Legal · Browser Extension
Office Guard Email DLP
Privacy Policy
Effective Date: 14 August 2026 · Last Updated: 21 September 2026
This policy covers the Office Guard Email DLP browser extension for Chrome and Edge (from the Chrome Web Store), Firefox (from Mozilla's add-on store) and Safari (downloaded from officeguard.co). For the Office Guard platform and website, see our main Privacy Policy.
The short version
The Office Guard Email DLP extension checks your email compose window and the message you are viewing on your own device, in your own browser, and warns you before you send something sensitive or act on a message that shows the signs of fraud. What you type is never sent to Office Guard or to anyone else. The extension talks to Office Guard for two things only: to ask whether a web address in a message you open is a known dangerous site, and to pair itself to your Office Guard account when you open your dashboard. Both are described in section 2.
1. What the Extension Does
Office Guard Email DLP works inside Gmail, Outlook.com, and Yahoo Mail. It is designed to prevent accidental disclosures and to help you recognize email fraud — not to record or report what you write or read.
Mail you send.
The extension monitors the compose window and warns you before you send a message that may contain sensitive information — before it is too late to catch it. Categories detected:
- Social Security numbers
- Credit card numbers
- Bank routing and account numbers
- SWIFT/BIC codes
- Driver's license and passport numbers
- Dates of birth
- Bank names and addresses
- Employer Identification Numbers (EINs)
- Wire transfer instructions (flagged as high priority — wire fraud targeting real estate closings and other high-value transactions is one of the most costly and common email-based attacks today)
Mail you receive.
The extension checks the message you are currently viewing and displays a banner above it when the message shows the pattern of a fraud attempt. Patterns detected:
- A change to payment or wire instructions — a message stating that account details, wiring instructions or banking information have changed
- A payment request combined with urgency — pressure to act today, immediately, or before closing
- A request for identity documents — someone asking you to email a Social Security number, driver's license, passport or date of birth
- A sender address inconsistent with the conversation — a domain closely resembling another one already in the thread, or a display name that disagrees with the address behind it
These checks are deliberately narrow, and look for the shape of a fraud attempt rather than for sensitive data in general.
2. What the Extension Sends, and What We Keep
Sensitive-data checks and fraud-pattern checks run entirely in your browser. Nothing you write leaves your device because of the extension.
Web addresses. When you open a message, the extension sends the web addresses it finds in that message, and nothing else from the message, to Office Guard's link-check service. The service asks Google Web Risk whether any address is a known phishing or malware site and answers the extension. If one is, the extension shows a warning and Office Guard records it on your dashboard: the site's name, the time, and which rule matched. Addresses that come back clean are not stored anywhere. Office Guard's monthly report and your brokerage's dashboard, if you share with one, count these warnings; neither ever sees the message.
Pairing with your account. When you open your Office Guard dashboard in a browser with the extension installed, the extension exchanges your signed-in session for a signed token that identifies the install to Office Guard for up to a year. The token carries your account number and email address, is kept in the browser's extension storage where websites cannot read it, and is what the link-check service uses to know whose dashboard to warn. It is renewed each time you open the dashboard and can be cleared by removing the extension.
That is the complete list. The extension sends no email content, no scan results other than dangerous-link warnings, and no usage data.
3. Browser Permissions
Mail sites. The extension requests access to Gmail, Outlook.com, Outlook on the web, and Yahoo Mail in order to check the compose window and warn you before sending, and to check the message you are currently viewing and warn you about fraud patterns. No content is transmitted anywhere. The permission exists solely to perform the local pattern-matching scan and display the in-browser warning.
Our own site, officeguard.co. The extension runs on two of our pages. On your dashboard it pairs itself to your account, as described in section 2, and tells the dashboard that it is installed and which version is running. On the Encrypt and Send page, when a warning offers to send a message encrypted instead and you choose that option, the extension fills in the draft you were already writing so you do not have to retype it. The draft is passed within your own browser and deleted as soon as it is used; no message content is sent to us by the extension.
The extension does not run on, or request access to, any other website.
Storage. The extension stores your own settings — which checks are enabled, your sensitivity level, and your notification timing — using your browser's extension storage. If you have your browser's own sync feature enabled, your browser may sync these settings across your devices in the same way it syncs your other browser settings. These are settings only, never message content.
4. You Are Always in Control
Every warning includes a clear "Send anyway" option. The extension never permanently blocks an email — it pauses to confirm that a sensitive send is intentional, then respects your decision either way.
Warnings about mail you receive are banners displayed above the message. They do not hide, alter, move, or delete anything in your mailbox.
Sensitivity levels:
- Notify only — quiet heads-up with no confirmation required
- Balanced (recommended) — confirmation prompt for higher-risk patterns
- Strict — confirmation required for all detected patterns
Individual checks can be turned off independently, for mail you send and for mail you receive, if a particular category does not apply to how you use email.
5. Who This Extension Is For
Office Guard Email DLP is especially useful for real estate agents, attorneys, accountants, and anyone else who regularly emails financial or personal information — and who cannot afford a single mistaken send, or a single convincing email that is not what it claims to be. The extension is not directed at children under 18, and we do not knowingly collect information from minors (though, as noted above, we collect no information from anyone through this extension).
6. Changes to This Policy
We may update this policy if the extension's functionality changes in a way that affects privacy. We will post any updates on this page with a revised effective date. Continued use of the extension after the effective date constitutes acceptance of the updated policy.
7. Contact Us
Questions about this policy or the Office Guard Email DLP extension: