Privacy policy
Fanout ("Fanout", "we", "us") is a mail merge service at fanout.oddete.com, operated by Oddete. It lets you send personalized emails from your own Gmail account. This policy explains what information we access, why, how we protect it and how you can delete it. Contact: oddete.contact@gmail.com.
In short
- Fanout asks Google for permission to send email as you. It cannot read, search, list, change or delete anything in your mailbox.
- We never store your recipient lists, email subjects or email bodies.
- We do not sell your data, use it for advertising, or use it to train AI or machine learning models.
- You can delete your account and revoke access at any time.
Google user data we access and why
When you sign in with Google you are asked to grant the permissions below. We request nothing else.
| Google permission | What we receive or can do | Why we need it |
|---|---|---|
openid, email, profile | Your Google account ID, email address, name and profile picture URL. | To sign you in, to identify your account and enforce your daily allowance, to show who is signed in, and to set your name on the emails you send. |
https://www.googleapis.com/auth/gmail.send | Permission to send email from your Gmail account. This does not allow reading, listing, searching, modifying or deleting any message. | To deliver the personalized emails you compose, one per recipient, when you press Send or call our API. Gmail keeps a copy of each sent message in your Sent folder, as it does for any email you send. |
How we use Google user data
- We use it only to provide the features you ask for: signing in and sending the emails you compose.
- We do not use it for advertising, marketing profiles or credit decisions, and we never sell it.
- We do not use it to develop, improve or train generalized AI or machine learning models.
- We do not transfer it to anyone except as needed to provide the service (Google delivers your emails), to comply with the law, or to protect against abuse or security threats.
- Our staff do not read your data. We only look at it with your explicit consent for a support request, where needed to investigate abuse or security issues, or where the law requires.
Limited Use disclosure
Fanout's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
What we store, how we protect it and how long we keep it
| Data | How it is protected | Retention |
|---|---|---|
| Account record: Google account ID, email, name, profile picture URL | Stored in a database on a server with restricted access. | Until you delete your account. |
| Google refresh token (lets us send when you press Send or call the API) | Encrypted at rest. The encryption key is kept separately from the database. | Until you delete your account, at which point it is deleted and revoked at Google. |
| Google access token | Short-lived. Held in server memory only, never written to disk. | Up to one hour. |
| Sign-in sessions and API keys | Only one-way hashes are stored. We cannot read your session or key. | Sessions last up to 14 days or until you sign out. Keys last until you revoke them or delete your account. |
| Usage record: the time and number of emails you send | Contains no recipient or content data. | Automatically removed 24 hours after each send. It is kept for that period even if you delete your account, so the daily allowance cannot be reset by deleting and recreating an account. |
| Recipient lists, subjects and message bodies | Never written to disk or a database. They exist in your browser and in server memory only while a send is running. | Not retained. |
| Send results (recipient address, name, sent or failed) | Held in server memory only, visible only to you. | One hour after a send finishes, or until the server restarts. |
| Web server logs: IP address, time and requested URL | Access restricted to the server administrator. | Up to 14 days. |
| Application logs: a short account identifier and send counts | Never contain recipient addresses, subjects or message content. | Kept in a small size-limited log that is overwritten as it fills, typically covering a few days. |
| Your email draft (subject, body, CC) | Saved only in your own browser's local storage. It is not sent to us. | Until you clear your browser data or delete your account in the console. |
Who we share data with
We do not sell or rent data and we do not share it with advertisers or data brokers. The only other parties involved are:
- Google, which provides sign-in and delivers the emails you send through Gmail, under its own privacy policy.
- Our hosting provider. The service runs on infrastructure hosted on Google Cloud.
- The recipients you choose. They receive emails from your Gmail address, as if you had sent them yourself.
We may disclose information if the law requires it or to protect the rights and safety of users or the service.
Cookies and local storage
- A secure, HTTP-only session cookie keeps you signed in for up to 14 days.
- A short-lived cookie protects the Google sign-in step against forgery.
- Local storage in your browser keeps your email draft.
- We do not use advertising or analytics cookies or trackers.
Your choices, access and deletion
- Delete your account yourself. Open the Console, go to API and account, and choose Delete my account. This deletes your account record, refresh token, sessions and API keys, and revokes Fanout's access at Google.
- Revoke access at Google. Visit myaccount.google.com/permissions and remove Fanout. Fanout can no longer send as you. Use Delete my account afterward to remove your record, or ask us to.
- Ask us. Email oddete.contact@gmail.com to see, correct or delete your data. We respond within 30 days.
Security
All traffic uses HTTPS. Refresh tokens are encrypted at rest, sessions and API keys are stored only as hashes, and the service runs in an isolated container with minimal privileges. Recipient data and email content are never stored. No system is perfectly secure. If a breach affected your data, we will notify you as the law requires. You are responsible for keeping your API keys private.
Children
Fanout is not directed to children under 13 and we do not knowingly collect their data.
Changes to this policy
We will update the date above when this policy changes. We will not expand how we use Google user data beyond what is described here without asking for your consent again.
Contact
Oddete, oddete.contact@gmail.com. See also our terms of use.