Privacy Policy

Version 1.0 · Effective 18 August 2026

Panorithm reads a company's email so it can answer questions about it. That is an unusually broad thing to let software do, so this page is specific about what it reads, what it keeps, where that is, and who can see it. It describes what the software actually does, not what it might one day do.

Panorithm is operated by MAMMARELLA (PTY) LTD (2021/684969/07), 6 Calders Road, Bedfordview, Johannesburg, Gauteng, 2008, South Africa. For anything in this policy, write to obakengm@mammrlla.com.

1. What Panorithm is allowed to do with your mailbox

You connect your own mailbox through Google's consent screen. Google, not us, decides what we may do, and it grants exactly these permissions:

Panorithm cannot send email, delete anything, or change anything in your mailbox. Not because a setting forbids it, but because the permission that would allow it was never requested from Google. It can leave a draft. A person still has to press send.

You can withdraw the whole thing at any moment, from inside Panorithm or from your Google account at myaccount.google.com/permissions.

2. What is stored, and what is not

Panorithm does not keep copies of your attachments. When you open a document it is fetched from Gmail at that moment and passed to you. It is not held in our database.

What we do store:

3. Who can see it

Inside a company, the account holder decides. Two things are set per person:

Somebody can also be given an account that connects a mailbox and searches nothing, which is what most people at a company actually need. Everyone is emailed when their access changes, and Settings states it in a sentence.

The account holder can grant somebody access to every connected mailbox. That is their decision to make about their own company, and it is the one setting worth checking before you connect a mailbox that carries anything you would not want a colleague to read.

Between organisations there is no such sharing. Every record carries the organisation it belongs to and is refused to any other. No other client can see, search or reach your mail.

4. Documents that leave Panorithm

A company can send documents to somebody outside it, typically a bookkeeper, auditor or attorney. This is the only way anything reaches a person without an account, and it is deliberately narrow:

5. WhatsApp

Where a company uses WhatsApp with Panorithm, the number is theirs, not ours. Mammrlla registers it with Meta as a Tech Provider and runs the software on it. Two consequences worth stating plainly:

Documents sent to that number are filed the same way as documents from email, and the same permissions decide who can open them. A personal work number, where somebody gives one, is used to tell which person sent something and to reach them on WhatsApp instead of by email. It is not shown outside their company and is never used for marketing.

If a company uploads a WhatsApp chat export, that file can contain messages from people who are not Panorithm users and have not agreed to anything. Whoever uploads it is responsible for being entitled to, and we keep only what is needed to file the documents in it.

6. Where it is, and who processes it

The full list, with a country against each name and the standard a provider must meet, is the subprocessor list, which is the one kept current. We do not sell your data, share it with advertisers, or use it to build anything for anyone else.

7. When Mammrlla looks at your account

We hold no standing access. When we need to look, we ask your account holder, they approve or decline, the access expires on its own and can be withdrawn at any moment, and every time we look is logged and shown to you in Settings. By default we can see the shape of your documents (how many of each kind, how well the reading worked) and not their contents.

8. Signing in

There are no passwords. You ask for a link, it arrives by email, and it stops working fifteen minutes later. Your session is a signed cookie holding your email address and nothing else. it cannot be edited into somebody else's.

9. Keeping it and deleting it

Disconnecting a mailbox deletes its tokens and every document record drawn from it. That happens immediately, from Settings, without asking us.

Ask us to close your account and everything belonging to your organisation is deleted within thirty days. We keep only what the law requires us to keep, invoices and payment records.

10. Your rights under POPIA

The Protection of Personal Information Act gives you the right to know what we hold about you, to have it corrected, to have it deleted, to object to how it is processed, and to complain to the Information Regulator.

Write to obakengm@mammrlla.com and we will answer within thirty days. If we handle it badly, the Information Regulator of South Africa is at inforegulator.org.za.

11. Changes

If this policy changes in a way that affects what we do with your information, we email everyone with an account before it takes effect. Each version is numbered, and the version you accepted is recorded against your address.