Skip to main content

Privacy & data

PhishNet is designed to protect your inbox, not mine it. Here's exactly what happens to your email data.

What PhishNet processes

When you open an email, the following fields are sent to PhishNet's backend for analysis:

FieldPurpose
Sender email addressDomain reputation check, spoofing detection
Sender display nameDisplay-name spoofing detection
Email subjectUrgency and BEC pattern analysis
Email body textFull threat analysis
Links in the emailLink reputation check
Attachment file names and typesAttachment threat signals

What PhishNet does NOT store

PhishNet does not store your email content. The email fields listed above are sent to our backend for analysis and discarded immediately after the scan result is computed. We retain the scan result (threat score, flags, verdict) but not the email itself.

What is retained

DataRetention
Scan result (score, flags, verdict)90 days
Quarantine recordsUntil you restore or delete the email
Threat action logs (report, block, restore)1 year
Account and billing dataDuration of your subscription + 30 days

Third-party processors

To compute threat assessments, email content is sent to a large language model (LLM) provider under a data processing agreement. The LLM provider does not use your data for training.

Full privacy policy

For the complete legal terms, see the PhishNet Privacy Policy.