TEMPMAIL CLOUD

Privacy Policy

A plain-language explanation of the information TempMail Cloud processes, why we use it, and how long it may remain.

Last updated: August 8, 2026.

The short version TempMail Cloud processes the information needed to create inboxes, receive messages, authenticate users, prevent abuse and answer support requests. We do not sell personal information. A temporary inbox is still an email service, so messages sent to it are stored on our systems until they are deleted under the policy below.

Who this policy covers This policy applies to visitors, guest mailbox users, registered account holders and people who contact TempMail Cloud. It covers the website, its receive-only email service, administrative tools and contact form.

Information we process Depending on how you use the service, we may process: - Mailbox addresses, creation dates, last-access dates and mailbox status - Email sender, recipient, subject, message body, received time and detected verification code - Account name and email address when you register - Password hashes used to verify passwords; original passwords are not stored in readable form - Session tokens and mailbox references stored in your browser - Contact-form details such as name, reply email, subject and message - Server, security and abuse-prevention logs, which may include IP address, request time, browser information and requested route - Administrative audit records for security-sensitive changes

Do not send highly sensitive personal, financial, medical or government information to a temporary inbox.

Why we use this information We process information to deliver incoming email, display your inbox, verify access, maintain user accounts, detect OTPs, provide search and filtering, protect the service, apply usage limits, investigate abuse, maintain backups and respond to enquiries.

Browser storage and cookies TempMail Cloud uses browser local storage and session storage to remember your theme, consent choice, active mailbox session, recently used mailbox addresses and account session. The 2FA tool can also store setup keys locally on your device when you explicitly choose Save. These browser values remain on your device until they expire, are replaced or you clear them.

The consent banner records whether you selected optional cookies or essential-only storage. At the time of this update, the core service does not require advertising cookies. If optional analytics is introduced, it should run only after the relevant consent choice and this policy will be updated.

Sharing and service providers Information may be processed by infrastructure providers that help host the VPS, domain records, network traffic and backups. We may also disclose information when reasonably necessary to comply with law, protect users, investigate abuse, enforce our terms or defend the service. We do not sell mailbox contents or personal information.

Retention and deletion Mailboxes and received messages are retained until the mailbox owner or an administrator deletes them; automatic mailbox expiry is currently disabled. Deleting a mailbox removes its active application record and messages. Operational backups are rotated for up to 30 days, so deleted information may remain in a protected backup until that backup expires. Security logs and contact requests are retained only as long as reasonably needed for operations, support, fraud prevention or legal obligations.

Security We use HTTPS, password hashing, access controls, rate limits, security headers, restricted administrative access and backups. No internet service can promise absolute security. Anyone who obtains a valid mailbox session or the mailbox address and password may be able to access that inbox. Use a unique password and never reuse a password from an important account.

Your choices and requests You can delete individual messages from the inbox and ask us to review or delete information associated with you. Registered accounts and server-held data may require identity or ownership verification before action is taken. Depending on applicable law, you may also have rights to access, correct, delete, restrict or object to certain processing.

Children TempMail Cloud is not directed to children and should not be used to submit information about a child. If you believe a child has provided personal information, contact us so we can review the report.

International access The service can be accessed from different countries. Information may be processed where our infrastructure and service providers operate, subject to appropriate operational and legal safeguards.

Changes to this policy We may update this policy when the product, providers or legal requirements change. The date at the top identifies the latest published version. Material changes will be reflected on this page.

Contact us about privacy Use the Contact page and select a privacy-related subject. Include the relevant mailbox or account address, but never include your password.