Privacy Policy
Effective date: November 12, 2025 • Last updated: November 12, 2025
AgentMail Companion is built for engineers who demand full control over their infrastructure. We do not ingest your data or proxy it through third parties. This policy describes the limited information the app handles and how it relies on the MCP Agent Mail server you self-host.
Data we never collect
- •No analytics SDKs, advertising identifiers, or tracking pixels
- •No centralized account system or telemetry about how you use the app
- •No access to your source code, repositories, or MCP Agent Mail archives
What stays on your device
- •Host configurations, cached agent threads, and UI preferences are stored locally via SwiftData
- •Sensitive credentials live in the iOS Keychain / iCloud Keychain with Apple-provided encryption
- •Removing the app or using iOS Settings → Delete Data clears everything instantly
What travels to your infrastructure
- •Agent messages you compose, preset launches, and status checks go directly to the MCP Agent Mail server you run
- •Authentication uses JWT + optional mTLS with certificate pinning to the host you configure
- •Apple Push Notifications carry minimal metadata (event type + timestamp) and never include code or transcripts
Third-party services you control
- •Cloudflare Tunnel, Tailscale/Headscale, or LAN are optional transports that you provision yourself
- •We do not receive credentials or observability data from those providers
- •All automation runs on your machines; the app is just a secure remote control surface
Security posture
- •TLS 1.3 for every connection plus optional certificate pinning
- •Device-bound CryptoKit signatures for mutating requests
- •Face ID / Touch ID confirmation for destructive workflows
Your rights
- •Access: open-source code lets you inspect exactly what ships to the App Store
- •Deletion: uninstalling AgentMail Companion erases all local data
- •Control: disable notifications or revoke connectivity at any time from iOS Settings
AgentMail Companion communicates only with the MCP Agent Mail host(s) you configure. We strongly recommend enabling TLS certificates (and optional pinning) plus keeping your host packages up to date. If you use Cloudflare Tunnel or Tailscale/Headscale, their respective privacy policies govern that transport.
By installing the app you consent to this privacy policy. Changes will be announced in release notes and reflected on this page with a new “Last updated” date.
Questions? Email app_support@mcpagentmail.com or visit our support page.