Skip to main content
MailCub Logo Image

Privacy Policy

This Privacy Policy explains how we collect, use, store, and safeguard information when you use our website, platform, and related services (collectively, the “Services”).

Last Updated:November 2025

MailCub (“we,” “our,” or “us”) provides a cloud-based email infrastructure that allows users to send and receive emails using their own domains. We respect your privacy and are committed to protecting your personal data in accordance with international privacy laws, including the General Data Protection Regulation (GDPR – EU 2016/679), the UK GDPR & Data Protection Act 2018, the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA), the CAN-SPAM Act, and Pakistan’s Personal Data Protection Bill.

1. Who We Are

MailCub is an email infrastructure and delivery platform that enables individuals and organizations to send, receive, and manage emails through their custom domains.

For most functions, MailCub acts as a Data Processor , processing data on behalf of customers (Data Controllers). In specific cases (such as user registration, billing, or marketing), we may act as a Data Controller.  

Contact Information:

📧 support@mailcub.com

🌐  https://mailcub.com

2. Information We Collect

We collect data to provide, secure, and improve our Service.

A. Account Information

  • First name, last name, email address, password  

  • Address and contact details  

  • Payment information (processed securely via third-party payment gateways)  

  • Domain ownership details (for verification and configuration)   

B. Email and Communication Data

  • Sender and recipient email addresses  

  • Email body, subject lines, and attachments (processed only for delivery purposes)  

  • Delivery logs, bounce rates, and spam/abuse reports   

MailCub does not read, store, or share your email content except when necessary for delivery troubleshooting, abuse prevention, or when legally required.

C. Technical and Usage Data

  • IP address, browser type, and device information  

  • Access timestamps, API usage logs, and error diagnostics  

D. Cookies and Tracking

We use cookies and tracking technologies to:

  • Keep sessions secure  

  • Analyze site performance  

  • Personalize user experience  

You can control cookies through your browser settings.

3. How We Use Your Information

We use your data for:

  1. Service Delivery – Sending, receiving, and managing email traffic.  

  2. Account Management – Verifying identity, managing subscriptions, and providing access.  

  3. Improvement & Analytics – Enhancing stability, performance, and reliability.  

  4. Security – Preventing spam, abuse, and unauthorized access.  

  5. Customer Support – Responding to your requests and inquiries.  

  6. Legal & Compliance – Meeting obligations under applicable laws and regulations.   

We never sell or rent your personal data.

4. Legal Basis for Processing (GDPR & UK GDPR)

We rely on the following lawful bases:

  • Contractual Necessity: To provide our Services as per your agreement.  

  • Legitimate Interest: To maintain, develop, and protect our platform.  

  • Legal Obligation: To comply with applicable laws, including tax and fraud regulations.  

  • Consent: For optional communications, newsletters, or cookies (where applicable).

5. Data Retention

  • Account Data: Stored while your account remains active and up to 1 month after closure, unless legally required longer.  

  • Email Logs: Retained for up to 30 days for delivery tracking and abuse detection.  

  • Email Content: Automatically deleted after successful delivery or within system timeout limits.  

Billing & Transaction Records: Retained for all years in compliance with accounting laws.

6. Data Sharing and Disclosure

We may share limited data only with:

  • Trusted Service Providers: Hosting, DNS, payment gateways, and analytics platforms under Data Processing Agreements (DPAs). 

  • Legal or Regulatory Authorities: If required by law or valid request. 

  • Corporate Transactions: During mergers or acquisitions, you’ll be informed in advance of any ownership or data change.  

We do not share data with third parties for marketing or advertising purposes.

7. Data Security

We use industry-standard security frameworks including:

  • TLS/SSL Encryption for data in transit  

  • AES-256 Encryption for data at rest  

  • Role-based access control and audit logs  

  • 24/7 infrastructure monitoring and intrusion detection  

  • Annual third-party penetration testing  

While we apply strict measures, no online service is entirely risk-free. Users are encouraged to use strong passwords and enable domain-level security (SPF, DKIM, DMARC).

8. International Data Transfers

MailCub may store and process data on servers in the United States, the United Kingdom, the European Union, or Asia .   When data is transferred outside your region, we ensure compliance with:

  • GDPR Article 46: Standard Contractual Clauses (SCCs)  

  • UK GDPR: International Data Transfer Addendum  

  • CCPA/CPRA: Data processing limitations and consumer rights  

Encryption and Access Controls: To ensure data protection regardless of jurisdiction 

9. Your Rights

Depending on your country or region, you may have the right to:

  • Access: Obtain a copy of your personal data.  

  • Correction: Request corrections to inaccurate or incomplete data.  

  • Deletion (“Right to be Forgotten”): Request data deletion.  

  • Restriction: Limit specific data processing.  

  • Portability: Receive data in a machine-readable format.  

  • Objection: Opt out of certain processing (e.g., direct marketing).  

  • Withdraw Consent: At any time where consent is the basis of processing.  

To exercise these rights, email support@mailcub.com, we respond within 10 days.

10. Third-Party Integrations

MailCub integrates with CRMs, analytics tools, or other third-party apps at your request. When you connect such tools, your data may be shared per those providers’ policies. We strongly advise reviewing each provider’s Privacy Policy before integration.

11. Children’s Privacy

Our Services are not intended for individuals under 18 years .   If we learn that a child’s data was collected unintentionally, it will be promptly deleted.

12. Updates to This Policy

We may update this Privacy Policy periodically.   Substantial changes will be notified via email or website announcement.   The “Last Updated” date reflects the most recent revision.

13. Contact Us

If you have any privacy-related questions, complaints, or requests:

📧  support@mailcub.com

🌐  https://mailcub.com/privacy