MMailmyra
  • Pricing
  • Setup guides
  • FAQ
Outlook-ready HTMLLog inTry the builder

Legal

Privacy Policy

Effective 2026-08-13

Draft — this document has not yet been reviewed by counsel.

1. Two different roles

There are two kinds of personal data in Mailmyra, and we handle them differently:

  • Your account data (the e-mail address and password you sign up with) — here we are the data controller: we decide why and how it is processed.
  • Sender data you enter into the builder (the names, job titles, and e-mail addresses of the people you are making signatures for) — this is your team's data, not ours. You are the data controller for it; Mailmyra only processes it on your behalf so it can be rendered into a signature and stored in your workspace. See our KVKK Aydınlatma Metni for the Turkish-law disclosure.

2. What we collect

  • Account data: your e-mail address and a hashed password (we never store your password in plain text).
  • Sender data: whatever you type into the signature builder — name, job title, department, company, phone numbers, e-mail, website, address, social links, custom fields, and any legal/disclaimer text you add.
  • Uploaded images: logos, avatars, and hand-signature images you upload, converted and hosted at cdn.mailmyra.com (never on a third-party provider's own domain — see our internal architecture rules on why).
  • Technical data: a single essential session cookie that keeps you signed in. We do not use analytics cookies, tracking pixels, advertising scripts, or any third-party tracking of any kind.

3. Why we collect it

Account data is used to authenticate you, run your subscription (currently invoiced manually — see our Terms of Service), and send transactional e-mail (e-mail verification, invitations, password resets). Sender data and uploaded images exist only to build and render the signatures you ask for; we do not use them for anything else, and we do not sell or share them with advertisers.

4. Where your data is hosted

Mailmyra runs on our own servers in Türkiye — we do not route your data through a third-party cloud CDN. Uploaded images are served from cdn.mailmyra.com, which is our own domain served from our own infrastructure, so the URLs baked into signatures already in the field keep working for as long as we keep running that domain.

5. Who else sees it

Nobody, beyond what is strictly needed to run the service: our hosting provider (in Türkiye) and, for transactional e-mail, an SMTP provider we use to deliver verification and notification messages. We do not use analytics vendors, advertising networks, or any third-party script on the signup or builder pages.

6. How long we keep it

We keep your data for as long as your account exists. There is no automatic expiry — retention ends when you (or we, at your request) delete the account.

7. Deletion

Deleting your account is permanent and complete: your senders, signatures, and every uploaded image on cdn.mailmyra.com are removed. We do not keep a backup copy for you to recover. One consequence worth knowing before you do this: signatures already pasted into recipients' e-mail clients reference those image URLs directly, so once the files are gone those signatures will show a broken-image icon instead of your logo. This is by design — deletion means deletion, not a soft disable.

8. Cookies

We set exactly one cookie: an essential session cookie that keeps you signed in. It is not used for tracking or advertising, and it is required for the service to function (you cannot stay signed in without it). Because we set no non-essential cookies, we do not show a cookie consent banner.

9. Your rights

You can review and edit your account e-mail and your signatures at any time from the app. You can export your data (copy the signature HTML, or download the .htm file) at any time. You can delete your account outright, which deletes everything as described in Section 7. If you are the data subject for sender data entered by someone else's workspace (i.e. you are a customer's employee), please contact that customer directly — they control that data, not us.

10. Changes to this policy

If we change this policy in a way that matters, we will update the version date above — the single source for that date is lib/legal-links.ts in our codebase.

11. Contact

Questions about this policy, or a data request: [contact e-mail address — to be confirmed].