Privacy Policy
Last updated: 7 October 2026
ClearMyInbox is operated by Clear My Inbox LTD, registered in England and Wales. We take your privacy seriously. This policy explains what data we collect, how we use it, and what rights you have over it - in plain English, not impenetrable legalese.
What personal data we collect
- Account information - your email address and a hashed password when you register.
- OAuth tokens - encrypted access and refresh tokens from Google or Microsoft when you connect an email account.
- IMAP credentials - if you connect via IMAP, your email address and app password are encrypted at rest using AES-256 and are never logged or shared.
- Payment information - Stripe handles all payment processing. We store your Stripe customer ID and subscription status but never store card numbers, CVVs, or bank details.
- Scan results - sender addresses, subject lines, and unsubscribe link URLs found during scans. We do not store email body content.
How we use your email data
When you run a scan, or when we check for new senders, ClearMyInbox looks at the List-Unsubscribe header, the sender address, the subject line, and the date of each email. Because many senders only include their unsubscribe link inside the email itself, the scan also parses the email's HTML body in memory, during the scan only, to locate that link. The body is discarded as soon as the scan moves on - we keep the unsubscribe URL it contained, never the content.
What we do NOT do:
- We do not store or index email body content - bodies are parsed transiently during a scan and immediately discarded.
- We do not share, sell, or transfer your email data to third parties for advertising.
- We do not use your email data for profiling or targeted advertising.
- We do not retain raw email content after a scan completes.
Emails we send you about your clean-up
About two weeks after you unsubscribe from senders with ClearMyInbox, we send you one email with the result: how many of your unsubscribes worked, and which senders are still emailing you. We use only information we already hold: the senders you unsubscribed from and what our later checks found. The email names up to five senders that are still emailing you, by name and address. We send it because it is part of the service you asked for: finishing what you started. Our lawful basis is our legitimate interest in telling you how your clean-up went. Every one of these emails has a "Stop these emails" link. One click stops it, with no sign-in. It stops this email and our other product emails. It does not stop account or security emails.
Checking for new senders
If you use the free plan and your first scan found at least 100 senders, we also check your connected mailbox about once a month, without you starting a scan, to find senders that have started emailing you since we last looked. This applies to Gmail, Outlook and mailboxes connected with an app password (IMAP). The check never reads the body of an email. It looks at message headers only and uses just the sender, the date and the unsubscribe headers. For Outlook, Microsoft sends us all of a message's headers, such as the subject line; we use only those three and keep nothing else. For each sender we keep its name and address, its unsubscribe link, how many emails it sent you, and when we first and last saw it. If we find at least three new senders, we send you one email a month that names up to five of them. We do this because we have a legitimate interest in keeping your inbox clean after you have cleaned it. Every one of these emails has a "Stop these emails" link. One click stops the email and also stops this monthly check. It does not stop account or security emails. If you disconnect the mailbox, the check stops and we keep the senders it found, like your normal scan results. If you delete your account, the check stops and everything it found is deleted.
Google API Services User Data Policy
ClearMyInbox's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
- We only request the minimum OAuth scopes needed:
gmail.readonlyto scan for unsubscribe links, andgmail.modify(optional) to trash emails on your behalf. - We do not sell, share, or use your Google data for advertising purposes.
- We do not store email content - only metadata (sender, subject, date, unsubscribe URLs). Message bodies are parsed in memory during a scan to locate unsubscribe links and are never retained. When a sender provides no
List-Unsubscribeheader, our optional AI fallback sends a short body excerpt to our AI provider solely to find the unsubscribe URL - see "Third-party services" below. - You can revoke ClearMyInbox's access to your Google account at any time from your Google Account permissions page.
Microsoft data handling
The same principles apply to Microsoft (Outlook/Hotmail) accounts:
- We request only the minimum permissions needed to read email headers and metadata.
- We do not sell, share, or use your email data for advertising.
- We do not store email body content.
- OAuth tokens are encrypted at rest and you can revoke access at any time from your Microsoft account settings.
IMAP credential security
If you connect an email account via IMAP (such as Yahoo, iCloud, Fastmail, or ProtonMail Bridge), your app password is encrypted at rest using industry-standard encryption. IMAP credentials are:
- Encrypted using AES-256 before being stored in our database.
- Never logged in application logs or error reports.
- Never shared with any third party.
- Deleted immediately when you disconnect the account.
Payment processing
All payment processing is handled by Stripe. When you subscribe to a paid plan, your card details are sent directly to Stripe's PCI-compliant servers. We never see or store your card number or CVV. We only store your Stripe customer ID and subscription status to manage your plan.
