Junkmail

Privacy

Privacy notice

Junkmail is a private, receive-only disposable-email service. This notice explains the data the Junkmail service handles and the controls available to you. It does not turn your aliases into public inboxes, and Junkmail does not forward received mail to your real address.

Data we handle

Passwords, personal access tokens, recovery codes, and webhook signing secrets are stored only in hashed or encrypted form appropriate to their use. A newly issued token, recovery code, or webhook secret is shown only when it is created.

Why we use it

We use this data to authenticate you, receive and display mail for aliases you control, search and organize your mailbox, deliver notifications or webhooks you request, prevent abuse, enforce service limits, protect the service, and operate backups and diagnostics. The receiving domains cannot send or reply, and received messages are never forwarded.

Legal bases

Account, alias, mailbox, API, requested-integration, and optional paid-plan processing is necessary to provide the service you ask for and perform the Terms of service. Security, fraud prevention, rate limits, aggregate reliability statistics, and service defense rely on the operator’s legitimate interests in keeping the shared service safe and available. Billing records required by tax, accounting, or other applicable law are processed to comply with those obligations. Optional browser notifications are enabled only at your request and can be withdrawn by removing the subscription or disabling push.

Retention and deletion

Service providers and destinations you choose

Junkmail uses infrastructure needed to host, store, search, and protect the service. When account verification and password-reset delivery is enabled, that mail goes through a dedicated transactional provider, never through a Junkmail receiving domain. If you enable browser push, the push service associated with your browser receives only the alias, sender, and subject—not the body or extracted code. If you configure a webhook, its metadata-and-code payload is sent to the HTTPS endpoint you choose.

Premium and Pro checkout is served by Junkmail’s self-hosted BTCPay Server. It processes the invoice, Bitcoin address, payment and network data needed to observe settlement. Bitcoin transactions are also recorded on the public Bitcoin network. Junkmail’s application receives only signed invoice events and reads the canonical invoice status; it does not receive or store a wallet private key or seed phrase.

Hosting, DNS, and transactional-mail suppliers process only the data needed for their role under the operator’s instructions and contractual safeguards. A webhook destination is selected by you, and a browser push service is selected by your browser vendor. If a provider or destination processes data outside your country or the European Economic Area, the operator uses an applicable adequacy decision or appropriate safeguards such as standard contractual clauses where the law requires them.

Junkmail has no ads and no cross-site tracking. It does not sell mailbox data. Authentication and security cookies are used only to provide sign-in, session, remember-me, and CSRF protection; aggregate service metrics do not require tracking cookies.

Your controls

From Your data, an authenticated user can download a ZIP containing JSON account, alias, message, billing, session, security-activity, and integration metadata plus the raw .eml files still retained, or permanently delete the account after confirming the current password. Password and two-factor secrets, token and recovery-code hashes, webhook secret ciphertext, push encryption keys, payment credentials, and internal storage paths are excluded from the export because disclosing credential material would weaken account security. You can also delete individual messages, burn aliases, revoke sessions and API tokens, remove webhooks and push subscriptions, and disable optional two-factor authentication.

Depending on where you live, you may also have rights to access, correct, erase, restrict, port, or object to processing, and to withdraw consent without affecting earlier processing. Use the self-service controls where they cover your request, or email privacy@junksink.com for a privacy question that cannot be completed in the product. You may lodge a complaint with the data-protection supervisory authority responsible for your habitual residence, workplace, or the place of an alleged infringement.

Security boundary

Message HTML is treated as hostile input: it is sanitized, displayed in a sandboxed frame, and remote images are blocked by default. Mailbox content has no operator-console reading route. No system can make internet email risk-free, so protect your account password and recovery codes and revoke access you no longer use.