Privacy Policy

Last Updated: November 10, 2025

1. Introduction

PureMail ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our email verification service. By using PureMail, you consent to the data practices described in this policy.

2. Information We Collect

2.1 Account Information

When you create an account, we collect:

  • Name and email address
  • Password (encrypted and never stored in plain text)
  • Company name (optional)
  • Billing information (processed securely through Stripe)

2.2 Email Addresses You Verify

When you use our service to verify email addresses, we temporarily store:

  • Email addresses submitted for verification
  • Verification results (valid, invalid, risky, etc.)
  • Metadata (domain, DNS records, SMTP status)
  • Timestamps of when verifications were performed

Data Retention: Verification data is retained for 90 days, then automatically deleted. You can delete your data at any time from your dashboard.

2.3 Usage Data

We automatically collect:

  • IP address and browser type
  • Pages visited and features used
  • API requests and response times
  • Error logs and performance metrics
  • Device information (operating system, screen size)

2.4 Payment Information

Payment processing is handled by Stripe. We do not store your full credit card details. Stripe collects and stores payment information according to their Privacy Policy.

3. How We Use Your Information

We use the collected information to:

  • Provide the Service: Process email verifications and deliver results
  • Account Management: Create, maintain, and secure your account
  • Billing: Process payments and maintain transaction records
  • Communication: Send service updates, security alerts, and support messages
  • Improvement: Analyze usage patterns to improve our service
  • Security: Detect fraud, abuse, and prevent unauthorized access
  • Legal Compliance: Comply with legal obligations and resolve disputes

4. Data Sharing and Disclosure

We do NOT sell or rent your personal information to third parties. We may share data only in these circumstances:

4.1 Service Providers

We share data with trusted third-party services:

  • Stripe: Payment processing
  • Clerk: Authentication and user management
  • Supabase: Database hosting
  • Upstash: Redis queue management
  • Vercel: Application hosting and CDN

These providers are contractually obligated to protect your data and use it only for providing services to us.

4.2 Legal Requirements

We may disclose information if required by law, court order, or government request, or to:

  • Comply with legal processes
  • Enforce our Terms of Service
  • Protect our rights, property, or safety
  • Investigate fraud or security issues

4.3 Business Transfers

If PureMail is acquired or merged with another company, your data may be transferred to the new entity. We will notify you of any such change and the choices you have regarding your data.

5. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption: All data is encrypted in transit (TLS/SSL) and at rest (AES-256)
  • Access Controls: Role-based access with multi-factor authentication
  • Monitoring: 24/7 security monitoring and intrusion detection
  • Regular Audits: Periodic security assessments and vulnerability scans
  • Secure Infrastructure: Hosted on secure, compliant cloud platforms

While we strive to protect your data, no method of transmission over the internet is 100% secure. You are responsible for maintaining the confidentiality of your account credentials.

6. Your Data Rights

You have the following rights regarding your personal data:

  • Access: Request a copy of your personal data
  • Correction: Update inaccurate or incomplete information
  • Deletion: Request deletion of your account and data
  • Export: Download your verification history in CSV format
  • Opt-Out: Unsubscribe from marketing emails (service emails still apply)
  • Restriction: Limit how we use your data in certain circumstances

To exercise these rights, contact us at info@puremail.dev. We will respond within 30 days.

7. Cookies and Tracking

We use cookies and similar technologies to:

  • Essential Cookies: Required for authentication and security (cannot be disabled)
  • Analytics Cookies: Track usage patterns to improve our service (can be disabled)
  • Preference Cookies: Remember your settings and preferences

You can control cookies through your browser settings. Disabling certain cookies may limit functionality.

8. Third-Party Links

Our service may contain links to third-party websites. We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies before providing any information.

9. Children's Privacy

PureMail is not intended for users under 18 years of age. We do not knowingly collect information from children. If you believe we have collected data from a minor, please contact us immediately, and we will delete it promptly.

10. International Data Transfers

Your data may be transferred to and processed in countries other than your own. We ensure that such transfers comply with applicable data protection laws and that adequate safeguards are in place.

11. GDPR Compliance (EU Users)

If you are in the European Economic Area (EEA), you have additional rights under GDPR:

  • Right to data portability
  • Right to object to automated decision-making
  • Right to lodge a complaint with your local data protection authority

Our legal basis for processing your data is:

  • Contract: To provide the service you requested
  • Consent: For marketing communications (you can withdraw anytime)
  • Legitimate Interest: For fraud prevention and service improvement

12. CCPA Compliance (California Users)

If you are a California resident, you have the right to:

  • Know what personal information we collect and how it's used
  • Request deletion of your personal information
  • Opt-out of the sale of your data (we don't sell data)
  • Non-discrimination for exercising your rights

13. Data Retention

We retain your data for different periods depending on the type:

  • Account Data: Until you delete your account
  • Verification Results: 90 days (or until you delete them)
  • Billing Records: 7 years (for tax and legal compliance)
  • Logs and Analytics: 12 months

After deletion, some data may remain in backups for up to 30 days before permanent deletion.

14. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last Updated" date. Significant changes will be communicated via email. Your continued use of the service after changes constitutes acceptance of the updated policy.

15. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your data, contact us at:

PureMail Privacy Team

Email: info@puremail.dev

Support: info@puremail.dev

Address: [Your Business Address]

By using PureMail, you acknowledge that you have read and understood this Privacy Policy and consent to the collection, use, and disclosure of your information as described herein.