Inbox Triage

Privacy Policy

Operated by Inbox Triage (open source). Contact: inbox-triage-support@googlegroups.com.

What Inbox Triage does

Inbox Triage adds labels to incoming Gmail messages (“Triage/Needs You”, “Triage/Updates”, “Triage/For You”, “Triage/Later”, “Topics/Shopping”, plus “Triage/Junk” if you mark anything as junk) on a schedule you choose. It never sends, deletes, archives, forwards, or marks email as read, and never moves email to Spam.

Google user data we access

How it's used and shared

Chrome and Brave extension

The optional extension adds a dashboard to Gmail. Its content script reads the Gmail tab title to identify the open account and detect unread-count changes; it does not read message bodies from Gmail's page. Its service worker sends the account address and a revocable server access token to your selected Inbox Triage server to fetch label summaries and request a sync. The dashboard displays recent senders and subjects returned by the server. The extension stores the selected server address, per-account server tokens, and dashboard preferences in browser storage, but no Google OAuth token, AI key, message body or subject. Its Gmail page permission is needed to place the dashboard; labeling is performed by the server through the separately approved Google permission. A self-hosted server may use loopback HTTP rather than HTTPS.

What is stored

Deleting your data

Click Disconnect account in the app to remove that account's OAuth token, Jev key, settings, rules, notes summary, run history, message IDs and relationship facts from the active server, and invalidate its extension access. The app also asks Google to revoke the grant; if that request fails, remove access at myaccount.google.com/permissions. Revoking access at Google alone does not delete data from this server: use Disconnect or contact inbox-triage-support@googlegroups.com for deletion. On the hosted triage.shimoverse.com service, automated encrypted disk snapshots can retain a deleted account's data for up to seven days while the source disk remains active; other self-hosted operators may use different backup policies. Labels already added stay in Gmail; you can delete them there.

Changes

We'll update this page if data practices change. Last updated: 2026-10-02.