gmeh

Privacy Policy

Last updated: 10 August 2026

Who operates this service

Gmeh is operated privately by the operator of gmeh.resakse.com. For any question about this policy or about data held by this service, contact [email protected].

What Gmeh is

Gmeh is a self-hosted bridge that mirrors a Gmail mailbox to a local IMAP and SMTP server, so that a standard mail client can read and send mail. It runs on hardware controlled by the operator. It is not a commercial service and is not open for public registration; accounts exist only where the administrator has created them.

What Google data is accessed

When you connect a Google account, Gmeh requests these OAuth scopes:

  • gmail.modify — to read messages and to reflect changes such as read, starred, and deleted state back to Gmail.
  • gmail.send — to send messages you compose in your mail client.

Using these, Gmeh accesses message content, headers, labels, and attachments for the connected mailbox.

Where that data goes

Synced mail is stored only on the operator's own server, in order to serve it to your mail client. It is not sent to any third party. Gmeh contains no analytics, no advertising, and no tracking of any kind, and your data is never used to train machine learning models.

Google API Services User Data Policy

Gmeh's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

How long data is kept

Synced mail is retained for as long as the account remains connected. Removing an account from Gmeh deletes that account's mailbox database from the server.

One exception, stated plainly: attachments are written to a shared content-addressed store on disk, and removing an account does not currently delete files from that store. Those files can outlive the account they came from until they are cleared manually.

Security

Google OAuth tokens are encrypted before being written to disk. Connections to the web interface are served over TLS. Access to the underlying server is restricted to the operator.

Revoking access

You can revoke Gmeh's access to your Google account at any time from your Google account permissions page. Doing so immediately stops all further syncing.

Changes to this policy

If this policy changes, the date at the top of this page will be updated.

Privacy Policy Terms of Service