Privacy notice
Effective 13 September 2026
Unison Mail is a personal email application for Mac, iPhone and iPad, operated by Punyashlok Bhakta. Contact: punyashlok@gmail.com.
Account access and email
When you connect an account, Unison uses the provider authorization you grant to retrieve, organize and send email and maintain mailbox state. Google sign-in uses OAuth; you enter your Google password with Google, not with Unison. Gmail permissions include reading messages, changing labels and read status, and sending messages. Connected providers retain the original mailbox. Unison stores local mail data and drafts on your devices, and authorization tokens in the device Keychain.
Optional features and synchronization
Contact access is used to help address messages when you enable it. Profile and mail-state synchronization may store Unison settings and state in your Google Drive application-data area. Device or cloud backup features may retain app data in locations you select. Optional send-later processing uses the configured scheduler and the account authorization needed to deliver the scheduled message. On-device intelligence features process supported content on the device; any separately configured external processing requires its own disclosure and authorization.
Private notification server
The optional notification service is hosted on a Hostinger VPS in Mumbai, India. The server is configured; device enrollment and live delivery verification are still pending. Once you enable it in a supported build, it uses encrypted Gmail refresh authorization to periodically check mailbox changes, and sends notifications through Apple Push Notification service. It stores account identifiers, device push tokens, notification preferences, synchronization checkpoints and delivery records. It fetches message metadata for notification processing; it does not persist full message bodies or attachments. Notification previews may disclose the sender, subject and a short message preview through Apple; privacy settings can use a generic alert instead.
Use and sharing
Data is used to provide Unison’s email and explicitly enabled features. It is not sold or used for targeted advertising, credit decisions, or training generalized AI models. Unison’s use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Service providers involved in enabled features include your email provider, Google for Google-account features, Apple for device services and notifications, and Hostinger for the private server.
Retention and removal
Local data and backups remain until removed using the app, device or backup controls. Revoking Google access stops future use of that authorization, but does not automatically erase previously saved data. Disconnecting the notification service removes the device registration and removes active server authorization when no registered devices remain. Other account state may remain until administrator deletion. Notification delivery records are retained for approximately 30 days while processing is active. Daily encrypted server snapshots and weekly hosting backups can retain older records; encrypted snapshots are also copied to the operator’s Mac while it is awake and online; snapshot retention remains manual. Contact the operator to request deletion of remaining server data and backup copies. Backup copies are not used for active processing unless restored.
Security and changes
Network connections use HTTPS and server refresh credentials are encrypted at rest. No system can guarantee uninterrupted delivery or absolute security. This notice will be updated when data handling changes. Review the notice and in-app disclosures before enabling new services.