Privacy Policy

Last updated: March 30, 2026

1. Who We Are

Meridix is operated by Tech Tap Solutions. We provide AI-powered business email services including inbox management, email sending APIs, shared inboxes, AI auto-responders, and encrypted email.

2. Data We Collect

Email Data

We process and store the content, metadata (sender, recipients, timestamps, headers), and attachments of emails sent and received through Meridix. This data is stored in PostgreSQL and Stalwart Mail Server.

Account Data

Name, email address, organization name, role, and authentication tokens managed via our auth provider (Bulwark).

Usage Data

IP addresses, browser type, pages visited, email volumes, API call counts, and feature usage for analytics and billing.

3. How We Use Your Data

  • Email delivery — routing, storing, and delivering your email
  • AI features — classifying, summarizing, and generating responses (see our AI Disclosure)
  • Security scanning — Emadeus analyzes content for spam, phishing, malware, and tracking pixels
  • Billing — tracking usage against plan limits
  • Service improvement — aggregate, anonymized analytics

4. Third-Party Services

ServicePurposeData Shared
AWS SESOutbound email deliveryEmail content + headers
Hetzner CloudInfrastructure hosting (US)All data at rest
Bulwark AuthAuthenticationEmail, session tokens
Anthropic (Claude)AI summarization + responsesEmail content for processing
GroqAI classificationEmail content for processing
Backblaze B2Encrypted backupsEncrypted database dumps

5. Data Retention

Email data is retained according to your organization's retention policy (configurable by admins). Default: Priority emails indefinitely, Stream 90 days, Records 365 days, Quarantine 30 days. You can request data deletion at any time.

6. Your Rights

Under GDPR, CCPA, and similar regulations, you have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Delete your data
  • Export your data in a portable format
  • Opt out of AI processing (via Settings > AI Privacy)
  • Withdraw consent at any time

7. Security

We use TLS encryption in transit, AES-256-GCM for encrypted email portal messages, SSH key-only server access, fail2ban intrusion prevention, and daily encrypted backups to geographically separate storage.

8. Contact

For privacy inquiries: [email protected]