This page explains how Plouro processes personal data when you connect Gmail or Outlook, generate PDF backups, save to Google Drive, download locally, and use optional AI summaries.
When you use Plouro with your own email account, you typically act as the data controller for the email content you choose to back up. Plouro acts as a data processor for the limited processing needed to provide the service (grouping by sender, applying filters, exporting to PDF, storing to your destination, and optional AI summaries).
If your organization uses Plouro for multiple users, your organization may be the controller.
Plouro processes email data you authorize via Gmail/Outlook connection, such as sender/recipient information, subject lines, timestamps, message content, and metadata required to generate your PDF backups.
Account connection data
OAuth tokens and identifiers needed to access your mailbox.
Email content you select
Emails included in your export scopes (groups + filters).
Export outputs
Generated PDFs and folder paths (Drive or local download events).
Usage + diagnostics
Basic logs (e.g., export status, errors) to keep the service reliable.
Plouro relies on the following lawful bases under GDPR depending on context:
Plouro is “backup-first.” You choose what to export and where to store it:
Google Drive destination
PDFs are stored in Drive folders you control. You can delete or move them anytime.
Local downloads
PDFs download to your device for offline storage. You control access and retention locally.
Note: Your export destinations (Drive / device) are under your control. Plouro does not sell email content.
Plouro may offer optional AI features like thread summaries and draft replies. When enabled, Plouro processes only the content needed to generate the requested output. If you prefer not to use AI, you can keep AI features disabled.
Your control
You decide if AI is used, and you decide what threads are summarized or used for drafting.
We use reasonable administrative, technical, and organizational safeguards designed to protect personal data, including access controls, encrypted connections, and security monitoring.
No security method is perfect, but we continuously work to improve safeguards.
Plouro aims to minimize retention. We keep data only as long as needed to provide the service, comply with legal obligations, resolve disputes, and enforce agreements.
Exports
PDF files are stored in your chosen destination (Drive or your device). You control deletion there.
Connection access
You can disconnect accounts anytime, which stops future processing.
If you are in the EEA/UK, you may have rights such as:
Access & portability
Request a copy of personal data we hold about you.
Rectification
Request corrections to inaccurate personal data.
Erasure
Request deletion where applicable (“right to be forgotten”).
Objection & restriction
Object to or restrict certain processing in some cases.
Make a GDPR request
Email [email protected]
Include your account email and the type of request (access, deletion, correction, restriction, objection).
Email [email protected]You also have the right to lodge a complaint with your local data protection authority.
Depending on where you are located and where our service providers operate, personal data may be processed outside the EEA/UK. Where required, we use appropriate safeguards designed to protect personal data.
We may update this GDPR page as the service evolves. Material changes will be reflected here.
Last updated: