W/EWei Experimental
ProjectsFriday Mailroom
Friday Mailroom/Privacy policy

Privacy policy

Your mailbox stays under your control.

This policy explains exactly how Friday Mailroom accesses and handles information received through Google APIs.

Effective September 9, 2026Version 1.0

1. Scope and operator

Friday Mailroom is a private, personal-use finance tool operated by Wei Experimental for one household. It has no public account registration and is not offered as a service to the general public.

2. Google data the app accesses

After the Google account holder grants consent, Friday Mailroom uses thegmail.readonly scope. This permission can read messages and mailbox metadata but cannot send, modify, or delete email.

The app retrieves new messages from a dedicated Gmail mailbox in raw form. This can include message headers, sender and recipient addresses, subject, timestamps, labels, body content, and included MIME parts. The permission can technically read every message in that mailbox; the app is designed to identify and process supported financial transaction alerts.

3. How Google data is used

Accessed email data is used only to:

  • verify message-source signals and recognize supported alert formats;
  • extract transaction details such as date, merchant, amount, currency, and account;
  • detect duplicates, unusual values, and records that require manual review;
  • create and reconcile entries in the household’s private finance ledger; and
  • maintain local audit and operational records needed to keep the pipeline reliable.

The ingestion path is deterministic. Email bodies are not sent to a large language model for classification or extraction.

4. Storage and security

Raw message copies, derived transaction records, source hashes, and limited run metadata are stored on an owner-controlled computer. Oversized or unrecognized items may be held locally for manual review. The OAuth refresh token is stored in the operating system keychain rather than in the project repository. Backup copies are encrypted and remain under the owner’s control.

The pages at weiexperimental.com are informational only. They do not receive, transmit, or store Gmail message data or OAuth tokens.

5. Sharing and disclosure

Friday Mailroom does not sell Google user data, use it for advertising, build advertising profiles, or share it with data brokers. Gmail content is not transferred to third-party application servers. Information may be disclosed only when required by applicable law or to protect against a security threat, and only to the minimum extent required.

Friday Mailroom’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

6. Retention and deletion

Local source copies and derived accounting records are retained for personal bookkeeping, reconciliation, and audit until the owner deletes them. Revoking Google access stops future collection but does not automatically erase copies already stored locally or in encrypted backups.

See Access & Data Deletion for revocation and deletion steps.

7. Changes and contact

This policy will be updated before Friday Mailroom materially changes how it handles Google user data. Privacy or access questions can be sent to the User Support Email displayed on the Google authorization screen.

© 2026 Wei Experimental

PrivacyTerms