Effective 11 September 2026

Privacy Policy

Thorsson Ops is a private operational software service. This policy describes how Google user data is handled when an authorised user connects a Google account.

Google data accessed

Thorsson Ops requests read-only Gmail access. It may read message metadata, headers, message content, thread information, labels, and related mailbox information required to provide the service.

Purpose of access

Google user data is used only to provide user-facing operational functionality, including deriving structured state such as tasks, commitments, correspondence history, and contextual records for the authorised user.

Provider mutations

Thorsson Ops does not send, modify, delete, archive, mark as read, or otherwise mutate Gmail data through the Gmail integration.

Storage and security

OAuth credentials and service data needed to operate the integration are stored with access controls appropriate to the service. Derived operational data may be retained for continuity, recovery, and service functionality.

Service providers, sharing, and advertising

Google user data is not sold, used for advertising, or shared with advertisers. Data may be transmitted to infrastructure and model/API service providers only as necessary to provide the service's user-facing functionality, including automated interpretation of correspondence. Those transfers are limited to providing and securing the service.

Google API Services User Data Policy

Thorsson Ops' use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Automated processing

Email content may be processed to derive operational state for the authorised user. Email content is treated as untrusted data and is not interpreted as executable instructions merely because it appears in a message.

Revocation

An authorised user may revoke Google account access through their Google Account permissions or by disconnecting the integration. Revocation prevents future access using that authorisation.

Contact

Questions about this policy may be sent to the developer contact address shown on the Google OAuth consent screen.