IMAPSMTPMCP
Privacy policy
Last updated: 18 September 2026
OrthoGraph Kft. operates imapsmtpmcp. Its registered office is Honvéd utca 49, 2009 Pilisszentlászló, Hungary; company registration number 13-09-101767; tax number 13418414-2-13. Contact: info@orthograph.net. This notice describes the information the service uses when you connect a mailbox to ChatGPT.
Information we use
We receive the mailbox name you choose, email address, IMAP and SMTP server names, ports, usernames, folder settings and the passwords entered on our secure setup page. We store the passwords encrypted. ChatGPT receives the OAuth token for this service, not your IMAP or SMTP passwords.
When you ask ChatGPT to use a mailbox, our server retrieves the messages, headers, folders or attachments needed for that request. Tool responses return the requested information to ChatGPT. When you send mail, recipient addresses, subject, body and selected attachments are sent through your configured SMTP server.
Why and with whom
We use this information to connect to the mail servers you specify, perform your requested mail actions, secure the connection and respond to support or security issues. The relevant data is transmitted to your configured mail servers and to OpenAI through the ChatGPT MCP connection. Our hosting and database infrastructure also process the information needed to run the service. Review OpenAI’s own privacy information for how ChatGPT handles content it receives.
Storage and retention
Mailbox settings and encrypted passwords remain in our database until that mailbox connection or your entire account is deleted. We do not intentionally keep permanent copies of message bodies or attachments. Short-lived action links expire after 15 minutes by default; attachment download links expire after 10 minutes. Access tokens last one hour and refresh tokens expire after 90 days. Expiry prevents further use; expired records may remain until routine cleanup. Copies in infrastructure backups may remain until those backups rotate.
Your controls
To remove one mailbox, ask ChatGPT to remove that named mailbox through imapsmtpmcp. To delete all data for your imapsmtpmcp account, ask ChatGPT to delete your entire imapsmtpmcp account. In either case ChatGPT provides a one-use link to our secure confirmation page. Full account deletion lists the affected mailboxes and requires you to type DELETE MY ACCOUNT before submitting. After confirmation, we delete your account record, every saved mailbox setting and encrypted password, issued OAuth tokens, pending OAuth codes and action links from the active database. Connected ChatGPT tokens stop working. Messages and folders on your mail servers are not deleted. You can also disconnect the plugin in ChatGPT. For access requests or help with deletion, email info@orthograph.net.
Security
Connections to this website use HTTPS. Mail server connections use TLS with certificate validation. Passwords are encrypted at rest and are not returned in MCP tool results. No internet service can promise absolute security; report suspected misuse through the support page.