply drafts.
- Basic service and security information needed to operate, protect, and troubleshoot the application.
Attachment contents are retrieved from Gmail only when the user selects a download. Kenzi Mail does not automatically send messages.
How we use information
- Display and refresh the connected user's inbox dashboard.
- Classify messages into meetings, tasks, customer requests, support tickets, and unclassified items.
- Surface unread and important mail and suggest a next action.
- Display available attachment details and download the selected file directly from Gmail at the user's request.
- Remove the Gmail unread label only after the user selects Mark as read.
- Generate an editable reply draft only after the user requests one. The user reviews and sends any reply separately.
- Maintain security, prevent abuse, and diagnose service failures.
AI-assisted processing
Kenzi Mail uses OpenAI as a service provider to classify inbox items and create user-requested reply drafts. The application sends only the message details required for those features, instructs the service not to retain response data through the API request, and does not use Google Workspace data to train generalized AI or machine-learning models.
Storage, protection, and retention
Google refresh tokens are encrypted before storage. Cached message metadata, snippets, and derived classifications are separated by the signed-in application user. Data is transmitted over encrypted connections and access to production infrastructure is limited to authorized operators and service providers.
Kenzi Mail caches attachment metadata, but it does not retain attachment file contents. A selected file is securely retrieved from Gmail and returned to the signed-in user without being sent to the AI service.
Authorization data is retained while the Google account remains connected. Cached inbox data is retained only as needed to provide the dashboard and may be deleted when the account is disconnected, when the user requests deletion, or when it is no longer operationally necessary.
Sharing and disclosure
We do not sell Google user data or share it for advertising. Information is disclosed only to infrastructure and AI service providers acting on our instructions, when the user directs the application to perform an action, or when required to comply with law or protect the service and its users.
Google API Limited Use
Kenzi Mail's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.
Your choices and deletion requests
Users may revoke Kenzi Mail from their Google Account permissions at any time. To request deletion of Kenzi Mail account data and cached Gmail-derived data, email [email protected] from the connected address. We may verify account ownership before completing the request.
Contact
Privacy questions may be sent to [email protected]. Kenzi operates from Amman, Jordan.
