Hearth

Hearth School Inbox (personal)

Privacy notice

This notice explains the private application's Gmail connection and this separate public information website.

Effective September 21, 2026

What Google access permits

The account owner grants the Google permission gmail.readonly. This permission technically allows reading the whole mailbox. Google's permission is not limited to school messages; the application's source-selection rules provide that narrower boundary.

The application checks the connected account profile and mailbox change identifiers. It may read message headers and labels to determine whether a message matches an enrolled source. Only matching messages are fetched in full for school-notice processing, including supported attachments. Nonmatching message bodies are not fetched or retained by this workflow.

The connection cannot send mail, delete or archive messages, change labels, or mark messages read.

Why data is used

Matching notices are used to prepare source-linked actions, event details, updates, and a private household digest. The application retains supporting message content, identifiers, extracted text, proposed items, household decisions, and processing checkpoints needed for review and duplicate prevention.

Model processing runs on household-controlled computers. Email and derived data are not used for advertising, sold, or used to train general-purpose AI models. This connector does not send school content to external AI services.

Hearth School Inbox's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including its Limited Use requirements.

Who can access it

School notices and derived items are available to the account owner and explicitly approved household users through the private application. The household operator may access retained records to maintain or troubleshoot the service. They are not published to this website or automatically added to a general knowledge library.

Google provides Gmail and authorization services. Cloudflare hosts only this public information website. Email content and Google authorization credentials are not uploaded to Cloudflare by this application.

Storage, retention, and removal

Credentials and retained school records are stored separately on household-controlled systems with restricted access. Private recovery copies may be kept on another household computer. Content is retained while needed for household follow-through and according to the private application's retention settings.

The private board's evidence-removal control removes selected retained messages and linked active items, history, and digest copies. It does not delete the originals in Gmail. A minimal duplicate-prevention record can remain for one year. Removal from the active database is not forensic disk erasure; older private backup copies remain until their separate retention policy removes them.

Disconnecting Google stops future authorized retrieval but does not automatically remove already retained records. To remove retained information or private credentials, use the removal control or ask the household operator through your existing private contact channel.

Your control

The owner can pause processing and revoke the connection at any time through Google Account connections. Changing the application's purpose or Google permissions requires renewed notice and appropriate consent.

For privacy questions, contact the household operator using your existing private channel or the support address shown on Google's consent screen. Do not send passwords or authorization tokens.

This public website

These pages contain no application sign-in, forms, tracking scripts, advertising, or embedded third-party content. The hosting provider may process ordinary connection information, such as IP addresses and request metadata, to deliver and protect the site. See Cloudflare's privacy policy.