Privacy Policy
Last updated: October 10, 2026
Gnuke is a Chrome extension and a phone web app that unsubscribe you from a Gmail sender and move everything that sender ever sent you to the Trash. It talks to Gmail straight from your browser or your phone. No Gnuke server ever sees your mail, and nothing is sold. This page explains what that means in detail.
The short version
- Your mail goes from Gmail to your browser or phone. It does not pass through a Gnuke server.
- Gnuke reads message metadata (sender, subject, unsubscribe headers, read or unread). It opens a message body only when it has to find an unsubscribe link the headers don't carry.
- Gnuke never deletes anything permanently. Nuked mail goes to Gmail's Trash, and Undo works for 30 days.
- There is no analytics, advertising or tracking in the extension or the phone app, and none on this website today.
- Nothing is sold, and nothing is shared with anyone other than Google and the sender's own unsubscribe address.
What Gnuke can access, and why
When you sign in, Google asks you to approve specific permissions (scopes). Gnuke asks for as few as it can.
- Gmail, to nuke (
gmail.modify). Gnuke lists a sender's messages, reads their metadata, moves them to Trash, and records their message IDs so Undo can put them back. When a sender's unsubscribe header asks for an email, Gnuke sends that unsubscribe email from your address. It reads a message body only when it must look for an unsubscribe link the headers don't provide. It never deletes mail permanently. - Gmail settings, only for Block (
gmail.settings.basic). If you choose Block, Gnuke creates a Gmail filter that sends that sender's future mail straight to Trash. Unblock removes the filter. Gnuke asks for this permission the first time you use Block, not before. - Google Drive app data, only for sync (
drive.appdata). If you turn on Sync across computers, Gnuke keeps one hidden file in a private folder of your own Google Drive that only Gnuke can open. It holds the same list and Undo records described below. Turn sync off and Gnuke erases the file's contents and stops syncing on all your computers. - Your Google profile, phone app only. On an interactive sign-in, the phone app may ask Google for your name and photo so it can show your avatar. It does not ask for them again in the background.
The new mail checks (a daily or weekly look at what arrived, with a note when there are 25 or more new emails worth nuking or a nuked sender is back) use the same Gmail permission and run on your device.
Where your data is stored
Chrome extension. Gnuke stores the following in Chrome's local storage on your computer: the history of senders you nuked or blocked (with counts and dates), the message IDs it needs for Undo, your keep list (senders you chose to always keep), and your settings. Undo records are deleted after 30 days. The Google access token sits in the browser's session storage for its one-hour life.
Phone app. The app at app.getgnuke.com stores the same kind of information in the browser's own storage on that phone (IndexedDB and localStorage). Clearing the site data in your browser removes it.
Sync, if you turn it on. The same list and Undo records are copied to the hidden file in your Google Drive described above. They go from your device to your Google account. They do not go to us.
The weekly reminder on the phone app
The phone app can send you a weekly reminder notification if you turn it on. To do that, a small reminder service keeps two things: your phone's push address (the address your browser gives so a notification can reach it) and the day and hour you picked. It does not hold your email address, access to your Google account, or any of your mail. This reminder service is the only server in the Gnuke system, and it never sees your mail. On iPhone, reminders need the app added to the Home Screen.
Google user data
Gnuke's use and transfer of information received from Google APIs follows the Google API Services User Data Policy, including its Limited Use requirements. Gmail data is used only to do what you ask (find senders, unsubscribe, move mail to Trash, undo and block), is never used for ads, is never sold, and no person reads it.
Who else receives data
- Google. Gnuke's requests go to Google's Gmail (and, if you use sync, Drive) APIs under your own sign-in.
- The sender. To unsubscribe you, Gnuke sends the sender's own unsubscribe address a one-click unsubscribe request (the standard POST defined in RFC 8058), sends the unsubscribe email the sender asks for, or opens the sender's unsubscribe page for you. The sender learns that you unsubscribed, the same as if you had clicked their link yourself.
- Google's favicon service. Sender logos come from Google's public favicon service. Only the sender's domain is sent, never your address or any message content.
- The reminder service, as described above, if you turn on the phone reminder.
Nothing is sent to us, to advertisers or to any other third party. Gnuke does not sell your data and does not share it.
This website
getgnuke.com has no ads. There is no analytics on the site today. If that ever changes, this page will say so before it does.
Your choices
- Undo any nuke from inside Gnuke for 30 days. After that, Gmail's own Trash retention applies.
- Unblock a sender to remove its Gmail filter.
- Turn off sync to erase the Drive file's contents.
- Leave the weekly reminder off and the reminder service never receives anything from your phone.
- Remove Gnuke's access to your Google account at any time at myaccount.google.com/permissions. Uninstalling the extension or clearing the phone app's site data deletes what Gnuke stored on that device.
Changes to this policy
If this policy changes in a way that matters, the date at the top changes with it, and we will say what changed on this page.
Contact
Questions about privacy: hello@getgnuke.com.
Gnuke is not made by or affiliated with Google. Gmail and Chrome are trademarks of Google LLC.