Back to Sift

Privacy Policy

Last updated: March 5, 2026

What Sift does

Sift is a read-only AI email triage tool. It connects to your Gmail account, reads your incoming emails, and uses AI to classify them with a verdict (read or skip), summary, tag, and emoji. Sift never sends, deletes, or modifies your emails in Gmail.

Data we collect

  • Google account info: Your name, email address, and profile picture via Google OAuth.
  • Gmail messages: Sender name, sender email, subject line, and a truncated plain-text body (max 2,000 characters) of emails received in the last 7 days.
  • OAuth tokens: Google access and refresh tokens to read your Gmail on your behalf. These are stored securely in our database and never exposed to the client.

How we use your data

  • Email content is sent to Anthropic's Claude API for classification. Anthropic does not use API inputs to train models.
  • We store email metadata and AI-generated summaries in our Supabase database, scoped to your user account.
  • Emails automatically expire and are deleted after 7 days unless you explicitly keep them.
  • We do not sell, share, or monetize your data in any way.

Data storage and security

Your data is stored in Supabase (PostgreSQL) with row-level security — you can only access your own data. All communication happens over HTTPS. OAuth tokens are stored server-side and never sent to the browser.

Third-party services

  • Google Gmail API — Read-only access to fetch your email (scope: gmail.readonly).
  • Anthropic Claude API — AI email classification. Email content is processed but not retained by Anthropic.
  • Supabase — Authentication and database hosting.
  • Vercel — Application hosting.

Your rights

  • You can revoke Sift's access at any time from your Google Account permissions.
  • You can request deletion of all your data by contacting us.
  • Non-kept emails are automatically deleted after 7 days.

Contact

Questions about this policy? Reach out at owen@owentaylor.com.