Privacy policy
Effective 4 September 2026. Last updated 4 September 2026.
Assistant is a personal tool used by one person to read his own email. This policy explains exactly what it touches, where that information goes, and how to stop it.
1Who operates this service
Assistant is operated by Andy Roberts, an individual based in the United
Kingdom, at assistant.roberts.io. In Google
Cloud Console the application is registered as gog-andy-assistant.
2A single-user application
This is a personal, single-user command-line tool. It is not offered to the public, it has no accounts, no sign-up, and no other users. The only Google account it is authorised against is the operator's own. If you are reading this policy, you are almost certainly not a user of the application — but the policy is published openly so that anyone, including Google, can see how it behaves.
3What Google user data is accessed
The application requests one Google OAuth scope, and no others:
https://www.googleapis.com/auth/gmail.readonly
In plain terms, this scope lets the application read mail in the owner's own Gmail mailbox: message metadata such as sender, recipients, subject, date, labels and thread identifiers, together with message bodies and details of attachments.
The scope is read-only. The application cannot send mail, reply, forward, draft, modify, label, archive, or delete anything, and it does not attempt to. It requests no access to Google Drive, Calendar, Contacts, or any other Google service.
4How that data is used
Mail retrieved from Gmail is used solely to display and process the owner's own messages on the owner's own device — checking for new mail, summarising what has arrived, and searching or organising it for the owner's personal use.
It is not used for any other purpose. It is not used to build profiles, to serve or target advertising, to train or improve any machine-learning or artificial-intelligence model, or to produce any product or dataset offered to anyone else.
5Storage and protection
All processing happens locally, on the owner's own computer. There is no server, no hosted backend, and no server-side database. This website is static: it collects nothing, sets no cookies, runs no analytics, and makes no requests to third parties.
OAuth credentials — the access token and refresh token issued by Google — are stored in the operating system's encrypted local keyring, protected by the account's own login credentials and disk encryption. They are never written to plain-text configuration files, never committed to source control, and never transmitted anywhere other than to Google's own API endpoints over HTTPS.
Message content is held only for as long as it is needed to complete the task at hand. Where anything is cached on disk to avoid re-fetching, that cache stays on the owner's machine and can be deleted at any time.
6No sharing, selling, or transfer
Google user data obtained through this application is not shared with, sold to, rented to, or transferred to any third party. There are no advertisers, no data brokers, no analytics providers, no subprocessors, and no affiliates. Nothing is transferred except between the owner's own device and Google's APIs, in order to provide the feature the owner asked for.
Limited Use disclosure
Assistant's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
In particular, Google user data is used only to provide or improve user-facing features that are prominent in the application; it is not transferred to others except as necessary to provide those features, to comply with applicable law, or as part of a merger or acquisition; it is not used for serving advertising; it is not used to develop, improve, or train generalised or non-personalised artificial-intelligence or machine-learning models; and no humans read the data except the account owner themselves, or where required for security purposes or to comply with applicable law.
7Retention and deletion
Nothing is retained on the operator's behalf, because there is nowhere central to retain it. Locally cached message data and stored tokens are removed when the application is uninstalled, when its local data directory is deleted, or when the owner signs it out.
Access can be withdrawn at any time from the Google account itself, at https://myaccount.google.com/permissions. Revoking access there immediately invalidates the refresh token and stops all further access to Gmail. Any remaining local copies can then be deleted by removing the application's data directory, and by request to andyroberts2468@gmail.com.
8Children's privacy
This application is not directed at children. It is not offered to the public at all, and it is used only by its adult owner. No information is knowingly collected from anyone under 13, or under the age of digital consent in their country. If you believe a child's information has reached this application, write to andyroberts2468@gmail.com and it will be deleted.
9Changes to this policy
If the application's behaviour changes — for example if it ever requests a different Google scope — this policy will be updated before that change takes effect, and the effective date at the top of the page will change with it. Material changes will be reflected here rather than announced elsewhere, so this page is the authoritative version.
10Contact
Andy Roberts, United Kingdom. andyroberts2468@gmail.com