Public probe boundary

A narrow data boundary for the public probe

The probe analyzes the original CSV in your browser. It does not request Microsoft, SMTP, or email-provider credentials.

Original CSV

Selected and parsed on this device. The original file, file name, row values, and sender or recipient addresses are not included in probe events.

Probe events

The public probe can send one of three minimized event types: probe engaged, qualified probe completed, or a controlled error code. It does not send tenant labels, file names, file fingerprints, CSV contents, row values, sender or recipient addresses, free-form error text, or self-reported profile fields.

Browser marker

After the first real CSV selection, the browser stores one random UUID for up to 60 days to avoid counting the same browser twice. It is not created from device fingerprinting and is not used for profiling.

Server retention

Raw probe event rows are deleted after 90 days. Aggregate counts without the browser identifier may be retained for up to 13 months.

No tenant connection

The probe does not sign in to Microsoft 365, call Graph, run PowerShell, or change Exchange, DNS, ACS, HVE, SMTP, or ESP settings.

Human decisions

The route fields organize review. They do not authorize or execute a change.

No certification claim

SenderOwner does not currently claim SOC 2, HIPAA, GDPR compliance, US-only data residency, a breach SLA, or affiliation with Microsoft.

Account, workspace, billing, identity, email, storage-region, deletion, and incident controls are not part of this probe release.

Open the local analyzer