Privacy statement
1. Who is responsible
MarketVision AGHagenholzstrasse 84
8050 Zurich, Switzerland
Company number CHE-141.149.077
info@marketvision.ch
2. Where your data lives
MailVault is a program that runs entirely on your own Mac. There is no service behind it that we operate, no user account, and no sign-in with us.
Your email travels directly between your mail server and your Mac, into an archive folder you choose. None of it ever reaches us. We have no access to your archive, your mailboxes, your credentials or your keys.
The software sends no usage statistics, no crash reports and no telemetry. It does not check for updates on its own.
3. Signing in with a Microsoft or Google account
For mailboxes on Microsoft 365, Outlook.com or Gmail, MailVault signs in over OAuth 2.0, because those providers no longer accept an ordinary password for IMAP. The sequence is this:
- The sign-in screen is shown by Microsoft or Google, not by MailVault. Your password is entered there and only there, and is never known to the software.
- The exchange of the grant for an access token happens directly between your Mac and the provider, using PKCE, with no server of ours involved.
- From Microsoft the permissions requested are
IMAP.AccessAsUser.All,offline_access,openidandemail. That is the least with which every folder of a mailbox can be read. No write permission is requested, and none is exercised. - The access and refresh tokens are held in your Mac's login keychain under the entry
oauth.mailvault. They are not written into the archive and are not transmitted anywhere.
You can withdraw the permission at any time, either in your account with the provider or by removing the account in MailVault, which deletes the stored tokens.
Mailboxes are opened read-only. Nothing is marked as read, no flag is changed, nothing is deleted.
4. What the software connects to
Apart from your own mail server, and the provider's sign-in service when you use OAuth, only the following connections exist, and both can be switched off:
- Time-stamping authority (RFC 3161)
- When timestamps are enabled, sealing the audit chain sends a digest to the authority you nominate. Only that hash is transmitted, never content, addresses or subject lines.
- Sender images
- Off by default. If you switch them on, a request is made to a third party in order to display a profile picture. Enable it only if that is permitted in your organisation.
Remote content in HTML messages is never loaded, neither in the application nor in the exported viewer. Loading an image would tell the sender that an archived message was read, and when.
5. This website
This website sets no cookies, embeds no analytics and loads nothing from third parties. Fonts and images are served from the same host.
As with any web server, technical access data is logged when a page is requested: IP address, time, the address requested, status code, bytes transferred, referrer and user agent. These logs serve the operation and defence of the service. The legal basis is our legitimate interest in secure operation (Art. 31 Swiss FADP, Art. 6(1)(f) GDPR). They are deleted after 90 days and are not combined with other data.
If you write to us, we use what you send only to answer you and to perform any contract that follows.
6. Your rights
Under the Swiss Federal Act on Data Protection and, where it applies, the GDPR, you have the right of access, rectification, erasure, restriction of processing and data portability, and the right to object to processing. Write to info@marketvision.ch.
You may also complain to a supervisory authority: in Switzerland the Federal Data Protection and Information Commissioner (FDPIC), in the EU the authority responsible for you.
Because we neither receive nor process the content archived with MailVault, we cannot give you access to it. It sits with you alone.
7. Changes
We revise this statement when the software or the legal requirements change. The version published here, bearing the date above, is the one that applies.