This service is operated by one person for their own Gmail accounts only.
With the gmail.modify scope, granted by the operator for their own
accounts: message and thread content, labels, and drafts. It can read, label,
archive, and trash mail. It cannot permanently delete anything.
OAuth refresh tokens, held as environment variables on the host so the operator does not have to re-authorise on every use. Message content is passed through in response to a request and is not written to any database, log, or file by this software.
No one. No third party receives data from this service, and nothing is sold, rented, or used for advertising, profiling, or model training. Data reaches only the MCP client the operator connects, at the operator's instruction.
Tokens persist until deleted from the host or revoked at myaccount.google.com/permissions, which immediately ends all access.
Use of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.