Privacy by construction
Not a promise in a policy, but a property of the architecture
There is no Allodia server between you and your mail. That isn't a setting you turn on; it is how the app is built.
Your deviceWith a copy for offline use
New mail
Mail you send
Direct and encryptedYour mail providerOr your own server
Your device talks to your providerMail and calendar sync straight between the two. We don't host your mailbox, we can't read it, and nothing routes through us.
Credentials in the platform keystoreThe Keychain on Apple devices, Credential Manager on Windows, the Android Keystore on Android. Never a plaintext file.
Trackers blocked, HTML sanitisedRemote images are blocked by default, incoming HTML is sanitised with scripts disabled, and links open in your system browser rather than inside the app.
Analytics opt-in, off by defaultOff until you say otherwise. And the payload is a closed set of labels by construction, so it structurally cannot carry your mail, your addresses or your searches.
A diagnostic log that is safe to send usRotating and size-capped, recording counts, ids and durations. Never mail content, addresses or passwords.
Offline is the default, not a fallbackBodies download after every sync, so your synced mail reads on a plane. And a dropped connection reconnects itself without a restart.
Get the app
Download Allodia Mail & Calendar
Free on macOS, Windows, Linux, Android, iPhone and iPad.
Prefer to install outside the Microsoft Store? Install directlyIf you have the Store version, remove it first.
Rather add the repository yourself?
Run these two commands in a terminal:
flatpak remote-add --if-not-exists allodia https://dl.allodia.eu/flatpak/allodia.flatpakrepoflatpak install allodia eu.allodia.mailcalDid you know that Allodia Mail & Calendar is open source software? All source code is available publicly on GitHub: github.com/allodia-eu/mail-calendar
See what's new in each release
