⚡ Google API Compliance

Google API Disclosure

Effective Date: May 19, 2026 · Last Updated: May 19, 2026

Zemora.ai's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

This page describes how Zemora.ai accesses, uses, stores, and shares Google user data through Google APIs. It supplements our Privacy Policy, which contains the full detail in Section 5.

01Overview

Certain Zemora.ai products — most notably Zemora Email — let you connect your Google account (Gmail / Google Workspace) so Zemora can send, read, and manage email on your behalf to power the features you sign up for. When you connect your account through Google's official OAuth consent screen, we request only the scopes strictly necessary to provide those features.

02What Google Data We Access

With the scopes you approve, we may access:

  • Your basic Google profile — name, email address, profile picture
  • Gmail read and/or send access, scoped to the workflows you configure
  • Message metadata — message IDs, thread IDs, timestamps, delivery / bounce status

We never request broader access than required for the feature you've enabled.

03How We Use Google Data

We use Google user data solely to provide and improve the user-facing features you explicitly enable, such as:

  • Sending email sequences you have created and approved
  • Detecting and classifying replies (positive, out-of-office, bounced)
  • Displaying your conversation history within the Zemora dashboard
  • Protecting deliverability through per-mailbox sending limits

04Limited Use — What We Will NOT Do

Consistent with Google's Limited Use requirements, Zemora.ai does not, and will not:

  • Use Google user data for advertising — including retargeting or personalized ads
  • Sell, rent, or trade Google user data to any third party
  • Transfer Google user data to others except to provide user-facing features (with consent), for security, to comply with law, or in a merger where the acquirer honors this policy
  • Use Google user data to develop, improve, or train generalized AI / machine-learning models
  • Allow humans to read Google user data, except with your affirmative consent, for security, to comply with law, or when fully anonymized

Our Commitment: We do not sell Google user data to third parties. Period.

05How We Store & Protect Google Data

  • All data encrypted in transit (TLS 1.3) and at rest (AES-256)
  • OAuth tokens and credentials stored in a managed secrets vault — never in our application database
  • Least-privilege access; every internal access is logged
  • Data stored in North American cloud regions by default

06Data Retention & Revoking Access

You can revoke Zemora.ai's access to your Google account at any time from your Google Account permissions page. Once revoked, we stop accessing your Google data and delete cached copies within 30 days, except where retention is required by law. You may also request deletion any time by emailing privacy@zemora.ai.

07Microsoft / Outlook Data

Where you connect a Microsoft account (Outlook) instead of Google, equivalent principles apply: we request the minimum scopes necessary, use the data only to provide the features you enable, and never sell it or use it to train general-purpose AI models.

08Contact Information

Questions about how we handle Google user data? We're here to help.