Email privacy & sharing
Control how much of your synced mail teammates can see — three sharing levels plus per-person grants.
Email visibility is controlled per connected account by its owner, under the account's Edit Permissions on Settings → Communications Accounts. The workspace never widens it behind your back.
The three sharing levels
| Level | What teammates see |
|---|---|
| Metadata only | Who corresponded and when — participants and timestamps, no subject or content. Records still show that activity happened. |
| Subject line and metadata (default) | Participants, timestamps and subject lines — enough to follow the thread of a relationship without reading the mail. |
| Full access | Complete message content, including body and attachments, on related records. |
Individual sharing
On top of the default, you can grant full access to specific workspace members — your pod, your delivery partner — while everyone else stays at the default level. Individual grants are additive: they never reduce what the default already allows.
Choosing a level
- Full access suits delivery teams — anyone covering a role can read the client thread without forwarding chains.
- Subject line and metadata is the sensible default — teammates see the shape of relationships without message content.
- Metadata only suits leadership inboxes and anyone whose mailbox mixes sensitive content with desk work — pair it with individual grants for the few who need more.
What sharing never does
- It never exposes mail to people outside the workspace.
- It never affects your actual mailbox — Kepler holds a synced copy; your Gmail is untouched.
- Attachment access follows the same rules as message content.
AI features respect visibility: triage and suggestions derived from restricted mail are only shown to people allowed to see that mail. AI never becomes a side-channel around sharing settings.