The personal data used is that which the user explicitly provides in the contact form : sender's name, subject of the email and message content. This information is included in an email sent via the Gmail API and is not stored on the application server. When logging in via OAuth (manual authentication), your email address is retrieved from your Google account. No other personal or sensitive data is collected or used.
The information collected (notably your email address) is used exclusively for sending the message via the contact form. No other use is made of this data, except for technical purposes related to the sending of the email.
The email address is stored securely, in compliance with security standards, in your browser as an access token required to interact with the Gmail API. This token is only available to authorized people or systems to send the message. The transfer of data between your device and the application is done by secure connection (HTTPS).
The information collected (notably your email address) will not be shared, sold or used for commercial purposes.
We will retain your personal information for the length of time needed to fulfill the purposes outlined in this privacy policy unless a longer retention period is required or permitted by law. The access token required for authentication through the Gmail API is securely retained and is automatically deleted in the event of an error or obsolete after prolonged inactivity. You can delete this data manually by deleting data from your browser. By default, the access token expires after 1 hour, according to Google's rules. No data is retained once the message is sent. If you experience repeated errors sending the message, I suggest you refresh the page or open a new tab.
If you have any questions about your personal data, you can contact me via the form.