隱私權政策
POP to Gmail Archive · 最後更新:2026-09-08
核心原則:你的郵件內容與帳號憑證不會經過開發者營運的任何伺服器。資料路徑只有「你的 POP 信箱 → 你的裝置 → 你的 Google 帳號」。這是本應用程式的架構限制,不是可調整的設定。
1. 開發者不會取得的資料
本應用程式在你的裝置上執行。以下資料永遠不會傳送給開發者,也不會經過開發者的任何伺服器:
- 你的 POP 信箱帳號與密碼
- 你的 Google OAuth token
- 任何郵件內容、信件本文、主旨、寄件者、收件者
- 任何附件或 MIME 資料
- 你 Gmail 中的任何資料
開發者沒有可以存放這些資料的伺服器。這不是政策承諾,是系統設計上的結果。
2. 資料存放在哪裡
| 資料 | 存放位置 | 開發者可否讀取 |
|---|---|---|
| POP 密碼、Google token | 你裝置的平台安全儲存區(iOS Keychain / Android Keystore) | 否 |
| 郵件原始內容(傳輸中暫存) | 你裝置的私有目錄,封存完成後立即刪除 | 否 |
| 同步狀態(郵件識別碼、狀態、時間戳) | 你裝置上的本機資料庫 | 否 |
| 同步狀態備份 | 你自己的 Google 雲端硬碟「應用程式資料」空間,且已在裝置端加密 | 否 |
關於狀態備份
為了避免你重新安裝應用程式或更換裝置後,整個信箱被重複封存一次,本應用程式會把「哪些郵件已經封存過」的紀錄備份到你自己的 Google 雲端硬碟的應用程式專屬空間(appDataFolder)。
這份備份在離開你的裝置之前就已加密,開發者無法讀取其內容,也無法存取該空間。備份內容僅限郵件識別碼、雜湊值、處理狀態與時間戳,不包含郵件本文、附件、主旨或寄件者。
3. Google 權限的使用方式
| 權限 | 用途 |
|---|---|
gmail.insert | 將郵件寫入你的 Gmail。這是本應用程式的核心功能。 |
gmail.labels | 建立並套用一個專屬的封存標籤。 |
drive.appdata | 在你自己的雲端硬碟應用程式專屬空間存放加密的狀態備份。 |
本應用程式不會要求任何 Gmail 讀取權限,因此無法讀取、搜尋或列出你 Gmail 中的郵件。
Google API Services 使用者資料政策
本應用程式使用 Google API 取得的資訊,其使用與轉移均遵守 Google API Services User Data Policy,包含其中的 Limited Use 要求。具體而言,透過這些權限取得的資料:
- 僅用於提供使用者可見的封存功能
- 不會用於任何廣告目的
- 不會出售或轉讓給第三方
- 不會用於訓練任何人工智慧或機器學習模型
4. 開發者可能取得的少量資料
目前版本不會向開發者傳送任何資料。
未來若加入背景同步的喚醒通知功能,開發者的伺服器將僅保存以下項目,且不包含任何郵件資訊:
| 項目 | 用途 |
|---|---|
| 推播裝置 token | 作為傳送喚醒通知的目標位址 |
| 平台(iOS / Android) | 決定通知的傳送參數 |
| 同步頻率偏好 | 決定喚醒的排程間隔 |
| 匿名安裝識別碼 | 隨機產生,無法連結至你的身分 |
| 最後更新時間 | 清除長期未使用的紀錄 |
需要明確揭露的一點:即使上述資料不包含任何郵件資訊,「這筆註冊紀錄存在」本身就代表「某台裝置安裝並使用了本應用程式」。這是使用推播喚醒功能無法避免的結果。
喚醒通知的內容為空 —— 它只代表「現在可以嘗試同步」,不包含任何郵件的主旨、寄件者或內容。
5. 刪除你的資料
應用程式內的「中斷連結 / 移除帳號」功能會執行以下全部動作:
- 撤銷 Google 授權 token
- 刪除裝置上儲存的 POP 密碼與所有憑證
- 刪除裝置上的同步狀態資料庫
- 刪除所有暫存的郵件檔案
- 刪除你雲端硬碟中的狀態備份
- 刪除推播註冊紀錄(若有)
你也可以隨時在 Google 帳號權限設定中撤銷本應用程式的存取權。
已經封存到你 Gmail 的郵件不會被刪除 —— 那些郵件屬於你,存放在你自己的 Gmail 中,可依你的意願自行管理。
6. 兒童隱私
本應用程式並非針對 13 歲以下兒童設計,開發者不會刻意蒐集兒童的個人資料。
7. 政策變更
本政策若有變更,將更新本頁面頂端的「最後更新」日期。涉及資料處理方式的重大變更,將在應用程式內告知使用者。
8. 聯絡方式
對本政策有任何疑問,請聯絡:YOUR_CONTACT_EMAIL
Privacy Policy
POP to Gmail Archive · Last updated: 2026-09-08
Core principle: your email content and account credentials never pass through any developer-operated server. The data path is only "your POP mailbox → your device → your Google account". This is an architectural constraint of the application, not a configurable setting.
1. What the developer never receives
This application runs on your device. The following are never transmitted to the developer and never pass through any developer-operated server:
- Your POP mailbox username and password
- Your Google OAuth tokens
- Any message content, body, subject, sender or recipient
- Any attachments or MIME data
- Any data from your Gmail
The developer operates no server capable of storing this data. This is a consequence of the system design, not merely a policy commitment.
2. Where data is stored
| Data | Location | Developer access |
|---|---|---|
| POP password, Google tokens | Platform secure storage on your device (iOS Keychain / Android Keystore) | No |
| Raw message content (transient) | Private storage on your device; deleted immediately after archiving | No |
| Sync state (message identifiers, status, timestamps) | A local database on your device | No |
| Sync state backup | The application data folder of your own Google Drive, encrypted on-device before upload | No |
The state backup exists so that reinstalling the app or changing devices does not cause your entire mailbox to be archived a second time. It is encrypted before it leaves your device, is stored in an application-specific folder of your Drive, and contains only message identifiers, hashes, processing status and timestamps — never message bodies, attachments, subjects or senders.
3. How Google permissions are used
| Scope | Purpose |
|---|---|
gmail.insert | Write messages into your Gmail. This is the core function of the application. |
gmail.labels | Create and apply a dedicated archive label. |
drive.appdata | Store the encrypted state backup in the application data folder of your own Drive. |
This application requests no Gmail read permission. It cannot read, search or list any message in your Gmail.
Its use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Data obtained through these scopes is used solely to provide the user-facing archiving feature; it is not used for advertising, is not sold or transferred to third parties, and is not used to train any artificial intelligence or machine learning models.
4. The limited data the developer may receive
The current version transmits no data to the developer.
If a background wake-up notification feature is added in future, the developer server will store only: a push notification device token, the platform (iOS/Android), a sync frequency preference, a randomly generated anonymous installation identifier, and a last-updated timestamp. None of this includes any email information.
An explicit disclosure: even though this data contains no email information, the existence of such a record indicates that some device has installed and used this application. This is unavoidable when using push-based wake-up. The notifications themselves carry an empty payload — they signal only that a sync may now be attempted, and contain no subject, sender or message content.
5. Deleting your data
The disconnect / remove account function in the application revokes your Google authorization token and deletes: stored credentials on the device, the local sync state database, all temporary message files, the state backup in your Drive, and any push registration record.
You may also revoke access for this application at any time via your Google Account permissions settings.
Messages already archived into your Gmail are not deleted — they belong to you and remain in your own Gmail for you to manage.
6. Children privacy
This application is not directed at children under 13, and the developer does not knowingly collect personal information from children.
7. Changes to this policy
Changes will be reflected in the Last updated date at the top of this page. Material changes to how data is handled will be communicated within the application.
8. Contact
Questions about this policy: YOUR_CONTACT_EMAIL