Privacy Policy
Your privacy is bound to your identity. Learn how we handle and protect your information.
1. Commitment to Privacy
MXend operates under a strict zero-knowledge architecture. This means we design our secure mail delivery systems so that your cleartext message contents and attachments are encrypted before leaving your client device. We do not have access to your decryption keys, and therefore we cannot read your communication.
2. Data Collection and Usage
To provide our services, we collect minimal data essential to establishing secure routes, validating domain mappings, and performing multi-factor identity verification. The data we collect includes:
- Account registration details (organizational email, verification status).
- Billing and transaction metrics for subscription management.
- Operational logs (e.g., routing headers, timestamp, and source IP) to preserve network integrity and prevent abuse, kept only for short-term audit requirements.
3. Data Sovereignty
MXend respects regional compliance standards. We allow customers to lock data storage to specific regional nodes (e.g., EU, North America, Asia-Pacific). Your data is handled in strict compliance with the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).
4. Data Sharing and Transfer
We do not sell, rent, or lease your personal information. Data is shared only with verified infrastructure processors bound by strict confidentiality protocols as detailed in our Data Processing Agreement (DPA).