Email privacy & sharing

Control how much of your synced mail teammates can see — three sharing levels plus per-person grants.

Email visibility is controlled per connected account by its owner, under the account's Edit Permissions on Settings → Communications Accounts. The workspace never widens it behind your back.

The three sharing levels

LevelWhat teammates see
Metadata onlyWho corresponded and when — participants and timestamps, no subject or content. Records still show that activity happened.
Subject line and metadata (default)Participants, timestamps and subject lines — enough to follow the thread of a relationship without reading the mail.
Full accessComplete message content, including body and attachments, on related records.

Individual sharing

On top of the default, you can grant full access to specific workspace members — your pod, your delivery partner — while everyone else stays at the default level. Individual grants are additive: they never reduce what the default already allows.

Choosing a level

  • Full access suits delivery teams — anyone covering a role can read the client thread without forwarding chains.
  • Subject line and metadata is the sensible default — teammates see the shape of relationships without message content.
  • Metadata only suits leadership inboxes and anyone whose mailbox mixes sensitive content with desk work — pair it with individual grants for the few who need more.

What sharing never does

  • It never exposes mail to people outside the workspace.
  • It never affects your actual mailbox — Kepler holds a synced copy; your Gmail is untouched.
  • Attachment access follows the same rules as message content.

AI features respect visibility: triage and suggestions derived from restricted mail are only shown to people allowed to see that mail. AI never becomes a side-channel around sharing settings.

Read as Markdown