SutokBeta

Privacy policy

Last updated 23 August 2026

In short

Sutok is a local mail client you install on your own computer. Mail content from any provider does not reach Sutok-operated infrastructure.

Your email is downloaded from your provider to your Mac and stored in Sutok’s local profile. Sutok and its service providers use separate online infrastructure for licensing, trial, updates, downloads, checkout, support, and transactional email. Sutok does not route mail content accessed by the app to those services.

Mail you send travels through the provider to the recipients you choose. Remote images can be fetched from their senders when you allow them.

What Sutok asks your provider for

When you add an account, Sutok asks that provider for permission to work with your mail on your behalf. It asks for the least it needs to be a mail client, and for nothing else.

Google accounts

https://www.googleapis.com/auth/gmail.modify
Read and search your mail, apply the changes you make, manage drafts and attachments, and send the messages and replies you write in Sutok.

Microsoft accounts

Mail.ReadWrite
Read and organise your Outlook mail.
Mail.Send
Send the messages you write in Sutok.
User.Read
Read your name and address so the account can be labelled.
offline_access
Keep the account connected without asking you to sign in repeatedly.

Fastmail, and other accounts

For Fastmail, Sutok uses an API token that you create yourself in your Fastmail settings. For any other mail host, Sutok uses the IMAP and SMTP username and password you type in. In both cases nothing is granted that you have not handed over directly.

What Sutok keeps, and where

Your messages, their attachments, and their details are kept in a database inside Sutok’s own folder on your Mac.

Your account passwords, and the sign-in permissions you grant through Google and Microsoft, are kept in the macOS Keychain. They are never written into that database, and never written into a plain file.

Sutok also keeps a cryptographically random installation ID in the Keychain and signed license and trial state in its app folder. The ID is generated by Sutok and is not derived from your hardware, serial number, network addresses, or Mac name.

Before authorizing Gmail, Sutok requires FileVault protection for the startup volume used by your home folder and logs. It also checks the actual volume holding Sutok’s data, including a custom or external location, and blocks connection unless that volume is password-encrypted.

What leaves your computer, and where it goes

Your Mac connects directly to Google, Microsoft, Fastmail, or your own mail server, depending on which accounts you have added. These are the same companies that already hold your mail.

Mail content does not reach Sutok-operated infrastructure for mail handling, storage, analytics, AI, crash uploads, or support uploads.

To start a trial, activate a purchase, and check whether a license was refunded, Sutok sends the random installation ID to sutok.app. It also sends your license key for activation and license checks. It does not send a hardware identifier or your Mac’s name.

Sutok checks sutok.app for update metadata and opens Sutok’s download service when you choose to download a release. Purchases are handled by Paddle, and contact-form messages are delivered to support through Resend. These services receive the information needed for those operations, not your mail content.

Images inside a message are fetched from their remote hosts only if you choose to load them. If you configure a SOCKS5 proxy or SSH tunnel, mail-provider traffic is routed through that service or host.

Google API Services User Data Policy

Information Sutok obtains from Google APIs is used only to provide the mail features described above. It is not sold or disclosed to Sutok’s developer or unrelated third parties, and it is not used for advertising or profiling or to train machine learning or artificial intelligence models. User-directed mail, remote-image requests you allow, and provider traffic through a proxy or SSH tunnel you configure follow the paths described above. Google data is not sent to Sutok-operated infrastructure.

Sutok’s use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

This website, and the contact form

Sutok does not run product analytics on this website. Cloudflareserves the pages, download metadata, and release files. Paddle’s checkout may use cookies or similar browser storage under Paddle’s own privacy terms.

If you send a message through the contact form, the name, email address, topic, and message you typed are delivered through Resend to the support inbox. They are used to respond to and resolve the support conversation.

Deleting your information

Removing an account inside Sutok deletes that account’s stored mail, search data, account-scoped settings, downloaded and draft attachments, cached frontend data, mixed Sutok logs, and its Keychain credential. Cleanup is durable and reports a retry when a phase cannot finish.

Removing an Account does not delete provider-side mail, attachments you exported with Save As, macOS Notification Center history, or copies in external backups. Google grant revocation is a separate choice because revoking access can disconnect the same Google Account from Sutok on another Mac.

Deleting the app bundle alone does not delete Sutok’s Application Support profile, logs, Keychain items, notification history, exports, or backups. See Google Data Help for Account removal and full-uninstall steps and for the boundaries controlled by you or macOS.

You can also withdraw Sutok’s access from the provider’s side. For a Google account: https://myaccount.google.com/permissions

For a Microsoft account: https://account.live.com/consent/Manage

For Fastmail, delete the API token you created for Sutok. For any other account, change the password you gave it.

Children

Sutok is not directed at children under 13, and collects nothing from them.

Changes to this policy

If this policy changes, the new version is published on this page with a new date at the top.

How to contact us

Write to support@sutok.app with any question about this policy or about how Sutok handles your information.

Sutok is sold by Amplify d.o.o. This policy is governed by the laws of Croatia.