← Back to site

Privacy Policy

Last updated: 2026-07-28

Soft Send processes only the data needed to delay and send messages you choose to queue. No server operated by Soft Send receives Google user data. Queued message data is processed in the extension and transmitted to Google's Gmail API at your request.

Google user data we access and how we use it

Data accessedWhere it is processed or storedPurpose
Recipients, subject, and HTML body of a message you choose to queueProcessed by the extension, stored temporarily in chrome.storage.local, and transmitted over HTTPS only to the Google Gmail API as a draft in your Gmail accountTo create the draft, hold it for your selected delay, and ask Gmail to send or delete it when you choose
Gmail draft and message identifiers returned by the Gmail APIchrome.storage.local on your deviceTo send or delete the correct Gmail draft
Draft identifier, thread identifier, Subject, In-Reply-To, and References headers of a reply you choose to queueRetrieved temporarily from the Gmail Drafts API in metadata-only format and processed in extension memoryTo keep the queued reply in its original Gmail conversation; this metadata is not retained separately
OAuth access tokenRequested and managed by Chrome's identity APITo authorize the draft create, reply metadata lookup, send, and delete requests made to the Gmail API
Addresses used in messages sent through Soft Sendchrome.storage.local on your deviceTo determine whether a recipient is new
Daily counters (sent / saved)chrome.storage.local on your deviceShown in the popup
Your settings, including any high-risk addresses or domains you enterchrome.storage.sync, which Google may sync through your Chrome profile when Chrome Sync is enabledTo apply your preferences across Chrome browsers where you are signed in

Soft Send does not list or read your inbox messages. When you choose to queue a reply, it briefly lists recent Gmail drafts and retrieves metadata for candidate drafts to identify the matching conversation. It uses only the draft identifier, thread identifier, Subject, In-Reply-To, and References headers. The API request uses metadata-only format and does not return the draft body.

Sharing, transfer, and disclosure

Soft Send discloses Google user data only as follows:

ExtensionPay and Stripe process the optional Pro purchase. Soft Send receives and stores only a paid or unpaid status. They do not receive Gmail message content, recipients, Gmail identifiers, contact history, settings, or OAuth tokens from Soft Send.

There is no Soft Send server, email relay, advertising service, or analytics endpoint. No Soft Send employee or contractor has access to Google user data because that data is not sent to infrastructure operated by Soft Send.

For ExtensionPay's own handling of payment data, see their privacy policy at https://extensionpay.com/privacy.

Data protection and security

Soft Send does not separately encrypt data stored in the local Chrome profile. The strongest protection is data minimization: no Google user data is copied to a Soft Send server, and queued message data is removed from the local queue when it is sent or cancelled.

Limited Use compliance

Soft Send's use of information received from Google Workspace APIs adheres to the Google Workspace API User Data and Developer Policy, including the Limited Use requirements.

Google user data is used only to provide the visible delayed-send, cancellation, editing, risk-warning, and send features requested by the user. It is never sold, used for advertising, used to determine creditworthiness, provided to data brokers or information resellers, or used to train general-purpose artificial intelligence or machine-learning models.

Permissions and why they're needed

Gmail API scope

Soft Send requests a single scope: https://www.googleapis.com/auth/gmail.compose. This is required to create, list, retrieve metadata for, send, and delete drafts. Soft Send uses this permission only for messages you explicitly queue through the extension. It does not list or read inbox messages. For replies, it retrieves metadata-only draft responses as described above and does not retrieve draft bodies.

Data retention and deletion

Contact

For privacy questions or help deleting locally stored Soft Send data, contact softsend.review@gmail.com.