Application email privacy
Effective 6 October 2026. Google sign-in establishes your Shogir identity. It does not let Shogir send or read your Gmail. Connecting Gmail is separate and optional.
Current availability
Gmail automation is not available to members while its review requirements are being completed. Public Google sign-in uses a separate configuration limited to your basic account identity. There is no need to connect Gmail or continue past an unverified-app warning to use the job-search workspace.
What you authorize
When activated and connected, Shogir can send applications from your connected Gmail address to recruitment contacts published with the jobs you select, attaching the CV and cover letter for that role. A confirmed delivery failure may use one other recruitment contact published with the same vacancy. Addresses are not guessed. You separately authorize each selected batch on the job board.
Reading replies
Google grants read access through its Gmail readonly permission. Shogir uses it to check the application threads it created and delivery reports matching those applications. It does not intentionally read unrelated conversations. Reading is necessary to identify replies, confirmed failures and automatic responses. Google email content is not sent to OpenAI by this email integration.
Automatic responses
You may enable one brief acknowledgement for an employer reply. Shogir does not automatically accept an offer, negotiate pay, agree to an interview time, supply new personal facts or follow instructions to forward documents to another address. Those replies need your attention. Out-of-office notices and other automated messages receive no automatic reply, to prevent loops. A request to stop contact stops email activity for that application.
Storage and protection
OAuth refresh tokens and stored PDF packages are encrypted with AES-256-GCM on the server. Application records retain job references, the recruitment contact, email status and message identifiers. Related email bodies are processed for status and are not stored as a mailbox copy. No Google password is requested or stored. Documents and application metadata are retained for up to 30 days when cleanup runs; until background processing is activated, cleanup runs when you use the email workspace. Disconnecting disables email access immediately and attempts to revoke the Google token.
Your controls
Disconnect Gmail in the job-board email panel or revoke Shogir in your Google account. Your previously sent messages remain in Gmail and with their recipients. Contact [email protected] for deletion of retained Shogir email records and files. Email features remain unavailable until the owner configures and activates Google OAuth. Reply checking in an open workspace is separate from unattended server scheduling.
Google API Limited Use
Shogir’s use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including its Limited Use requirements. Gmail data is used for the authorized application-email service, not advertising, sale, credit decisions or training general-purpose AI models.
Gmail connection walkthrough
A short walkthrough with English narration and captions, showing optional Gmail permissions and the completed private connection test.
This edited review draft includes earlier screenshots. Google verification is still pending completion, and public Gmail automation remains disabled. The test sent synthetic documents only to the connected owner’s own address.
Watch on YouTube