← Back to home

Privacy Policy — Simson Desk Email Client

Last updated: 9 August 2026

Simson Desk is a desktop email, calendar and tasks client published by Simson Softwares Private Limited. It works with Microsoft 365 and with any mailbox that speaks IMAP and SMTP — Google Workspace, Zoho, Titan and most business hosts.

The short version: Simson Desk has no backend. Your mail goes from your provider to your computer and nowhere else. We operate no servers that your data passes through, and we cannot see your mail, your calendar, your contacts or your credentials — not because we promise not to look, but because none of it ever reaches us.

Looking for the policy covering the SimsonDesk work platform or SimDesk remote support? See the main privacy policy.

1. What is stored, and where

Everything Simson Desk keeps is stored locally on your own device.

DataLocation
Mail, calendar, tasks, contacts, attachmentsAn encrypted database in your user profile
Sign-in tokens (Microsoft 365)Inside that same encrypted database
Mailbox passwords (IMAP/SMTP accounts)Inside that same encrypted database
The key to that databaseWindows Credential Manager; the system keyring on Linux
Activity logInside that same encrypted database
Preferences and settingsYour user profile

On Windows this is under %LOCALAPPDATA%\SimsonOnline\SimsonDesk\; on Linux under ~/.local/share/SimsonDesk/.

A local copy is what makes the application work offline and stay fast. It is encrypted at rest with SQLCipher (AES-256), and the key lives in your operating system's credential store — not in the file, and nowhere we can reach. If that key is removed the store cannot be read, by us or by anyone. A copy of the file on its own, lifted from a stolen disk or a backup, is not a mailbox.

Attachments are held inside that database rather than as loose files. Opening one in another program writes a decrypted copy to a cache folder, because the other program has to be able to read it; that folder is emptied when the application starts and every time it locks.

Uninstalling does not delete any of this, and does not delete your stored passwords. Removing an application is not the same as asking for your mail to be destroyed. To dispose of it, use Settings › Security › Clear local copy, or delete the folder above.

2. What leaves your device

Simson Desk connects directly to your mail provider, using your account. There is no server of ours in between.

Microsoft 365 accounts connect to:

  • login.microsoftonline.com — signing in
  • graph.microsoft.com — mail, calendar, tasks and contacts
  • outlook.office365.com — mailboxes still served by Exchange Web Services

Sign-in uses OAuth 2.0 with PKCE. For these accounts the application never sees or stores your password — you type it into Microsoft's own sign-in page. The access tokens Microsoft returns are scoped to your account, so the application can only ever reach your own mailbox.

IMAP and SMTP accounts connect to the servers your provider publishes, over TLS. These sign in with a password, because that is what the IMAP and SMTP protocols use. That password is held inside the encrypted database described above — the same place as the Microsoft sign-in tokens — so reading it requires the key from your operating system's credential store. It is never written in plain text, it never leaves your device except to your own mail server, and it never reaches us. For Gmail, Google Workspace and Yahoo it must be an app password, which those providers issue for this purpose and which you can revoke on its own without changing your account password. Removing the account from Simson Desk deletes the stored password.

During account setup only

When you add an account, Simson Desk works out which servers to use. It may contact:

  • dns.google — DNS lookups for your email domain's mail records, over HTTPS
  • autoconfig.thunderbird.net — Mozilla's public database of provider settings
  • your domain's own autoconfig address, if it publishes one

Only the domain of your address is sent to these services (for example example.com) — never your full email address, your password, or any message content.

It may then open a connection to the candidate mail servers to check that they are really there and really speak IMAP. Nothing is sent in that connection beyond what establishing a TLS connection requires: no address, no password, no credentials of any kind. It is done so that the settings offered to you are ones that have been shown to work, rather than conventional names that may not exist.

All of this happens during setup, not during normal use.

Optional integrations, only if your organisation sets one up

The application can raise a ticket from a message in Jira, Zendesk, ClickUp or Simson Service Desk. These are off by default and must be configured with your organisation's own credentials.

When you choose to raise a ticket, the message's subject, body and attachments are sent to that help desk — that is what raising one does. Nothing is sent unless you use the feature, and nothing is sent to Simson: the credentials and the destination belong to your organisation. Sharing a message to Microsoft Teams and sending a document for signature behave the same way.

3. What we collect

Nothing. Simson Desk contains no analytics, telemetry, crash reporting, advertising or tracking of any kind. It does not phone home. There is no account with Simson, and we hold no data about you because none is ever sent to us.

It keeps a local activity log so you or your administrator can see what the application did with your mail: sign-ins and sign-outs, accounts added and removed, messages saved to files, attachments saved, messages shared to Teams or handed to a help desk, documents sent for signature, and each time the application locked or was unlocked.

It records actions, not content. No message bodies, no subjects, no recipient lists — a log that copied those would be a second copy of your mail with a longer life than the first. The log sits inside the encrypted database, never leaves your device, and entries older than the retention period are deleted automatically. The default is 180 days; you can change it, and read the log, under Settings › Security.

4. Locking the application

Simson Desk locks itself after a period of inactivity — fifteen minutes by default, changeable or switchable off under Settings › Security. While it is locked the application refuses to serve any of your mail, calendar or tasks rather than merely hiding them, and any decrypted attachment copies are deleted. Unlocking a Microsoft 365 account re-authenticates against Microsoft, so whatever sign-in policy your organisation enforces — including multi-factor — applies again.

5. Remote content in messages

Images and other remote content in messages are blocked until you choose to load them, because loading remote content tells the sender that you opened the message. That choice is always yours, per sender. Links open in your own browser rather than inside the application.

6. Children

Simson Desk is a business productivity tool and is not directed at children.

7. Your rights over your data

Because your data stays on your device and in your own mailbox, you control it directly:

  • To remove the local copy of one account's mail while keeping the account connected, use Settings › Security › Clear local copy. Nothing is deleted from the server, and the next sync brings back what is still there.
  • To remove local data entirely, delete the folder listed above.
  • To revoke the application's access to a Microsoft account, use My Account → Privacy → Apps and services in your Microsoft account, or ask your administrator. For an IMAP account, revoke the app password with your provider.
  • Data held in your mailbox is governed by your provider's terms and your organisation's policies, not by this policy.

8. Changes

If this policy changes, the updated version is published with the release it applies to, and the date above changes.

9. Contact

Simson Softwares Private Limited — privacy@simsononline.com

See also the main privacy policy for the SimsonDesk work platform and SimDesk remote support.