Privacy Policy
Last updated: 14 Apr 2026
This Privacy Policy explains how InboxGreen.email™ (“we”, “us”, “our”) processes personal data in connection with our website and services in accordance with applicable data protection laws (including GDPR).
1. Data Controller & Contact
Controller: EPE TECH SOLUTIONS. Contact: [email protected].
2. Categories of Personal Data
- Account data: name, email, password hash, organization.
- Billing data: subscription details, invoices, and payment status handled via a third-party payment processor (we do not store full card numbers).
- Service usage: the domains or inputs you choose to test, configuration choices, timestamps, and related logs.
- Technical data: IP address, device/browser details, pages visited, and identifiers set via cookies or similar technologies (see Cookie Policy).
- Support communications: messages you send us via email or forms.
3. Purposes & Legal Bases
- Provide and operate the Service - contract necessity.
- Process payments, prevent fraud, and manage subscriptions - contract necessity and legitimate interests.
- Support and communicate with you - contract necessity and legitimate interests.
- Maintain security and improve the Service - legitimate interests.
- Comply with legal obligations - legal obligation.
- Optional updates/marketing - consent (if/when requested; withdraw anytime).
4. Retention
We retain personal data only as long as necessary for the purposes above, including to meet legal, tax, and audit requirements. Examples:
- Account and billing records: for the life of the account and a reasonable period thereafter (e.g., up to 7 years for tax/audit).
- Service logs: typically 90-365 days unless security or legal needs require longer.
- Test results: retained per your plan’s history limits or until you delete them.
5. Sharing & Processors (No Public Vendor List)
We use carefully selected third-party service providers to operate and secure the Service (for example, a payment processor, email service for transactional messages, infrastructure and security providers). These providers act as processors under our instructions and appropriate agreements. We do not sell personal data.
6. International Transfers
Where data is transferred outside your jurisdiction, we rely on appropriate safeguards (e.g., contractual clauses) and implement supplementary measures when required.
7. Your Rights
- Access, rectification, erasure, restriction, portability, and objection (as applicable).
- Withdraw consent where processing relies on consent.
- Lodge a complaint with a supervisory authority.
Exercise rights by emailing [email protected]. We may verify your identity.
8. Security
We use technical and organizational measures appropriate to the risk (encryption in transit, access controls, least-privilege access, and limited retention). No method is 100% secure.
9. Children
The Service is not intended for individuals under 18, and we do not knowingly collect data from minors.
10. Changes
We may update this policy. We will post the new version with an updated date and notify you of material changes when appropriate.
11. Contact
Email: [email protected]