TEMPMAIL CLOUD

Privacy Policy

A plain-language explanation of the information TempMail Cloud processes, why we use it, and how long it may remain.

Last updated: September 14, 2026.

The short version

TempMail Cloud processes the information needed to create inboxes, receive messages, authenticate users, prevent abuse and answer support requests. We do not sell personal information. A temporary inbox is still an email service, so messages sent to it are stored on our systems until they are deleted under the policy below.

Who this policy covers

This policy applies to visitors, guest mailbox users, registered account holders and people who contact TempMail Cloud. It covers the website, its receive-only email service, administrative tools and contact form.

Information we process

Depending on how you use the service, we may process:
- Mailbox addresses, creation dates, last-access dates and mailbox status
- Email sender, recipient, subject, message body, received time and detected verification code
- Account name and email address when you register
- Password hashes used to verify passwords; original passwords are not stored in readable form
- Session tokens and mailbox references stored in your browser
- Contact-form details such as name, reply email, subject and message
- Server, security and abuse-prevention logs, which may include IP address, request time, browser information and requested route
- Administrative audit records for security-sensitive changes

Do not send highly sensitive personal, financial, medical or government information to a temporary inbox.

Why we use this information

We process information to deliver incoming email, display your inbox, verify access, maintain user accounts, detect OTPs, provide search and filtering, protect the service, apply usage limits, investigate abuse, maintain backups and respond to enquiries.

Browser storage and cookies

TempMail Cloud uses browser local storage and session storage to remember your theme, consent choice, active mailbox session, recently used mailbox addresses and account session. The 2FA tool can also store setup keys locally on your device when you explicitly choose Save. These browser values remain on your device until they expire, are replaced or you clear them.

The consent banner records whether you selected optional cookies or essential-only storage. Essential storage keeps security, session and preference features working. Optional analytics or advertising storage must not be activated through our site before the applicable consent choice.

Advertising and Google services

TempMail Cloud may use Google AdSense and other clearly identified advertising partners to fund the free service. Third-party vendors, including Google, may use cookies or similar technologies to serve, measure and limit ads. Google's advertising cookies can be used to show ads based on a visitor's previous visits to this or other websites when personalised advertising is permitted.

You can manage Google ad personalisation in Google Ads Settings and learn how Google uses information from sites that use its services. Where consent is legally required, advertising that requires consent will be requested through a compliant consent message. Choosing essential-only storage does not remove the core inbox service. We will identify other advertising vendors here or through the consent interface if they are introduced.

Sharing and service providers

Information may be processed by infrastructure providers that help host the VPS, domain records, network traffic and backups. We may also disclose information when reasonably necessary to comply with law, protect users, investigate abuse, enforce our terms or defend the service. We do not sell mailbox contents or personal information.

Retention and deletion

Default reusable inboxes do not have the fixed ten-minute deadline of the optional timed inbox. They may remain until removed by the user or an administrator. Deleting an individual message removes it from the active inbox, but a restricted administrator recovery record, including message content, may remain for up to 30 days unless permanently purged sooner. Mailboxes moved to administrative trash also have a recovery window of up to 30 days. Permanent cleanup queues removal from live message storage; it is different from moving a mailbox to trash. Authorised administrators can access retained message records for support and service administration. An expired timed inbox cannot be recovered through the user interface. Its access ends at the fixed deadline and live-message removal is scheduled. Operational backups are rotated for up to 30 days, so deleted information may remain in a protected backup until that backup expires. Security logs and contact requests are retained only as long as reasonably needed for operations, support, fraud prevention or legal obligations.

Security

We use HTTPS, password hashing, access controls, rate limits, security headers, restricted administrative access and backups. No internet service can promise absolute security. Anyone who obtains a valid mailbox session or the mailbox address and password may be able to access that inbox. Use a unique password and never reuse a password from an important account.

Your choices and requests

You can delete individual messages from the inbox and ask us to review or delete information associated with you. Registered accounts and server-held data may require identity or ownership verification before action is taken. Depending on applicable law, you may also have rights to access, correct, delete, restrict or object to certain processing.

Children

TempMail Cloud is not directed to children and should not be used to submit information about a child. If you believe a child has provided personal information, contact us so we can review the report.

International access

The service can be accessed from different countries. Information may be processed where our infrastructure and service providers operate, subject to appropriate operational and legal safeguards.

Changes to this policy

We may update this policy when the product, providers or legal requirements change. The date at the top identifies the latest published version. Material changes will be reflected on this page.

Contact us about privacy

Use the Contact page and select a privacy-related subject. Include the relevant mailbox or account address, but never include your password.

Optional visitor analytics and mailbox health

With optional analytics consent, we collect an anonymous visit identifier, broad page/activity category, referral website or campaign source, approximate country and visible session duration. Country is derived locally from the connection IP; this analytics dataset does not store the IP, inbox content, passwords, OTPs or sharing tokens. Live session records expire after 30 minutes of inactivity and aggregate reports are retained for 90 days. You can choose Essential only in privacy choices. Separate operational counters record mailbox creation, blocked requests, lifetime delivery count and last receipt date for service protection and mailbox management. Administrators can permanently delete eligible inactive mailboxes after reviewing and confirming a selection; deleted addresses remain reserved using a hash to prevent accidental reassignment.

Optional Google Analytics

If you accept optional analytics cookies, public pages use Google Analytics 4 to measure visits and engagement. Google processes browser/device information, approximate location and cookie identifiers. This is separate from our first-party operational reports. Our integration excludes admin, account, private shared-inbox and mail-reader pages, skips URLs with query strings, and sends public page paths rather than URL queries or fragments. We do not deliberately send inbox contents, email addresses, passwords or sharing tokens to Google Analytics. Google signals and advertising personalization are disabled for this integration. Choose Essential only or change Analytics preferences on this privacy page to stop future analytics collection. We also respect Global Privacy Control. See How Google uses information from sites that use its services.

Advertising review mode

Google ads are currently turned off while the site is prepared for review. The AdSense ownership verification metadata remains in place; its presence does not mean that advertising is approved or running.

Any future ad rollout will require Google approval and a check of the actual runtime behavior. The planned placement is limited to reviewed editorial pages, never received email, private or shared inboxes, account areas or tool workspaces. Advertising that requires consent will remain off until the required consent has been obtained. No approval or advertising start date is guaranteed.

Optional Google Analytics is also consent-gated: the Google tag library is not loaded until the visitor accepts optional analytics. Choosing Essential only keeps the inbox usable without starting optional analytics. Use Analytics preferences on this privacy page to change that choice. First-party, consented product measurements record broad actions such as a successful copy or inbox creation and coarse time bands; they do not include copied values, message content, passwords or codes.

Optional performance measurements

With optional analytics accepted, we collect LCP, INP and CLS performance values for public pages, grouped by page and mobile or desktop screen size. We keep daily aggregate histograms for up to 90 days. We do not send element text, form values, email content, passwords, OTPs, URL queries or share tokens in these measurements. Private workspaces are excluded. Global Privacy Control or choosing essential-only prevents collection; changing preferences stops future reports. These measurements are our own samples, not Google Search Console scores.

Optional timed mode

The reusable behavior described here applies to the default inbox. You can now explicitly create a separate 10-minute guest inbox. Its fixed deadline blocks all access and schedules live-message deletion; it cannot be extended or recovered. Existing reusable inboxes are not converted. Backup retention follows our privacy policy.

Free tools and integration access

The password generator creates passwords and passphrases in your browser. The email validator checks format locally. If you choose its DNS option, it sends only the domain after the @ sign to Google Public DNS, with normal connection information such as your IP address. Format and DNS results do not prove that a mailbox exists.

Receiving API keys allow access to one authorised inbox with the selected scope. Treat these keys and inbox-sharing links as secrets: a person with valid access may read the information that the link or key permits. Revoke access when it is no longer needed. Third-party integration software may process returned email data under its own privacy terms. The developer browser extension stores its key in browser session storage and reads message headers; it does not send messages.

Original Gmail address for registered accounts

Registered accounts must provide a unique Gmail address. We use it to help distinguish account holders from automated or duplicate registrations, support account notices and enforce platform abuse controls. Entering an address does not by itself prove ownership. Existing accounts receive a 30-day deadline; accounts that do not add an eligible address may be suspended. Administrators can view this address and the related account status.