Security & Privacy
Your data stays in your Google account.
No backend. No shared database. No data broker deals. Just your Google account, your Gemini API key, and the alert channels you choose.
🔒
Runs in your Google account
Everything executes in Google Apps Script under your own OAuth grant. We have no backend that sees your mail.
🔑
Encrypted at rest
Credentials, rules, and settings are stored in Google's encrypted UserProperties — private to your script.
🛡️
Annual security review
Completes Google's CASA (Cloud Application Security Assessment) on the cadence Google requires for Gmail restricted scopes.
🇺🇸
US-only, CCPA-aligned
Currently offered exclusively to US users. Subprocessor list and CCPA / 15-state privacy disclosures in the privacy policy.
Why our polling is hourly — and why that's a feature
Google Workspace caps add-on background polling at once per hour minimum. Many email-monitoring products bypass that cap by running their own backend that polls Gmail every minute and pushes results back. To do that, those products must:
- Store your Gmail OAuth refresh tokens on their servers
- Route every email's content through their infrastructure
- Read and process each message outside your own Google account
We deliberately don't. emAIl Sentinel runs entirely inside your own Google account. Your email content never reaches our servers — we never see, store, or process it. The only places your email data ever goes are the Google Gemini API (called with your API key) and the alert channels you configure.
The 1-hour polling floor is the cost of that architecture, and we think it's worth paying. Need an immediate check? Click Scan email now — available on every plan, anytime.