Privacy Policy

E2E Encryption for Gmail (browser extension) · Last updated: July 12, 2026
Summary: This extension does not send any data to a server. Neither email content nor contacts or keys ever leave your browser. Everything is stored and processed exclusively locally in your Chrome profile.

1. Data Controller

Contact: codecraft013@gmail.com

2. What the extension does

"E2E Encryption for Gmail" is an unofficial browser extension that runs on mail.google.com. It encrypts the subject, message body, and attachments with AES-256-GCM before an email is sent via the regular Gmail interface, and automatically decrypts received messages in the browser, provided a matching key is stored locally.

3. What data is processed

The extension processes the following categories of personal data, exclusively locally in the browser:

4. Where this data is stored

Contacts and keys are stored in the localStorage of the mail.google.com page in your Chrome profile (key e2e_gmail_contacts_v1). This is the same storage area used for other website data in your browser.

5. Disclosure to third parties

No data is shared with the developer or any other third party. The developer has no access to your contacts, keys, or message content.

6. Key exchange

Encryption keys must be shared with your contacts by you personally or via a separate, secure channel (e.g., in person, messenger, phone) – explicitly not via an unencrypted Gmail message. The extension does not handle this exchange automatically.

7. Deleting your data

8. Permissions

The extension does not request any Chrome permissions such as storage access, history, or tabs. It merely runs a content script on https://mail.google.com/* to display the encryption buttons within the Gmail interface.

9. Changes to this policy

This privacy policy may be updated as the extension continues to be developed. The current version is always available at this URL.