Sample document — this placeholder text is for design and layout only. It is not legal advice and has not been reviewed by counsel. Replace with your reviewed policy before publishing.
This Privacy Policy explains what information MailHulk ("we", "us") collects, how we use it, and the choices you have. It applies to our website, dashboard, and API.
1. Information we collect
- Account data. Name, work email, and organization when you sign up, plus billing details processed by our payment provider.
- Usage data. API requests, dashboard activity, IP address, and device/browser metadata used to operate and secure the service.
- Email content. Messages delivered to inboxes you create, including headers, bodies, links, and attachments — the core data you ask us to capture on your behalf.
2. How we use information
- To provide, maintain, and improve the service and to deliver captured email to you over protocol, API, and webhooks.
- To authenticate requests, prevent abuse, and keep the platform secure.
- To communicate about your account, service changes, and support requests.
3. Email content & retention
- Captured messages are retained according to your plan — 3 days on Dev, 30 days on Team, and configurable retention (including instant purge) on Business.
- You can delete individual messages or destroy an inbox at any time via the API or dashboard; deletion is permanent.
- We treat email content as confidential and access it only as needed to operate the service or as required by law.
4. Sharing & sub-processors
- We do not sell your data. We share it only with sub-processors that help us run the service (hosting, payments, email delivery) under contractual safeguards.
- We may disclose information if required by law or to protect the rights, safety, and security of our users and the platform.
5. Your rights
- Depending on your location, you may have the right to access, correct, export, or delete your personal data.
- To exercise any of these rights, contact us and we will respond within the timeframe required by applicable law.
6. Security
- Data is encrypted in transit (TLS) and at rest. Protocol access uses TLS on ports 993 and 995.
- Access to production systems is restricted, logged, and reviewed. No system is perfectly secure, but we work hard to protect your data.
7. Cookies
- We use essential cookies to keep you signed in and to secure the dashboard. We use minimal, privacy-respecting analytics to understand product usage.