Gmail Plus 隐私政策
生效日期:2026 年 9 月 6 日
本地优先:Gmail Plus 的大部分数据(模板、设置、AI API Key、草稿状态)只保存在你的浏览器本地。我们不运行后端服务器,不收集遥测数据,不出售任何信息。
1. 我们处理哪些信息
为了完成 Gmail 增强功能,扩展可能读取或保存以下信息:
| 数据类型 | 内容说明 | 存储位置 |
|---|---|---|
| 本地邮件模板 | 主题、正文、变量 | chrome.storage.local |
| 用户偏好设置 | 紧凑模式、主题、语言 | chrome.storage.local |
| AI 提供商设置 | Endpoint URL、模型名称、API Key | chrome.storage.local |
| 邮件缓存摘要 | 发件人、主题、日期、thread id | chrome.storage.local |
| OAuth 授权令牌 | 通过 chrome.identity 获取的令牌 | Chrome 身份存储 |
我们不读取或保存邮件正文、附件或联系人。我们只缓存弹窗列表中显示的摘要信息。
2. 网络请求说明
Gmail Plus 仅在以下情况访问网络:
- Gmail API (www.googleapis.com):在你登录并授权后,执行读取邮件元数据、标记已读/未读、归档、删除、发送邮件等操作。
- Google 登录:使用 chrome.identity.getAuthToken 完成 OAuth 授权流程。
- AI 提供商(可选):在你配置 AI 提供商并点击"AI 辅助"按钮时,向你指定的 Endpoint 发送请求。
3. Gmail API 权限范围
如果你选择登录,我们请求以下权限范围:
gmail.modify:读取邮件元数据(发件人/主题/日期)和执行标记已读/未读、归档、删除操作。gmail.send:当你点击"发送"时,通过 Gmail API 发送草稿邮件。
你可以随时访问 Google 账号权限页面 撤回授权。
4. AI 辅助功能说明
如果你在设置页面配置了 AI 提供商并点击"AI 辅助",Gmail Plus 会将你选择的邮件文本和模板请求发送到你配置的 Endpoint。请求通过 HTTPS 发送至:
- 你在设置中输入的 Endpoint URL(我们不会默认值任何你未选择的地址)。
- 如果你保留内置默认值,则发送到 OpenAI 官方接口。
每个 AI 提供商都有自己的隐私政策。使用前请查阅对应服务条款。我们不会在服务端记录你的提示词,因为我们没有服务器。
5. 我们不收集的数据
- 不收集分析数据、页面浏览量、错误报告或崩溃日志。
- 不使用 Cookie 或追踪像素。
- 不对浏览器或设备进行指纹识别。
- 不与广告网络共享任何数据。
- 不出售任何数据。
- 我们没有自己的服务器,没有数据可以上传。
6. 权限说明
| 权限 | 用途说明 |
|---|---|
| storage | 在本地保存模板、偏好设置和 AI 配置 |
| identity | 运行 Chrome 扩展 OAuth 流程 |
| alarms | 定时检查收件箱新邮件 |
| notifications | 新邮件桌面通知(可在设置中关闭) |
| activeTab | 检测当前 Gmail 标签页以执行快速撰写/刷新 |
| contextMenus | 添加右键菜单项处理选中文本 |
| host_permissions: mail.google.com | 在 Gmail 页面注入辅助功能 |
| host_permissions: googleapis.com | 登录后调用 Gmail REST API |
| optional_host_permissions | 允许访问你在设置中添加的自定义 AI 提供商域名 |
我们使用最小权限集。如果某个功能未被使用,其权限不会被调用。
7. 儿童隐私
Gmail Plus 不面向 13 岁以下儿童,我们不会故意收集儿童的个人数据。
8. 隐私政策变更
如果我们做出任何实质性变更,将:
- 更新扩展版本号。
- 更新本页顶部的"生效日期"。
- 在下次启动时通过扩展弹窗显示一次性通知。
小的措辞修正(拼写错误、澄清说明)可能在不通知的情况下进行。
9. 联系方式
问题、请求或投诉:
- 在 Chrome 网上应用店列表页面的问题跟踪器中提交。
- 或发送邮件至 web@ijihe.com。
我们会在 14 天内回复。
10. 联系方式
问题、请求或投诉:
- 在 Chrome 网上应用店列表页面的问题跟踪器中提交。
- 或发送邮件至 web@ijihe.com。
我们会在 14 天内回复。
Gmail Plus Privacy Policy
Effective date: September 6, 2026
Local-first: Most data — your templates, your preferences, your AI API keys, your draft state — lives only inside your own browser profile. We do not run a backend, we do not collect telemetry, we do not sell anything.
