Read-only access
Never sends, deletes, or modifies email.
Nothing stored
One-line summaries; bodies discarded.
EU infrastructure
All data on European servers. GDPR.
No AI training
OpenAI DPA signed. Your data never trains models.
Norian connects to your Gmail or Outlook inbox in read-only mode via UniPile, our email infrastructure partner, and to Microsoft Teams (via Microsoft Graph) and Slack when you connect them. We use the minimum permissions needed to read your messages, never to send, modify, delete, draft, or archive.
Email content is processed in memory and discarded immediately after extraction. We extract a one-line structured summary (commitment or request), then throw away the original. Your email bodies are never written to our database.
The only things stored are: the one-line summary, the email sender domain, a timestamp, and a link back to the original message in your inbox.
All data at rest is stored in EU-based infrastructure (Supabase Frankfurt, Vercel EU, and the UniPile email connection hosted on Scaleway in France). Your data never leaves European servers, except for AI text analysis (OpenAI, via Standard Contractual Clauses) and payment processing (Stripe).
Norian uses OpenAI's GPT-4o-mini to read the text of your client emails and extract structured summaries of commitments and requests. To do this, the relevant email content - stripped of HTML, signatures, and quoted reply history - is sent to OpenAI's API for analysis. Norian does not store it afterwards, and we only send email from the client contacts and domains you monitor, never calendar invitations, marketing, or messages outside those domains.
We have signed OpenAI's Data Processing Addendum, which contractually prohibits OpenAI from using your data to train models. Processing happens under EU Standard Contractual Clauses.
Every database table has Row Level Security (RLS) enforced at the database level. Users cannot access each other's data. This is architecturally enforced, not just a coding convention. Even if a bug existed in the application layer, the database would reject cross-account queries.
The action links in Norian's digest emails (Mark as done, Snooze, Not relevant) use cryptographically unique, single-use tokens. Each token expires after 48 hours and can only be used once. A replayed or forwarded link does nothing.
You can disconnect your inbox and delete your account from Settings at any time. Account deletion is OTP-verified: all personal data held by Norian is permanently deleted within 60 seconds, and access to your inbox (via UniPile) is revoked within 24 hours. Nothing is retained after that, except where required by applicable law.
The database service role key (which bypasses Row Level Security) is restricted to server-side background jobs only. It is never sent to a browser, never logged, and never used in client-side code.
Norian shares data only with the sub-processors listed in our Privacy Policy, under written data processing agreements. We never sell, rent, or trade personal data.
If you believe you have found a security vulnerability in Norian, please email security@norian.ai. Where possible, include the steps to reproduce it and any relevant details. It helps us confirm and fix the issue quickly.
We welcome good-faith security research. If you act in good faith, avoid privacy violations and disruption to others, and give us a reasonable chance to fix an issue before disclosing it publicly, we will not pursue or support legal action against you for your research.
We aim to acknowledge reports within three business days and will keep you updated as we investigate. Our machine-readable contact details are published at /.well-known/security.txt.
For privacy questions or data requests, email privacy@norian.ai.