unfortunately.fyi ← Back to app
Legal

Privacy Policy

Last updated: August 24, 2026

The short version Your emails never leave your browser. We don't have a server. We don't store, transmit, or sell any of your data.

What unfortunately.fyi does

unfortunately.fyi is a client-side web application that connects to your Gmail account via Google OAuth 2.0 and scans your inbox for HR rejection emails. It counts them, lists them, and lets you track your job search progress — locally, in your own browser.

What data we access

We request read-only access to your Gmail account (gmail.readonly scope). For each email matched by our search, we retrieve and use only:

We never download or store the full body of any email. We do not access attachments, contacts, drafts, sent mail, or any emails outside the rejection/offer search results.

Why we need this scope

Rejection emails cannot be identified from headers alone. Phrases such as "we have decided to move forward with other candidates" appear in the body of the message, not the subject line. unfortunately.fyi therefore asks Gmail to run a server-side search for those phrases across your mailbox, and Gmail returns only the list of messages that match.

This search capability requires the gmail.readonly scope. The narrower gmail.metadata scope cannot perform body-text search queries, and no other Gmail scope grants search without also granting write access. gmail.readonly is the minimum scope that supports the app's core function, and the app never writes, sends, modifies, or deletes anything in your mailbox.

How your data is stored

All data is stored exclusively in your browser's localStorage. This means:

Google OAuth and tokens

unfortunately.fyi uses Google Identity Services to obtain a short-lived OAuth access token. This token is held in memory only for the duration of your session and is used solely to call the Gmail API on your behalf. It is never written to disk, logged, or transmitted to any server.

You can revoke unfortunately.fyi's access to your Google account at any time at myaccount.google.com/permissions.

Limited Use disclosure

unfortunately.fyi's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Specifically, we affirm that:

AI and machine learning

We do not use Google Workspace APIs — including any data obtained through them — to develop, improve, or train generalized artificial intelligence or machine learning models. Your email data is never used as training data, and is never sent to any AI or machine learning service, whether operated by us or by a third party.

Rejection emails are identified using fixed keyword and phrase matching that runs entirely in your browser. No AI model is involved at any stage.

Third-party services

unfortunately.fyi uses the following third-party services:

No analytics, tracking scripts, or advertising services are used.

Children's privacy

unfortunately.fyi is not directed at children under 13 and we do not knowingly collect any information from children.

Changes to this policy

If this policy changes materially, we will update the date at the top of this page. Continued use of the app after changes constitutes acceptance of the updated policy.

Contact

Questions? Reach out at hi@unfortunately.fyi.