pithie

Last updated: August 2, 2026

Privacy Policy

Overview

Gropple, LLC (“we”, “us”) operates pithie, an email reading product at mail.pithie.co and this website at pithie.co. This policy explains what information we collect, how we use it, and the choices you have.

Information we collect

  • Account information. When you sign in, our authentication provider (Clerk) processes identity details such as name, email address, and profile image. We store a linked pithie user record (Clerk user id, email, name, and photo URL when available).
  • Google / Gmail data. If you connect Gmail, we access and store Google user data as described in the Google User Data section below.
  • Product usage and diagnostics. We use Sentry for error monitoring, performance tracing, and sampled session replay, which may include technical logs (for example timestamps, request paths, and error reports) and on-screen app content during a sampled session.

How we use information

  • Authenticate you and keep your session secure
  • Sync, process, and display your email in pithie
  • Apply Gmail label changes you initiate in the product
  • Provide AI-assisted reading summaries where enabled
  • Maintain, debug, and secure the service
  • Communicate about service changes when necessary

We do not sell your personal information.

Google User Data

When you connect your Google account to pithie, we request access to the following Google account information:

  • Gmail message metadata (including message and thread ids, labels, From/To/Cc/Bcc headers, subject, Message-ID headers, and sent timestamps)
  • Gmail message body text extracted from message content (we do not store binary email attachments as files)
  • Google account identity information needed to identify the connected account (Google account id / subject, email address, and profile photo URL when provided)
  • OAuth access and refresh tokens, granted scopes, token expiry, and Gmail history sync state used to keep mail up to date

Corresponding Google OAuth scopes:

  • https://www.googleapis.com/auth/gmail.modify — read Gmail messages and apply or remove labels (for example read/unread, archive, star, spam, trash)
  • https://www.googleapis.com/auth/userinfo.email
  • https://www.googleapis.com/auth/userinfo.profile
  • openid

How we use Google user data

We use this information only to provide the following user-facing features:

  • Sync and display your Gmail threads and messages in the pithie reader, including search and inbox views
  • Keep mail state current through Gmail push notifications and history sync
  • Apply or remove Gmail labels when you take actions in pithie (for example mark read/unread, archive, star, move to spam, or trash)
  • Generate AI-assisted reading summaries by sending message subject and body text to model providers that process the content to return a condensed summary for that message
  • Show which Google accounts you connected and manage those connections

We do not use Google user data for advertising, creditworthiness, data brokerage, or purposes unrelated to the features described above. We do not use Google user data (including Google Workspace data, if you connect a Workspace account) to create, train, or improve generalized AI or machine-learning models. AI processing is used only to provide the summarization feature for the requesting user’s mail.

Storage and security

Google user data is stored in our application database so pithie can show your inbox without re-fetching every message on each visit. Stored data includes OAuth tokens, connected-account identity fields, synced thread and message records (headers, labels, subjects, and extracted body text), and derived summary content written back into those message records. Google user data and OAuth tokens are encrypted in transit (TLS) and encrypted at rest by our hosting infrastructure. Access is limited to authorized systems and personnel who require it to operate or secure the service. See our Security page for a plain-language overview.

Sharing and human access

We do not sell Google user data. We disclose it only to service providers necessary to operate the user-facing features described above, with the user’s consent; for security purposes; when required by law; or as otherwise permitted by the Google API Services User Data Policy. Current categories of processors include:

  • Clerk for authentication
  • Google for Gmail OAuth and Gmail API access you authorize
  • Hosting and infrastructure providers that run our API, database, cache, and app
  • Model providers reached via OpenRouter when AI summarization processes mail-derived subject and body text
  • Sentry for error monitoring, performance tracing, and sampled session replay (which may include on-screen mail content from the app)

Our personnel do not read Google user data unless the user gives explicit permission for specific data, access is required to investigate a security or abuse issue, or access is required by law.

Retention and deletion

We retain connected Google account credentials, synced Gmail thread and message data, and derived summaries while the Google account remains connected and your pithie account remains active. We delete that Google-derived data when you disconnect the Google account in pithie, or when you delete your pithie account, except where retention is legally required or data briefly remains in encrypted backups.

Disconnecting Google in pithie stops future collection and deletes that account’s stored OAuth tokens and synced mail from our primary systems. You may also revoke access from your Google Account’s third-party connections page; after revocation, pithie can no longer access Gmail, and you should disconnect or delete in pithie (or contact us) so stored copies are removed.

Users can request deletion through the in-product controls described on our Google Data and Account Deletion page, or by emailing privacy@gropple.co. We complete verified deletion requests from primary systems promptly, typically within 30 days (backups may take longer to expire).

Google Limited Use disclosure

pithie’s use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Processors and subprocessors

We use service providers to run pithie, including Clerk, Google, Sentry (error monitoring and diagnostics), our hosting and infrastructure providers, and model providers used for AI summarization as described above.

Cookies and similar technologies

The pithie marketing site at pithie.co does not use nonessential analytics or advertising cookies. The signed-in app at mail.pithie.co uses cookies and similar technologies as needed for authentication and session management through Clerk, and for application monitoring through Sentry (including error reporting, performance tracing, and sampled session replay). Sentry may receive technical diagnostics such as device and browser details, request paths, error stacks, and limited user identifiers we associate with your pithie account for debugging. Session replay recordings may include on-screen content from the app during the sampled session, which can include mail you are viewing.

Your choices

  • Disconnect a Gmail account at any time in Settings
  • Delete your pithie account in Settings
  • Revoke Gmail access in your Google Account permissions
  • Review step-by-step instructions on the deletion page

Contact

Questions about this policy: privacy@gropple.co. General support: support@gropple.co.