Security, privacy,
and how it works

Your email security and privacy are fundamental to everything we do at Superinbox. Find the most important details below, followed by FAQs, and then links to all our terms and policies at the bottom of this page.

We encourage security vulnerability reports and maintain a public Vulnerability Disclosure Policy with reporting guidelines and procedures.

CASA Tier 2 Certified.

SuperInbox has been independently audited and awarded CASA Tier 2 certification.

Google & Microsoft Partner. SuperInbox is officially authorized and integrated with Google and Microsoft.

No data stored. Emails are analyzed in real time and never stored. Nothing is kept after processing.

The basics

Superinbox is an AI-powered email assistant that works with Gmail and Outlook. It requires OAuth authentication to access your email.

You control when and how Superinbox processes your emails. It doesn't automatically read or process anything without your explicit action.

Superinbox uses best-in-class AI providers (OpenAI, Anthropic, and Google) to help you draft, summarize, and manage your emails more efficiently.

Model Training

We do not allow third parties (like OpenAI, Anthropic, or Google) to use your data to train their AI models.

Superinbox trains on anonymized data to improve our service. You can opt out of this in your Settings.

Enterprise users have model training turned off by default.

Vector-Based Storage

Superinbox doesn't store full copies of your emails - we only store encrypted vector representations needed for AI processing. This ensures your actual email content remains secure while enabling powerful AI features.

You control who sees your data. All data is private by default until you choose to share or send emails.

You can delete individual items or request deletion of all your data at any time.

Everything Stored in Industry-Standard, Encrypted Infrastructure

Your data is stored in AWS Virtual Private Clouds with region selection - you choose whether your data resides in US or EU servers.

All data is encrypted at rest using AES-256 and in transit using TLS 1.3. Daily backups ensure data resilience.

Superinbox is built and maintained by our engineering team with experience from leading tech companies, ensuring enterprise-grade security.

We're Here If You Need Us

If you have more questions, please reach out to our security team at security@superinbox.com

Need More Company-Wide Controls?