Privacy Policy
Last updated: 26 August 2026
MailBridge is based in Switzerland. This policy explains what data we collect through the website and the add-in, why, and how you can control it. It is written in plain terms, not by a law firm.
What we collect
The Outlook add-in
The add-in itself collects nothing: your emails and CRM data go straight from your mailbox to your CRM, never through MailBridge. What it sends us is your email address and your license token, to open a trial, activate a license and revalidate it periodically. Each of those calls is recorded for security, with your address, your IP address, your browser identification and a random identifier the add-in generates for the installation — never the content of anything.
This website
The website is separate from the add-in. It handles the contact form (your first and last name, email address, company name, subject and message) and the audience measurement built from the server access log — covered below.
Why we process it
To answer your message, and to create, verify and protect your license. Keeping a record of license calls also lets us spot a key being shared far beyond what it was bought for. We do not sell your data to third parties.
How long we keep it
Every kind of data we hold has a defined lifetime, and something in the application that enforces it — not just an intention.
- Contact form messages are deleted from our database 90 days after they are sent.
- The copy of your message delivered to our mailbox is kept for at most one year. If your enquiry turns into an ongoing exchange, that exchange is kept for as long as our business relationship lasts.
- When you start a free trial, we keep the address you used for the length of the trial and 90 days after it, so that we can answer you. It is then replaced by an irreversible fingerprint that we keep for one year: it lets us refuse a second free trial for the same mailbox, and nothing else — we can no longer tell which address it came from, nor contact you from it.
- Your license and the seats attached to it are kept for as long as the license is active, plus whatever accounting obligations require of us.
- The security record of license calls — your address, IP address, browser identification and installation identifier — is deleted after 90 days.
- Technical server logs (IP address, path, User-Agent) are kept on a rotation: at most 30 MB per container, with the oldest entries overwritten automatically. There is no fixed calendar duration — it depends on traffic volume, not on the host.
Who we share it with
Nobody, beyond the infrastructure that runs the site and delivers the reply email. When payments go live they will go through a payment provider under its own privacy policy — we will name it here when it does.
Cookies
MailBridge does not use tracking or advertising cookies. The website only sets the technical session cookie required to keep the contact form working. Our audience measurement deliberately sets none either — see below — so there is no tracker here for us to ask you to accept.
Analytics
We measure how the site is used, to know which pages actually help and where visitors come from. Three choices set this apart from ordinary web analytics.
- Nothing runs in your browser. No analytics cookie, no third-party script, no tracking pixel — nothing is stored on your device or executed by it. It is our own server that reports the page you viewed, from what it already sees in order to answer you.
- Your IP address is never recorded in full. It is truncated at the very moment the line is written: on IPv4 the last block is replaced by zero, on IPv6 only the network part is kept. What remains is enough to count a visit and tell one region from another, not to point at you.
- Nothing leaves our infrastructure. The statistics are computed by Matomo, which we host ourselves. No ad network, no third-party service, no transfer — there is simply nobody else your data would be handed to.
- Raw visit data is deleted after six months. What remains is aggregate counts — visits per page, for instance — which no longer relate to anyone.
Your rights
Under the Swiss Federal Act on Data Protection and, where applicable, the GDPR, you can ask to access, correct or delete your data at any time — just get in touch.
Changes to this policy
We will update this page as the service evolves — payment processing in particular — and revise the date above whenever we do.