Privacy Policy
Last updated: October 10, 2026
The short version
GotEmail is a mail app that runs on your Mac. Your mail travels directly between your Mac and your email providers; it never passes through servers of ours, and we never see it. GotEmail has no accounts of its own and contains no analytics, advertising or tracking.
Your email
- Mail stays between your Mac and your provider. GotEmail connects from your Mac to the mail servers of the accounts you add: IMAP to read and organize your mail, SMTP to send it. Messages, attachments and folders are fetched from those servers when you look at them. We do not receive, store or read any of it.
- Settings and passwords stay on your Mac. Each account's name, address and server settings are saved in GotEmail's preferences on your Mac. Passwords and sign-in tokens are saved in the macOS Keychain on your Mac.
- Attachments you open are written to a temporary folder on your Mac, which macOS empties on its own.
- Images from the web inside messages load so that mail looks as it was sent. Turn "Load images in messages" off in Settings → General and they stay hidden until you load them in each message, so senders cannot use them to see when you read a message.
- Addresses you write to are remembered on your Mac to suggest them as you type.
Google accounts
The current version connects to Gmail the same way as to any other account: over IMAP and SMTP, with an app password you make in your Google Account. The points below describe Sign in with Google, for versions of GotEmail that offer it.
- If you sign in with Google, GotEmail asks Google for access to your Gmail (the
https://mail.google.com/scope) and for your email address. It uses that access only to do what you see in the app: show, search, organize, delete and send your mail, and tell you when new mail arrives. - You sign in on Google's own page; GotEmail never sees your Google password. Google gives GotEmail a sign-in token, which is kept in your Mac's Keychain and used only to connect to Gmail from your Mac.
- Your Gmail data is not sent to us or to anyone else. It is not sold, not used for advertising, and not used to train AI models, and no person reads it.
- GotEmail's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
- You can remove GotEmail's access at any time at myaccount.google.com/permissions. Removing the account in GotEmail deletes its token from your Mac.
Microsoft accounts
Outlook.com, Hotmail, Live and Microsoft 365 accounts sign in with Microsoft, because Microsoft's mail servers take no passwords over IMAP and SMTP.
- When you sign in with Microsoft, GotEmail asks Microsoft for access to your mailbox over IMAP and SMTP (the
IMAP.AccessAsUser.AllandSMTP.Sendpermissions) and for your email address. It uses that access only to do what you see in the app: show, search, organize, write and send your own mail on your Mac. - You sign in on Microsoft's own page; GotEmail never sees your Microsoft password. Microsoft gives GotEmail a sign-in token, which is kept in your Mac's Keychain and used only to connect to your mailbox from your Mac.
- Your mail is not sent to us or to anyone else. It is not sold, not used for advertising, and not used to train AI models, and no person reads it.
- You can remove GotEmail's access at any time at account.live.com/consent/Manage (personal accounts) or myapps.microsoft.com (work and school accounts). Removing the account in GotEmail deletes its token from your Mac.
Other network requests the app makes
- AI drafts and summaries. When you ask GotEmail to draft an email, what you typed and the conversation about that draft go to GotEmail's service and on to OpenAI, which writes the draft. When you ask for a summary, the text of that message or conversation goes the same way and comes back as a few sentences. Nothing is sent unless you ask, and OpenAI does not train on it under its API terms. A licensed app sends its license key with the request so the service can tell it is yours; an unlicensed one sends an anonymous device identifier, which counts its free drafts. If you add your own OpenAI or Anthropic API key in Settings, those requests go straight from your Mac to that provider on your own account, and nothing passes through GotEmail's service.
- Sender icons. To show a sender's logo next to their messages, the app fetches the icon of the sender's domain from that domain itself (for example its favicon), once per domain, and keeps it on your Mac. No third party is involved, and nothing is fetched for personal addresses at the big webmail providers.
- Sign in with Google. When you sign in or your access is renewed, GotEmail talks to Google's sign-in service (accounts.google.com and oauth2.googleapis.com).
- Sign in with Microsoft. When you sign in or your access is renewed, GotEmail talks to Microsoft's sign-in service (login.microsoftonline.com).
- License activation and validation. Your license key, the name of your Mac and an anonymous device identifier (a one-way hash of your Mac's hardware ID) are sent to our payment provider, Polar, to activate the license and to check now and then that it is still valid.
- Update checks. The app fetches a small file from gotemail.shipcat.app to see whether a new version is available, and downloads the update from the same site.
- Feedback. Send Feedback opens a new message from your own account to our support address, with the app version and your macOS version under your text; it goes out like any other mail you send, and nothing is sent unless you press Send. Before you have added an account, a small form sends the same things to us by email instead, with the email address you typed, if any.
This website
gotemail.net and gotemail.shipcat.app count their visits with Open Analytics. It sets no cookies: it keeps a little state in your browser's local storage to tell one visit from the next, honours your browser's Do Not Track setting, and records no personal data. Otherwise the site uses no tracking. Both are hosted by Cloudflare, which processes technical data such as IP addresses to deliver and protect them.
Payments
Purchases are processed by Polar as merchant of record. Your payment details go to Polar, not to us. Their privacy policy is at polar.sh/legal/privacy.
Changes
If this policy changes, the new version is published on this page with a new date.
Contact
Questions? Write to support@voprexlabs.com.