1. Information We Process
To provide Gmail enhancement features, the extension may read or store the following:
| Data Type | Description | Storage Location |
|---|---|---|
| Local email templates | Subject, body, variables | chrome.storage.local |
| User preferences | Compact mode, theme, language | chrome.storage.local |
| AI provider settings | Endpoint URL, model name, API key | chrome.storage.local |
| Email cache summary | Sender, subject, date, thread id | chrome.storage.local |
| OAuth tokens | Tokens obtained via chrome.identity | Chrome identity storage |
We do not read or store message bodies, attachments, or contacts. We only cache the summary shown in the popup list.
2. Network Requests
Gmail Plus only accesses the network in these situations:
- Gmail API (www.googleapis.com): After you sign in and authorize, to read email metadata, mark read/unread, archive, delete, and send messages.
- Google sign-in: Uses chrome.identity.getAuthToken for the OAuth authorization flow.
- AI providers (optional): When you configure an AI provider and click "AI assist", requests are sent to your configured endpoint.
3. Gmail API Scopes
If you choose to sign in, we request these scopes:
gmail.modify: Read message metadata (sender/subject/date) and perform mark read/unread, archive, delete actions.gmail.send: Send draft messages when you click "Send".
You can revoke access at any time at Google account permissions.
4. AI Assist Feature
If you configure an AI provider in Settings and click "AI assist", Gmail Plus sends your selected email text and template request to your configured endpoint. Requests go over HTTPS to:
- The endpoint URL you typed into Settings (we never default to anything you did not choose).
- The default OpenAI endpoint if you keep the built-in default.
Each AI provider has its own privacy policy. Review the one you choose before using the feature. We do not log your prompts server-side because we do not have a server.
5. Data We DO NOT Collect
- We do not collect analytics, page views, error reports, or crash dumps.
- We do not use cookies or tracking pixels.
- We do not fingerprint your browser or device.
- We do not share any data with advertising networks.
- We do not sell any data.
- We do not have our own server. There is nothing to upload to.
6. Permissions Explained
| Permission | Why We Need It |
|---|---|
| storage | Save templates, preferences, and AI settings locally |
| identity | Run Chrome extension OAuth flow with Google |
| alarms | Schedule periodic inbox refresh checks |
| notifications | Desktop notifications for new mail (disable in Settings) |
| activeTab | Detect current Gmail tab for quick compose/refresh shortcuts |
| contextMenus | Add right-click menu items for selected text |
| host_permissions: mail.google.com | Inject helpers into Gmail when you install the toolbar button |
| host_permissions: googleapis.com | Call Gmail REST API after sign-in |
| optional_host_permissions | Allow AI providers on custom domains you add in Settings |
We use minimum permissions. If a feature is not used, its permission is not exercised.
7. Children's Privacy
Gmail Plus is not directed at children under 13. We do not knowingly collect personal data from children.
8. Changes to This Policy
If we change anything material we will:
- Bump the extension version.
- Update the "Effective date" at the top of this page.
- Surface a one-time notice inside the extension popup on next launch.
Minor wording fixes (typos, clarifications) may happen without notice.
9. Contact
Questions, requests, or complaints:
- Open an issue at the project's issue tracker in the Chrome Web Store listing.
- Or email the developer address shown on the Chrome Web Store developer page.
We aim to reply within 14 days.