Last updated: September 1, 2026
Doorcheck (“we”, “us”) provides email-security scanning for mailboxes that an administrator or mailbox owner explicitly connects. This policy explains what data we access, why, how we use it, and the controls you have. We act as a data processor on behalf of the organization that connects its mailboxes.
When you connect a Microsoft 365, Google Workspace, Exchange on-premise, cPanel, or IMAP mailbox, you grant Doorcheck access to:
Message data is used solely to detect and act on email threats for the connecting organization: scoring messages, quarantining or filing suspicious mail (only in enforce mode, and only into a folder — we never send mail as you), producing the operator dashboards, and generating the protection reports your users receive. We do not use your data for advertising, and we do not sell it.
Most mail is decided by our own rules and statistical models. Only the small fraction of borderline messages the free layers cannot classify is sent to a large-language-model provider for a verdict, and only the text needed for that decision. Operators may configure a self-hosted model so that no message content leaves their own infrastructure at all. When a cloud LLM is used, the provider processes the content transiently to return a verdict and is contractually barred from training on or retaining it.
Doorcheck’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically: we use Google user data only to provide and improve the email-security features you connected; we do not transfer it to others except as necessary to provide those features, to comply with applicable law, or as part of a merger with your consent; we do not use it for advertising; and no humans read it except with your explicit consent, for security or to comply with law, or on data that has been aggregated and anonymized.
We treat all mailbox content — including sensitive and restricted-scope data such as Gmail message bodies, attachments, and directory information — as confidential, and protect it with the following mechanisms:
Verdict metadata (sender, subject, score, category, timestamps) is retained to power dashboards and reports. The raw body of a quarantined message is stored only as long as needed to release it, and is purged automatically (30 days by default). OAuth refresh tokens and API keys are encrypted at rest with AES-256-GCM. Data is stored on the infrastructure the operator deploys to; self-hosted deployments keep all data within the operator’s own environment.
We share data only with the sub-processors an operator explicitly configures (for example, a chosen LLM provider, a SIEM destination, or reputation lookups), each used strictly to deliver the security features. We do not share data with advertisers or data brokers.
An administrator can disconnect a mailbox at any time, which revokes our access. On disconnection or account deletion, associated message data is deleted. To request access to, correction of, or deletion of data, contact us at the address below.
If you request early access on our website, we store the email address you submit and use it solely to contact you about your beta seat, Doorcheck availability, and onboarding. We do not add it to third-party marketing lists or share it with anyone. Every such email includes an unsubscribe option, and you can ask us to delete your address at any time using the contact below.
Questions about this policy or your data: privacy@doorcheck.io. Security reports: security@doorcheck.io.