Privacy policy
This policy describes Buyuang Mail Reader, a personal Gmail read-only tool operated by Fuadiansyah. It applies to the reader and explains how email context may be used by the connected AI assistant.
Data accessed and purpose
With the owner's consent, the reader can search and retrieve Gmail message metadata, headers, bodies, thread history, labels, and attachment metadata. The current reader does not download attachment files. Relevant email context is used only to provide owner-requested assistance, summaries, and proposed replies. Google grants read access to the whole mailbox, not just a selected thread.
Permission limits
Only https://www.googleapis.com/auth/gmail.readonly is requested and accepted. The reader does not request send, compose, modify, or full-mail permissions. Reply drafts stay in the assistant conversation or owner-controlled local files; the reader does not write Gmail drafts or change the mailbox.
Processing and sharing
OAuth authorization and Gmail requests are processed by Google. Retrieved context included in an assistant task may be processed by the configured AI provider (currently OpenAI) and by the conversation platform used by the owner, such as Telegram. Their respective service policies apply. Email-derived material is disclosed to these services only as needed to provide the requested assistance; the operator does not sell email data, use it for advertising, or authorize it for training generalized AI models.
This website is hosted by Cloudflare, which may process ordinary request information such as IP addresses for delivery and security. Mailbox contents and OAuth credentials are not hosted on this public website. There are no site analytics, tracking scripts, or cookies set by these pages.
Storage and retention
OAuth credentials are stored on the operator-controlled server with restricted file access. The reader does not create a bulk email archive or periodically index the inbox. Email content used in an assistant conversation can remain in platform conversation history or operational session records according to the platform's retention settings. Owner-requested local outputs can remain until removed. This is not a zero-retention service.
Security
The reader validates the granted scope and expected account identity, uses OAuth with state and PKCE, and does not ask for the owner's Gmail password or App Password. Credentials and mailbox data are excluded from the public site deployment. No system can guarantee absolute security.
Owner control and deletion
The owner can revoke the application's Gmail access through Google Account connections at any time. Revocation stops future access but does not automatically erase existing conversation records or local outputs. The owner can request removal of local credentials and outputs and manage chat history through the relevant platform controls.
Google API data use
Buyuang Mail Reader's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Google user data is not used for advertising or to develop, improve, or train generalized AI or machine-learning models.
Contact and changes
For access, deletion, or privacy questions, contact fuadiansyah@gmail.com. This policy will be updated if the reader's data practices change. Effective date: 6 October 2026.