Channels
Gmail
Stay on top of your business from your inbox. Connect a Gmail account to receive approvals and updates, and act on them — with the same security and audit as the web app.
What you can do over Gmail
- Approve or reject requests directly from your inbox.
- Send instructions — email the connected mailbox in plain language and the AI orchestrator runs the matching workflow under your permissions.
- Receive updates — status changes, reminders, and alerts.
- Get AI summaries — daily briefings and quick answers from Orin.
An optional channel
Gmail is a convenience layer on top of BOS. Everything you do over Gmail is also available in the web app — it's there for when you're away from your desk.
Connecting your account
An organization administrator connects the company mailbox with Google in Settings → Integrations → Gmail:
- Open Settings → Integrations and click Connect Gmail.
- You're redirected to Google's consent screen. Sign in with the mailbox you want BOS to use and grant the requested access.
- Google returns you to BOS and the connection is saved. The status card shows the connected mailbox address.
- Use Send Test to confirm outbound delivery, then you're live.
BOS uses Google OAuth — your password is never shared. Only a securely encrypted refresh token is stored, and access can be revoked at any time from the integration card or from your Google Account permissions.
Permissions requested
BOS requests the
gmail.modify scope, which lets it send mail from the connected mailbox and read/label incoming messages so it can turn them into actions. It does not delete mail or change account settings.How send & receive works
- Outbound: notifications, approvals, and AI replies are sent from the connected mailbox via the Gmail API. If Gmail isn't connected, BOS falls back to the system mailer.
- Inbound: BOS periodically checks the mailbox for unread messages from known users, runs each instruction through the orchestrator, replies, and marks the message read. High-risk actions require an explicit
CONFIRMreply.
Security & governance
Gmail actions are held to the same standards as the rest of BOS:
- You can only approve what your role and permissions allow.
- Separation of duties still applies — you can't approve your own request.
- Every Gmail decision is written to the audit trail, just like an in-app action.
Verify before you approve
Approving over email is fast — always confirm the details in the message before you respond. If something looks off, approve from the web app where you can see full context.
Turning it off
Gmail can be enabled or disabled per organization. If it's off, BOS delivers the same notifications in-app instead.