MindStrix Google Data Privacy Policy

MindStrix Build Studio · Effective 27 August 2026

This policy describes how the private MindStrix deployment accesses, uses, stores, and protects Google user data. Questions may be sent to privacy@msbs.com.

Google data accessed

After the Google account owner grants consent, MindStrix may access Gmail messages, message metadata, threads, labels, attachments requested for review, and drafts. It may also access Google Calendar lists, event details, availability information, and events created through MindStrix.

How the data is used

Google user data is used only to provide owner-requested productivity features: searching and summarizing mail, preparing email drafts, reviewing schedules, identifying conflicts, and creating requested calendar reminders or events. Existing calendar events require confirmation before modification or deletion. Inviting other people and sending email are separately governed actions.

Storage and protection

OAuth client credentials and refresh tokens are stored on the owner's private system outside source control with access restricted to the operating-system account running MindStrix. Transient message and event content may be processed by a model provider selected by the owner when needed to answer a request. MindStrix does not expose Google credentials to those providers.

Sharing and prohibited uses

MindStrix does not sell Google user data, use it for advertising, share it with data brokers, or use it to train general-purpose or public AI models. Data is disclosed only to infrastructure or model providers selected by the owner as necessary to perform the owner's request, or when legally required.

Retention and deletion

OAuth credentials remain until the owner revokes or removes them. Locally retained summaries, drafts, receipts, or conversation history remain under the owner's control and may be deleted by the owner. Temporary API responses are retained only as required to complete the requested operation and produce an accurate receipt.

Owner control and revocation

The owner may revoke MindStrix access at any time from the Google Account connections page, remove the local OAuth token, or contact privacy@msbs.com. Revocation stops future Gmail and Calendar API access.

Google API policy

MindStrix's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.

Changes

Material changes will be reflected by updating the effective date above.