Tiko Mail — Privacy Policy
Effective Date: February 1, 2026
Company: Tundra AI Labs, Inc.
Contact: support@tikomail.com
1. What This Policy Covers
This Privacy Policy explains how Tiko Mail collects, uses, stores, and protects information when users connect email accounts and use our AI-powered tools.
It applies to all Tiko Mail products, extensions, and websites. For a plain-language overview of our data practices, see our How We Use Your Data page.
2. Google OAuth Scopes We Request
Tiko Mail requests the following Google OAuth scopes solely to provide core email organization, drafting, and workflow features:
- • userinfo.email – used to identify the connected Google account.
- • userinfo.profile – used to display the user's basic profile information inside Tiko Mail.
- • gmail.readonly – used to read email subjects, senders, timestamps, labels, and message bodies in order to classify, summarize, and organize emails. Tiko Mail does not alter any messages when using this scope.
- • gmail.labels – used to view and edit Gmail labels so Tiko Mail can apply organizational categories such as Respond, Wait, Meetings, Done, FYI, Notifications, and Marketing.
- • gmail.modify – used to update Gmail messages by moving them to new labels or system categories (e.g., marking a message as Done, or moving a thread into a Tiko label). This scope does not allow deleting messages.
- • gmail.compose – used to create draft replies or new outbound messages on the user's behalf when the user requests an AI-assisted draft. Tiko Mail does not send emails without explicit user action.
Tiko Mail does not request or use the full-access mail.google.com scope.
3. Information We Collect
a. Information You Provide
- • Account registration information
- • OAuth permissions
- • Email data as required to deliver features
- • Preferences, settings, and interactions with the Service
b. Automatically Collected Data
- • Device and browser metadata
- • IP address
- • Usage analytics and event logs
- • Performance diagnostics
Automatically collected data is used only for service operation and security. We do not use Gmail message content for analytics, product improvement, or advertising. We do not send Gmail content to advertising partners. Analytics data never includes Gmail message content or any other Google user data obtained through restricted or sensitive scopes.
4. How We Use Data
We use data to:
- • Classify, summarize, and triage emails
- • Provide AI-generated suggestions and workflows
- • Maintain security and detect abuse
- • Improve performance and user experience
- • Provide support and troubleshooting
- • Comply with legal obligations
We do not sell or share user data for advertising.
We may use aggregated and anonymized data for analytics or product improvement, and this data never includes Gmail message content.
Gmail message content is not used for analytics, product improvement, advertising, or any purpose unrelated to providing the core Tiko Mail features.
5. How We Process Email Data
We access email content only to provide core Tiko Mail features, such as classification and summarization. We do not store Gmail message bodies unless strictly necessary to provide the immediate feature the user requested, and any stored content is deleted when no longer needed.
We do not:
- • Sell email data
- • Share it with advertisers
- • Train third-party models on your identifiable data
- • Use it for any purpose unrelated to providing the Service
Aggregated or anonymized data never includes Gmail message content.
6. AI Processing
Tiko Mail uses machine learning models to generate outputs such as classifications and summaries. When required to provide these features, Tiko Mail may send email text to approved AI processors (such as Google Gemini) solely to generate the specific output the user has requested. These processors are contractually prohibited from retaining Gmail data or using it for model training, and all processing complies with Google's Limited Use Policy. Gmail data is never used to fine-tune, improve, or develop any machine learning models.
7a. Google API Limited Use Compliance
Tiko Mail complies with Google's Limited Use Policy for data obtained through Gmail APIs. We do not use Gmail data for advertising, profiling, or any purpose other than providing core user-facing features.
7b. Analytics, Cookies, and Improvement Tools
We use the following third-party analytics services to understand usage patterns, detect errors, and improve our Services. These tools do not have access to Gmail message content or any Google user data obtained through restricted or sensitive scopes.
- • Google Analytics (GA4) — collects anonymized usage data such as pages visited, session duration, and general location. Google may set cookies (e.g.,
_ga,_ga_*) on your device. See Google's Privacy Policy. - • LogRocket — records anonymized session replays to help us diagnose bugs and improve the user experience. See LogRocket's Privacy Policy.
These tools may place cookies or similar technologies on your device. You can control or disable cookies through your browser settings, though this may affect site functionality.
8. Subprocessors
We rely on trusted subprocessors for hosting, authentication, AI inference, and monitoring. All subprocessors are contractually required to protect your data consistent with this Policy. We will notify users of material subprocessor changes.
9. Data Transfers
Data may be processed in the United States or other jurisdictions where our subprocessors operate. Where required, we use appropriate legal safeguards.
10. Data Retention & Deletion
We retain data only as long as necessary to provide the Service or meet legal obligations. Gmail message content is retained only temporarily to process user actions and is not stored long-term unless explicitly required for a user-facing feature. You may request deletion at any time by emailing support@tikomail.com. Upon termination, we will delete or anonymize data within a commercially reasonable timeframe unless otherwise required by law.
11. Your Rights
Depending on your jurisdiction, you may request to:
- • Access your data
- • Correct inaccurate data
- • Delete your data
- • Opt out of non-essential processing
- • Request a copy of your data
Requests should be sent to support@tikomail.com.
You may revoke Tiko Mail's access to your Google account at any time by visiting: https://myaccount.google.com/permissions.
12. Children's Privacy
Tiko Mail is not intended for individuals under 18. We do not knowingly collect children's data.
13. Security
We take commercially reasonable measures to protect data. No security measure is perfect; you use the Service at your own risk.
14. Changes to This Policy
We may modify this Privacy Policy periodically. We will notify users of material changes.
15. Contact
support@tikomail.com