Monolit Privacy Policy
Last updated: March 2026
Monolit operates Monolit.Cloud and related services, including MonolitMail, MonolitBrowser, MonolitCalendar, and future Monolit products. Monolit.Cloud functions as the central identity, synchronization, configuration, and security layer for the ecosystem.
1. Introduction
This Privacy Policy explains how we collect, use, process, store, and protect personal information when you use our services. If you have questions about this policy, contact privacy@monolit.cloud.
2. Scope of This Policy
This policy applies to Monolit public websites, authenticated panels, APIs, desktop and mobile applications, and future Monolit services, including:
- https://monolit.cloud
- https://app.monolit.cloud
- https://admin.monolit.cloud
- Monolit desktop and mobile applications
- Future Monolit services
3. Information We Collect
3.1 Account Information
When you create an account we may collect name, email address, authentication credentials, account identifiers, product preferences, and account settings.
3.2 Device Information
Because Monolit.Cloud manages device trust and synchronization, we may collect device identifiers, device names, operating system details, application version, session metadata, and timestamps of device activity. This information is used to secure and manage your devices.
3.3 Usage Information
We collect limited operational data including login activity, session events, feature usage, security events, and sync events. This data helps us operate and secure the service.
3.4 Communication Data
If you contact support we may collect messages, support requests, and diagnostic information you voluntarily provide.
3.5 Referral Information
Monolit may provide referral functionality, which may include referral codes, referral links, referral statistics, and signup attribution. Referral data is used only for referral program operation.
3.6 Mail Account Metadata
When using MonolitMail, we may store metadata such as connected email accounts, provider type, account status, and capability flags. Credentials and tokens are stored securely and never exposed publicly.
3.7 Vault and Secrets
Monolit may store references to sensitive credentials, such as OAuth tokens, IMAP or SMTP credentials, API keys, and service tokens. Secrets are stored securely and access is restricted.
4. Information We Do Not Intentionally Collect
Monolit does not intentionally collect or analyze message content beyond what is required to provide functionality, personal files unrelated to service operation, unrelated browsing history, or unrelated application data. We do not sell personal data.
5. How We Use Information
- Operate the Monolit platform
- Authenticate users
- Manage sessions and devices
- Synchronize product configuration
- Provide product features
- Secure accounts
- Detect abuse or fraud
- Improve reliability and performance
- Support referral programs
- Comply with legal obligations
6. Device and Session Security
Monolit.Cloud provides device-aware security features including device registration, session tracking, revocation of devices, recent authentication verification, and security event logging. This information is used solely to protect your account.
7. Data Storage and Security
We use technical safeguards including encrypted connections (TLS), secure token storage, access controls, device-based security models, audit logging, and secrets management. No system can guarantee absolute security, but we implement reasonable protections.
8. Data Retention
We retain information only as long as necessary to operate the service. Retention may depend on active account status, legal obligations, and operational security needs. Users may request deletion of their data.
9. Your Rights
Depending on your jurisdiction, you may have rights to access your data, correct inaccurate data, delete your data, export your data, restrict processing, or object to processing. Requests may be sent to privacy@monolit.cloud.
10. Cookies and Tracking
The Monolit website may use limited cookies for authentication, session continuity, and basic analytics. We do not use invasive tracking technologies.
11. Third-Party Services
Monolit may integrate with third-party providers including email providers, authentication providers, and infrastructure services. These providers may process data according to their own policies.
12. International Transfers
Monolit may process data in multiple jurisdictions depending on infrastructure providers. Where required, safeguards are used to protect data.
13. Children’s Privacy
Monolit services are not intended for children under 13. We do not knowingly collect information from children.
14. Changes to This Policy
We may update this policy periodically. If significant changes occur, we will notify users through the website, application notices, or email notifications.
15. Contact
For privacy questions, contact privacy@monolit.cloud.