trunk · personalizeyourwork.com
Privacy
Short, and accurate to what the software does. If something here is ever untrue of the running product, it is a defect — write to hello@personalizeyourwork.com.
What is accessed
- Mail. With your permission, trunk reads recent messages from the mailbox you connect, using Google's read-only Gmail permission. It cannot delete, modify, or label anything.
- Calendar. If you connect a calendar, it reads upcoming events, using a read-only permission limited to events.
- Sending. Sending is a separate permission, granted separately, per mailbox. It permits sending only — it cannot read your mail.
What is stored
- The records you enter in your workspace, and the permission tokens for the accounts you connect. Tokens are encrypted with a key derived for your workspace alone.
- Your messages are not stored. Mail and calendar entries are fetched when a page is loaded and kept only for that request. Drafts are not saved either.
- Sent messages are recorded by Gmail in your own Sent folder, which is the record of what went out. trunk keeps no separate copy.
What is sent to other services
To write a summary or a draft, the relevant text — subjects, senders, previews, event titles, and the body of the one message you ask for a draft of — is sent to Google's Gemini model. It is sent to produce that output and for no other purpose. Contents of other messages are not included.
What is never done
- No message is ever sent without you approving that exact text, in the app.
- Your data is not sold, and it is not used for advertising.
- No mail is read on a schedule or in the background; reading happens when you open a page.
Disconnecting and deletion
Disconnecting a mailbox in the app deletes its stored permissions — reading and sending both — immediately. You can also revoke access from your Google account at any time, which stops trunk reading or sending regardless of anything on our side. To have a workspace and its records deleted entirely, write to hello@personalizeyourwork.com.