Trust

Data Retention

WillItInbox keeps sensitive source data short-lived and stores derived results only as long as they are useful for your account.

Retention principles

WillItInbox separates sensitive source material from derived diagnostics. Raw email bodies and uploaded files are kept short-lived by default; account-level results, scores, usage records, and operational evidence may remain longer so teams can debug incidents, compare trend history, export reports, and prove what changed after a fix.

If a workflow needs longer retention for agency reporting, compliance review, or internal audit trails, start from the pricing page or contact support before sending production-scale data.

DataRetentionPurpose
Raw inbound email bodiesDefault 24 hoursUsed only to analyze deliverability reports.
Deliverability reportsPlan-based windowDerived findings are kept so you can revisit and share reports.
Bulk CSV uploadsJob TTL / short-lived cacheOriginal files are processed into derived validation results.
Validation resultsPlan-based windowUsed for dashboard history, exports, and usage support.
API keysUntil revokedOnly hashed keys are stored; raw keys are shown once.
Inactive accounts30-day grace periodNever-verified and expired accounts with no later login are automatically erased.
Financial recordsPeriod required by applicable lawIndian tax and accounting records are minimized or anonymized where possible and kept longer only when an audit, proceeding, claim, or other legal duty requires it.
Encrypted backup snapshots24 hoursOVHcloud Standard backups use provider-managed encryption at rest and expire on the provider schedule.
Operational logsLimited operational windowUsed for debugging, security, abuse prevention, and reliability.

For deletion requests or plan-specific retention questions, contact support. Review the privacy policy and security practices for the matching access and protection model.