Analytics
We use PostHog in cookieless mode for product analytics. PostHog's autocapture feature is turned off: we record only the specific events we choose to send.
- Page views are recorded automatically as you navigate the app.
- Named product events are recorded, such as starting a scan or clicking Unsubscribe - never the contents of any input field, password, or email body.
- If the app hits an error in your browser, we record the error type and message, a shortened technical trace and the page path, with any email address removed.
- We do not set any tracking cookies on your browser.
- We do not track you across other websites.
- Analytics data is aggregated and used only to improve the product.
Advertising measurement
We run ads on Google to reach people looking for a tool like this. To know, in aggregate, whether those ads work, we do the following - entirely on our servers, with no Google script, cookie, or tracking pixel on this site:
- If you arrive from a Google ad, the landing URL contains an ad-click reference ID added by Google (for example
gclid). We hold that ID in memory for your visit and discard it unless you sign up. - If you sign up during that visit, we store the click ID with your account and later report it to Google Ads together with the signup time, so Google can count that the ad click led to a signup.
- We send Google nothing else: no email address, no name, no IP address, and never anything from your inbox.
- Our lawful basis is our legitimate interest in measuring our own advertising. The stored click ID is deleted with your account.
Data retention and account deletion
We keep your data only as long as your account is active. When you delete your account:
- Your account details (email, hashed password) are permanently deleted.
- All stored OAuth tokens and IMAP credentials are permanently deleted.
- All scan results and subscription data are permanently deleted.
- Your Stripe subscription is cancelled (Stripe retains its own records per their privacy policy).
Scan results are retained while your account is active so you can review past scans. If you disconnect an email account without deleting your overall account, the tokens for that account are deleted immediately but your scan history is preserved.
Inactivity-based deletion. Accounts that have not signed in for 24 months are flagged for removal. We send a reminder email 30 days before deletion at the address on file; if you do not sign in or reply, the account and all associated data are deleted on the 24-month anniversary. Stripe records continue to live at Stripe under their own retention policy. Active subscribers (Pro / Lifetime) are exempt from this sweep regardless of last sign-in.
Third-party services
ClearMyInbox uses the following third-party services:
- Stripe - payment processing and subscription management.
- Hookdeck - delivery monitoring for Stripe payment notifications. It receives a copy of each notification, which can include your name, email address, billing address, the plan and amount, and for a refund the card brand, last four digits and expiry date of your card - never the full card number or security code.
- Microsoft Azure - application hosting and database storage.
- Azure Communication Services - sends our emails to you, including account and service emails and the product emails described above.
- AI provider (currently OpenRouter, routing to Google Gemini and DeepSeek) - powers two Pro features: spam scoring (we send sender address, subject line, and email count - no email body) and unsubscribe-link extraction fallback (when a sender doesn't include a List-Unsubscribe header, we send up to the first 2,000 characters of the email's HTML body so the provider can identify the unsubscribe URL). The provider processes these requests under their data-processing terms and does not retain prompts beyond the API call.
- PostHog - cookieless product analytics.
Marketing Box Guard browser extension
Our free browser extension, Marketing Box Guard, runs entirely in your browser and sends us nothing by default. It has one optional feature, off by default: if you enable "Contribute anonymized reports" in the extension's settings, the extension sends us the domain name (for example, example.com) of websites it finds showing a pre-checked marketing consent box. That is the only thing sent: no page addresses, no form contents, no account, and no identifier that could link a report to you.
We store the reported domain and a running count, and we do not store your IP address with reports. Requests to our servers pass through standard rate limiting in transit, like any web service. We use these reports to produce aggregate statistics and public reporting about the use of pre-checked marketing consent boxes, and we only publish information about a website after a human has verified it. You can turn the feature off at any time in the extension's settings, and no further reports will be sent. The extension has its own privacy policy, available from its settings page and at clearmyinbox.ai/marketing-box-guard/privacy.
Your rights under GDPR
If you are in the European Economic Area (EEA) or United Kingdom, you have the following rights under the General Data Protection Regulation:
- Right of access - you can request a copy of all personal data we hold about you.
- Right to rectification - you can ask us to correct any inaccurate data.
- Right to erasure - you can ask us to delete your account and all associated data.
- Right to data portability - you can request your data in a machine-readable format.
- Right to object - you can object to processing of your data in certain circumstances.
- Right to restrict processing - you can ask us to limit how we use your data.
To exercise any of these rights, email us at privacy@clearmyinbox.ai. We will respond within 30 days.
Contact us
If you have any questions about this Privacy Policy or how we handle your data, contact us at: