App Legal
Mejl App Privacy Policy
1. Overview
Mejl is an email client for macOS and iPhone developed by Oskar Wilhelmsson. Mejl is designed to process email and AI features locally on your device. This App Privacy Policy explains what information the app accesses, how it is used, and what stays on your device.
This policy covers the Mejl apps for macOS and iPhone. For the mejl.ai website, cookies, and website analytics, see the Website Privacy Policy.
2. Data Handled on Your Device
Mejl is designed to keep your data on your device. The app may access and store:
- Email content and metadata. When you connect Gmail or Outlook, Mejl downloads and stores your email on your device so it can display, search, draft, and sync your mailbox.
- Drafts and messages you create. Messages and drafts you write in Mejl are stored locally on your device. If you save a draft to a connected Gmail or Microsoft account, that draft may also be stored by that provider. When you send an email, it is transmitted through your connected mail provider and delivered to the recipient's mail server.
- Account credentials. For Microsoft accounts, Mejl stores OAuth access and refresh tokens issued by Microsoft. For Gmail accounts, Mejl stores the Google app password you provide for IMAP/SMTP access. These credentials are stored in Apple Keychain on the device where you connect the account: macOS Keychain on Mac and iOS Keychain on iPhone. Mejl never requests or stores your normal email account password.
- Local indexes and AI data. Search indexes, embeddings, AI settings, and local model files are stored on your device so Mejl can provide local search and local drafting features. On iPhone, a supported local AI model may be included with the app.
- Speech input. If you use dictation, Mejl uses Apple speech-recognition features on macOS or iPhone to convert your speech into text for the draft or AI prompt field. Mejl does not store audio recordings or send them to Mejl-operated servers. Speech recognition may be handled by Apple according to your device settings and Apple's privacy terms.
Mejl does not collect analytics, telemetry, or crash reporting on Mejl-operated servers.
3. How Mejl Uses Your Data
The app uses this information only to provide its features:
- Displaying your inbox and email threads.
- Saving drafts and sending messages you create.
- Enabling local full-text and semantic search across your emails.
- Running local AI-assisted drafting on your device.
- Converting speech input into text when you choose to use dictation.
4. Third-Party Services
Mejl integrates with the following third-party services:
- Google (Gmail / Google Workspace). When you connect a Google account, Mejl uses Gmail IMAP/SMTP with a Google app password to read, sync, save drafts, and send mail. Your use of Google services is subject to Google's Privacy Policy.
- Microsoft (Outlook / Microsoft 365). When you connect a Microsoft account, Mejl uses Microsoft's OAuth 2.0 flow and the Microsoft Graph API to read, sync, save drafts, and send mail. Your use of Microsoft services is subject to Microsoft's Privacy Statement.
- No external AI APIs. Mejl uses local, on-device AI inference only. Email content is not sent to OpenAI, ChatGPT, or any other external AI API by the app.
- Remote email content. Remote images and styles are blocked by default. If you choose to load remote content for a message, trusted sender, or all messages, Mejl may connect to servers selected by the email sender. Those servers may receive request information, such as your IP address and browser or device context, and may be able to determine that the message was opened.
Mejl communicates with the mail providers you explicitly connect to sync and send email for your account. It contacts sender-selected servers only when you choose to load remote email content.
5. Data Retention and Deletion
Mejl does not store Google user data or Microsoft user data on Mejl-operated servers.
If you connect Gmail or Outlook, Mejl stores a local cache of mailbox data on your device so the app can function as an email client. That locally stored data is retained on your device until you remove it.
You can remove locally stored mailbox data by:
- disconnecting the account and choosing Delete Local Data in the app;
- deleting Mejl and its associated local app data from your device; or
- otherwise removing the app's local data from your device.
OAuth access and refresh tokens, and Gmail app passwords where applicable, are stored separately in Apple Keychain. Disconnecting an account removes Mejl's local Keychain copy on that device. For Gmail app passwords, you can also revoke the app password in your Google Account.
Deleting local data from Mejl removes Mejl's local copy from your device. It does not automatically delete emails, synced drafts, sent mail, labels, or other data that remain stored in your Google or Microsoft account. Data that remains with Google or Microsoft is subject to their own retention and deletion policies.
6. Data Storage and Security
Mejl stores email data, settings, indexes, OAuth tokens, and Gmail app passwords where applicable in local app storage and Apple Keychain on your Mac or iPhone. Mejl does not operate a cloud backend for your mailbox data.
If you delete Mejl or its associated data from your device, the locally stored app data is removed from that device.
7. Children's Privacy
Mejl is not intended for children under the age of 13. If you believe a child has used Mejl in a way that resulted in personal information being stored through the app, please contact us at info@mejl.ai so the matter can be addressed.
8. Changes to This Policy
This App Privacy Policy may be updated from time to time. Changes will be posted at mejl.ai/app-privacy with an updated "Last updated" date. Continued use of Mejl after changes constitutes acceptance of the revised policy.
9. Contact
For any questions or concerns about this App Privacy Policy, please reach out at info@mejl.ai.