Privacy Policy
Last updated: 2026-09-18
1. Who we are and what Clark does
Andrews Inc. ("we", "our", or "Clark") operates Clark and the console at https://clark.philandrews.io. Clark connects to Gmail mailboxes its account owner authorizes, keeps a searchable copy, classifies each new message, and forwards matching messages to agents (programs) the owner enables, for example a personal ledger app.
2. Information we access from Google
Clark connects via the Gmail API with the read-only scope (https://www.googleapis.com/auth/gmail.readonly): message headers, bodies, attachments, labels, thread and history identifiers; the Google account email address. Clark cannot send, modify or delete mail. Authority never widens without a new, explicit consent from the owner.
3. How we use it
We use this information for:
- Syncing and storing mail to provide search and routing;
- Classifying messages with an AI model that receives only a bounded excerpt;
- Delivering matching messages to the owner's enabled agents over signed HTTPS;
- Operating, securing and debugging the service.
We do not use Google user data for advertising, do not sell it, and do not use it to train generalized AI models.
4. Google API Services User Data Policy
Clark's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
In particular, Clark:
- Only uses Google user data to provide the mail search and routing features described above;
- Does not transfer Google user data to others except to provide or improve those features, to comply with applicable law, or as part of a merger or acquisition with prior notice to you;
- Does not use Google user data to serve advertisements, including retargeting, personalized or interest-based advertising;
- Does not use Google user data to determine creditworthiness or for lending;
- Does not use Google user data to develop, improve or train generalized or non-personalized AI or machine-learning models;
- Does not allow humans to read Google user data unless you give explicit consent for specific messages, it is necessary for security purposes such as investigating abuse, it is required to comply with applicable law, or the data has been aggregated and anonymized for internal operations.
5. Storage and security
Clark relies on a hosted database and private object storage at Supabase, and compute at Amazon Web Services. All data is encrypted in transit and at rest. Gmail OAuth tokens are held in a secrets vault and never shared with agents or returned by any API. Access is limited to the account owner and the operator. Every agent delivery is signed and recorded with the reason it was sent.
6. Sharing
We share data only:
- With agents the owner enables per mailbox;
- With service providers that process data on our behalf: Supabase (database, storage, sign-in), Amazon Web Services (hosting; AI inference via Amazon Bedrock, which does not use the content to train models), Google (Gmail API).
There is no sale of data, no ad networks, and no data brokers. We make disclosures only if required by law.
7. Retention
- Active mail is kept while the mailbox remains in Clark and the message still exists in Gmail. Disconnecting a mailbox revokes Clark's Gmail credential and stops syncing; it does not delete stored mail;
- Mail deleted in Gmail is hidden immediately and purged within 30 days;
- Requesting removal of a mailbox purges its content and derivatives within 24 hours (the credential is revoked immediately);
- Content-free logs are kept for 30 days;
- Audit identifiers are kept for 365 days;
- Encrypted backups roll off within 7 days.
8. Your choices
- Disconnect a mailbox in the console (Connections) to revoke Clark's access and stop syncing; stored mail remains until you request removal;
- Request removal of a mailbox in the console or by email to purge its stored mail within 24 hours;
- Revoke Clark at https://myaccount.google.com/permissions;
- Email us to request deletion or a copy of your data.
9. Children
Clark is not directed to anyone under 13.
10. Changes to this policy
If we update this policy, we will update the "Last updated" date above and post the updated document in the console.
11. Contact
Andrews Inc.
Contact: phil@philandrews.io