A few months ago I shared Paperweight here. An open-source desktop app that scans your inbox to map out your digital footprint.
Every account you create, every service you sign up for, every online purchase is connected to your email address. Most people have 100+ accounts they’ve forgotten about, creating security risks and privacy exposure.
Local-first. Your inbox is scanned on your own device, your data never leaves it, and there is no account or cloud component.
Since last time, a lot has changed:
- New pii analysis engine to check addresses, phones, IBANs, national IDs, cards, and more
- Improved multi-language lexicons for better classification
- Track GDPR data requests you send fromPaperweight
- Improved sync, receiver, hide-my-email aliases, and message tagging
- Fully verified builds for Apple, Windows and Gmail OAuth connections
- Several minor improvements and bug fixes
Links
Damn, I had forgotten I wanted to try it, thanks for the reminder!
Very cool idea!
it sounds promising but, ultimately I’m put off by the change to GPL to MIT you did back in july. I’m seen too many projects burned by that change. Generally the flow ends up being project becomes MIT, project gets acquired, project gets moved to be closed source/w payment model, creating a fracture of two different products, one that is owned by the company and one that is maintained by the community. In my opinion, It isn’t worth the time contributing or learning a system that has the potential to just be rug pulled once it gains traction.
Don’t take me wrong, I firmly get why the change was done but, it doesn’t change my thoughts on it
That does look interesting - did someone here take a look at the code to ensure that this really private information is not getting exfiltrated?
Currently at around 280 Github stars and a few contributors. And here’s some more context https://lemmy.ml/post/47559040
I understand you don’t want to take my word for it, but I can assure you the App uses no external services.
At first, I thought it was an application to capture the data we provided and the GDPR requests we made. It would have been a good idea, because a lot of data is not transmitted by email and a lot of organizations use their own site to manage GDPR requests.
It’s a shame to see this project hosted on GitHub, it’s a little contradictory.
It’s interesting though, but I can’t test it, unfortunately.
The App does help you find what data is shared where, but it is indeed based on the data that is shared over email. Which might not include everything, no. But at least it’ll flag the account instead of being some, old account you forgot about.
I know a lot of companies tend to push you to their forms. Which can be helpful for identification, but you don’t have to follow they process. They’re legally obliged to honor requests via email. The app helps you to track them.
I know Github has its flaws, but using for convenience. Not sure how it impacts the App.




