Genesis Gmail Read Host — Privacy Notice

Genesis Gmail Read Host is a privately operated Windows component of the Genesis system for its operator's personal email workflows. It is not a public Gmail service or an Apex customer-facing product.

Google information and purpose

Authorization uses Google account identity information, including the verified account email, and OAuth credentials. The identity permissions openid and userinfo.email are separate from the Gmail permission https://www.googleapis.com/auth/gmail.readonly.

That Gmail permission permits mailbox-wide reading. Genesis applies narrower controls: an account check and a separately approved read of one exact message for workflow intake and approval/execution evidence. Google responses can include message content, headers, sender and recipient information, identifiers, dates, snippets, labels and MIME metadata. The mailbox-profile check can also return mailbox statistics. This integration does not send, change or delete Gmail messages or monitor the inbox autonomously.

Processing and retained evidence

The reviewed workflow processes raw message content transiently in local processes. It does not save raw bodies, subject lines or snippets as audit records. It rejects attachments rather than separately downloading or retaining attachment files; attachment metadata can be present in a response before rejection.

Minimized local audit records can retain message and thread identifiers, account-related hashes, timestamps, sizes, hashes of message/header information, and proposal, approval and execution evidence. These records can remain linkable to an account or message; they are not described as anonymous.

Storage and protection

Local Genesis Gmail audit records are stored on a Windows system volume protected by Windows Device Encryption and Windows access controls. OAuth credentials are stored separately through Windows Credential Manager.

The Desktop OAuth client configuration is a separate local file. Operating-system behavior, other software and copies can affect where information exists and how it is protected. This notice does not promise absolute confidentiality, secure erasure of process memory or protection of unknown backups.

Sharing

Google processes authorization and API requests. The reviewed Gmail-host path does not intentionally send message content to an external AI service or another non-Google service. This statement does not cover unrelated software, operator exports or machine backups.

Google API information is used and transferred in accordance with the Google API Services User Data Policy, including its Limited Use requirements. It is not sold, used for advertising or used to train generalized AI models.

Retention and deletion

Audit evidence has no automatic expiry. It remains locally until manually removed under the operator's data-management procedure. The operator reviews it at workflow completion, disconnection and deletion requests, retaining it only while needed for an identified workflow-recovery, security-investigation or audit purpose, and manually removes evidence no longer needed. Credentials can be removed independently.

To delete retained Genesis Gmail audit material, the operator stops active mail-host processes, reconciles or retires affected workflows and approvals, identifies the related records across the Genesis audit stores, and manually removes those records and any identified copies under their control. Deletion is checked afterward, and retired approvals or deleted records must not be restored into active use. Unrelated business records must not be deleted. The operator can be contacted for help; this process is not automatic.

Disconnecting and revoking authorization

Local disconnection removes the saved Genesis credential. Google authorization must be revoked separately through Google Account connections. Stop any active authenticated host as part of disconnecting.

Local disconnection does not automatically erase audit evidence, client configuration or copies, and does not itself revoke Google's grant. Neither local disconnection nor revoking the grant deletes the original Gmail messages.

This website and contact

This informational website is hosted on Cloudflare Pages. Its pages contain no operator-added analytics, advertising, forms or public Google login. Cloudflare processes website connection and request information, which may include IP addresses and technical traffic data, to provide its services; see Cloudflare's privacy policy. No Gmail records or OAuth credentials are uploaded to this site.

Support and privacy contact: genesis@apexpeptideanalytics.com. This address delivers into the operator's existing Apex business mailbox hosted by Network Solutions. Correspondence is used to handle the request and retained while needed for that purpose. Do not email passwords, OAuth tokens or message contents merely to request deletion help.