Privacy policy
Updated on
Who we are
OmniFast is a macOS app that brings together email, tasks, commitments and bills to pay.
Data controller: A DEFINIR. Contact: suporte@getomnifast.com.
What stays on your computer
Synced messages, drafts, tasks, tags, routines, bills and preferences live in a database on your Mac. OmniFast keeps no copy of this content on its own servers.
Account access (sign-in tokens and app passwords) and any statement PDF passwords you ask it to remember are kept in the macOS Keychain.
Statement PDFs are opened and read on your Mac. Only the PDF text goes to the app's engine, which also runs on your Mac, to find the amount and due date.
Who the app connects to
The app connects directly to your email provider's servers (for example Google, Microsoft, iCloud, Yahoo, Fastmail, Zoho or the IMAP server you enter) to read, organize and send your messages.
If you turn on snoozing across all your Macs, the app keeps the list of snoozed conversations in an "OmniFast" folder in your own email account. It does not go through OmniFast servers.
When you ask to unsubscribe, the app uses the unsubscribe method provided by the sender, which may send them a request.
Google and Microsoft data
With your permission, OmniFast accesses your Google account through the https://mail.google.com/ scope, and your Microsoft account through the IMAP.AccessAsUser.All, SMTP.Send and offline_access scopes, to show, organize and send email over IMAP and SMTP.
This data is used only to provide these features to you. It is not sold, not used for advertising and not read by people, except with your explicit consent, for security or when required by law.
OmniFast's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
AI assistance
On a Mac with Apple Intelligence, summaries, quick replies and Rewrite use Apple's model on your computer. None of it leaves your Mac.
To organize your inbox while you're on the trial or subscribed, OmniFast asks a cloud AI service about conversations from the last 14 days: whether a message needs a reply or is urgent, whether a billing or service notice is genuine, which amount is the total of a bill, which tab it belongs in (for accounts outside Gmail), which of your folders it would go to and whether your last sent message expects a reply. For this, the following go through the OmniFast server to the provider (Jev, by TypeSafe): the sender, subject and the start of the text (up to 1,200 characters) of the latest received message; the names of your folders; and, from your last sent message, only the subject and the start of the text. The OmniFast server doesn't store the content, only usage counts. Attachments, recipients and quotes are not sent.
OmniFast account
To use the app, you sign in with your email and a 6-digit code we send to it. The code lasts 10 minutes and is stored only in hashed form. To prevent abuse, we keep the IP address of whoever requests codes for one hour.
Each subscription covers one Mac. So the app sends the OmniFast server a hash (SHA-256) of the Mac's identifier, never the identifier itself, and the Mac's name as set in System Settings, to show which Mac holds the subscription.
We keep in the account: the email, the trial and subscription dates, the plan, the Mac in use and the monthly count of AI classification. The app session stays in the Mac's Keychain; the server keeps only a hash of it, and it expires after 180 days without use.
Account data is kept while the account exists. To delete your account, write to suporte@getomnifast.com. Payment records are kept for the period required by tax law.
Payments
The subscription is paid on a page run by Asaas, a Brazilian payment institution, which asks for your name, tax ID (CPF or CNPJ), phone and address, plus card or Pix details. Asaas handles this data as the party responsible for the payment, under its own policy.
OmniFast does not receive card details. We keep only the Asaas codes that link the payment to your account and until when the subscription is paid.
Services we use
The OmniFast server runs on Vercel, with the account database on Neon. Sign-in codes are sent through Resend. AI classification uses Jev, by TypeSafe. Payments use Asaas.
These providers process data only to provide their service to OmniFast. Some of them are outside Brazil, mainly in the United States, and in those cases the data is transferred there.
Analytics and this site
Beyond the account and classification described above, the app sends no usage analytics or crash reports.
This site uses no cookies or analytics tools. Hosting may log technical access data, such as IP address, for security and operations.
Your rights
You can revoke access at any time: remove the account in the app or revoke it at myaccount.google.com/permissions or account.microsoft.com. Uninstalling the app and deleting its data folder removes local content; saved passwords can be deleted in the app's Settings or in Keychain Access.
To exercise your rights under the LGPD (access, correction, deletion, portability and information), write to suporte@getomnifast.com.
Changes to this policy
Relevant changes will be announced on this page and in the app, with the update date.