01 Scope
This policy applies to the private Laguit Labs Mail Agent integration and its use of Google account data. The integration is operated for one account owner and is not offered as a public consumer service.
02 Google data accessed
The application requests only the following Google OAuth scope:
https://www.googleapis.com/auth/gmail.readonly
This read-only scope can expose email messages and related data, including:
- Message and thread identifiers
- Sender and recipient information
- Subject lines and timestamps
- Message bodies
- Gmail labels and metadata
- Attachments when explicitly retrieved
The integration cannot use this scope to send, modify, or delete email.
03 How data is used
Gmail data is used only to provide functions requested or configured by the account owner, such as:
- Searching and retrieving messages
- Summarizing messages
- Identifying the intended recipient of forwarded mail
- Extracting verification information when requested
- Detecting account-security and recovery notifications
- Supporting operational inbox workflows
04 AI processing
Selected email content may be processed by configured AI or model service providers when necessary to perform an owner-requested task. Access is initiated by or configured for the account owner.
Gmail data is not sold, used for advertising, or used to build advertising profiles. Third-party processors are used only to provide requested functionality and are subject to their applicable contractual and privacy controls.
05 Storage and retention
OAuth credentials and refresh tokens are stored in an access-controlled environment operated for the account owner. Gmail remains the system of record. The integration does not intentionally create a permanent duplicate archive of the entire mailbox.
Limited outputs, summaries, logs, or audit metadata may be retained when needed for operation, troubleshooting, security, or owner-requested workflows. Data is minimized and removed when no longer needed for those purposes.
06 Sharing
Google user data is not sold or shared for advertising. Limited data may be provided to service providers acting as processors when necessary to run hosting, infrastructure, security, or AI-assisted functionality.
07 Security
Reasonable safeguards are used to protect data, including:
- OAuth authorization rather than storage of the Gmail password
- A least-privilege, read-only Gmail scope
- Access-controlled credential storage
- Restricted application access
- Audit and monitoring practices where applicable
No method of storage or transmission can be guaranteed to be completely secure.
08 User control and revocation
The account owner can review or revoke the integration’s Google access at Google Account permissions. For access or deletion questions, contact privacy@laguitlabs.com.
09 Google API policy
Laguit Labs Mail Agent’s use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
10 Changes and contact
Material changes to this policy will be reflected on this page, including an updated date. Questions may be sent to privacy@laguitlabs.com.