Atona/Security
Security

Trusted with your inbox — and your name.

Atona reads, drafts, and replies on your behalf. That only works if your data stays yours: encrypted always, never sold, and never used to train AI models.

How we think about it

You approve

Atona drafts, you decide. Nothing goes out under your name until you approve it, and you can switch any automation off at any time.

You can see everything

Every reply Atona drafts, sends, or holds back is there for you to review — along with why it made that call.

Your data is protected

Encrypted in transit and at rest. Never sold, never shared for advertising, and never used to train AI models.

Some things never reach AI

Email that looks financial, medical, or legal is recognized and held back before AI ever sees it.

Encryption

Everything you send to Atona is encrypted on its way to us, and everything Atona stores is encrypted where it sits.

The connections to your email and calendar are protected separately, so they are only ever usable inside your own account.

Your data is yours alone

Atona is built so that one account's data can never appear in another's. That rule is enforced everywhere and tested continuously — it is the single thing we are strictest about.

Today, all data is stored in the United States. We do not sell your data, and we do not share it for advertising.

What AI sees — and what it never sees

Atona uses AI to understand your email and draft replies. Your data is never used to train AI models — ours or anyone else's. The providers who process it on our behalf are contractually barred from keeping it or using it for anything else.

Some email never reaches AI at all. Anything that looks financial, medical, or legal is recognized and held back before it can be sent for processing. That check runs first, every time.

The Privacy and Trust screen in Atona for iOS: bank, medical and legal email is never sent to AI; memories auto-prune after 90 days; data is encrypted at rest and read online when you ask Atona to act, audited under CASA Tier 2.
These are settings in the app, not promises on a page. Detection for sensitive mail runs on your device, memory prunes on a schedule, and the encryption note points at the same CASA Tier 2 assessment described below.Atona for iOS

Who can see your data

Access is limited to what is needed to run and support Atona. Personal details are stripped from our operational records automatically, so routine monitoring never exposes your email, your contacts, or your messages.

You can turn on two-factor authentication at any time, and changing your password signs you out everywhere.

Deleting your account

You can delete your account from the app at any time. Deletion is real: your account and the data attached to it are removed — not deactivated and quietly kept.

Independently assessed

Atona's handling of Google user data has been independently assessed under CASA — the Cloud Application Security Assessment, a framework published by the App Defense Alliance. It is the route by which applications that request access to sensitive Google user data demonstrate that they handle it responsibly.

A successful assessment produces a Letter of Validation: a scoped, dated document covering a named application, not an open-ended endorsement of the company that builds it. The framework and its current requirements are published at appdefensealliance.dev/casa.

Assurance level
CASA Tier 2
Assessment method
Dynamic Application Security Testing (DAST) against the running web application.
Assessment date
27 April 2026
Authorized assessor
TAC Security, via its ESOF AppSec ADA CASA platform
Application covered
Atona — web application
Revalidation
CASA validations are time-limited and are renewed by reassessment. We publish the assessment date rather than an expiry, so that this page cannot quietly go stale — for current validity, ask [email protected].

What the assessment covers

A CASA assessment is deliberately bounded, and being specific about the boundary is part of taking it seriously. CASA is administered by the App Defense Alliance — it is an independent assessment, not a Google certification, endorsement, or partnership.

What it covers

  • The Atona web application, and its handling of the Google user data it accesses.
  • Assessment against the CASA Tier 2 requirements.
  • Dynamic testing of the running application, with findings remediated and revalidated before the letter was issued.
  • The application as it stood on the assessment date.

A point-in-time assessment says that a defined set of requirements was met on a defined date. It does not say nothing will ever go wrong. If you find a security issue, we would rather hear about it — see below.

Contact and related pages

Security contact
[email protected]

Report a suspected vulnerability or a compromised account to [email protected]. For how data is collected, retained, and deleted, see the privacy policy.