Privacy — How Freetempmail handles your data
Freetempmail is designed to minimize data collection. Read what we store, what we never see, how we use Google Analytics, and how we keep your inbox anonymous.
Freetempmail is designed to minimize data collection. This page describes exactly what we collect, what we never see, and what we never do with your data. If anything is unclear, email contact@freetempmail.com.
The short version
- No email, no phone, no password to use the service.
- No ads. No ad networks. No advertising pixels for monetization.
- We use Google Analytics 4 (measurement ID
G-NMB4WX1TLS) for aggregate website traffic only. It does not receive your temporary email address or message contents. - No IP-to-address logging. We never know which IP opened which inbox.
- The session token that authenticates you to the upstream provider lives in your browser's localStorage — not on our servers.
- Mail content is streamed from the upstream each time you open it. We retain no copies on our side.
What we don't collect
- No email, no phone, no password to sign up.
- No name. No profile. No avatar.
- No IP–inbox mapping. We never log which visitor opened which temporary address.
- No advertising identifiers for ads. We don't run ads and we don't sell data.
- No analytics of message contents. Mail bodies and temporary addresses are never sent to Google Analytics or any other analytics product.
What we process (and why)
Temporary inbox
When you create a temporary inbox, the following happens:
- Your browser calls our Worker's
createAccountendpoint. - The Worker calls one of our upstream providers (mail.gw, duckmail.sbs, or mail.tm — see Sub-processors) to provision a new account.
- The upstream returns an address and a JWT.
- Your browser stores the JWT in localStorage. The Worker does not store it.
- Subsequent polls hit the upstream directly — not through our Worker — using the JWT.
We never see the JWT, the address contents, or any email body in transit through our Worker.
Website analytics (Google Analytics)
We load Google Analytics (gtag.js) site-wide so we can measure aggregate usage: page paths, referrers, device/browser type, and approximate geography as processed by Google. Measurement ID: G-NMB4WX1TLS.
What GA is for: understanding how people find and use the marketing site and product shell, so we can improve the service.
What GA is not for: reading your mail, building advertising profiles from inbox activity, or tying visits to a temporary address. We do not send temporary email addresses, JWTs, or message bodies to Google Analytics.
Google's policy: https://policies.google.com/privacy.
Sub-processors
Third parties involved in delivering the service:
- Cloudflare — hosts the static site and the Worker. Sees request metadata (your IP, the URL you requested, the TLS fingerprint). They do not see the JWT, the address, or the message contents. Their policy: https://www.cloudflare.com/privacypolicy/.
- Google Analytics (Google LLC) — site analytics via gtag.js. Receives standard GA4 event data (e.g. page URL, client technical data, and related cookies/IDs as described by Google). Does not receive mail addresses or message bodies from us.
- mail.gw / duckmail.sbs / mail.tm — the upstream mail providers. They see the address, the JWT, and the message contents. We have no control over their retention — see their respective policies.
Cookies
- PARAGLIDE_LOCALE — first-party cookie set when you switch language (fallback when the URL does not already encode a locale).
- Google Analytics cookies (for example
_ga,_ga_*) — set by gtag.js to distinguish visits for aggregate traffic measurement. Details are on the Cookie Policy page.
We do not set advertising cookies for ad networks. We do not run ads on Freetempmail.
Data retention
- Session token (JWT): in your browser's localStorage, until you click Discard or clear your browser data. Not on our servers.
- Email contents: on the upstream provider, governed by their retention. Typically 1–7 days. Discard the address and they are gone upstream as well.
- Server logs: Cloudflare's default request logging. We add nothing to it. We have no way to query it in production.
- Google Analytics: retained according to our GA property settings and Google's product terms (aggregate traffic reports only on our side).
Your rights
Temporary addresses and their messages are under your control — click Discard and they are wiped from the upstream. We do not maintain an account profile for you.
For site analytics processed by Google, you can limit collection with browser controls (block third-party scripts, clear cookies, or use tools such as browser tracking protection). Where applicable law gives you rights against analytics providers, you may also exercise them with Google under their policy.
If you have a complaint we cannot resolve, you can contact the lead supervisory authority in your jurisdiction.
Changes to this policy
If we make a material change — adding a sub-processor, changing a retention period — we will update this page and add a changelog entry. The "last updated" date at the bottom of this page is the source of truth.
Contact
For privacy questions, email contact@freetempmail.com or use the contact page.
Last updated: 2026-07-28.