MailBond MailBond™
Home Features Pricing Request Demo

Security & Trust

Last updated: June 28, 2026

MailBond™ is built for organizations that handle sensitive information — financial institutions, legal teams, and regulated enterprises. This page summarizes how we protect your data. Detailed security documentation, including our architecture overview, subprocessor data-flow breakdown, and Data Processing Agreement, is available to prospects and customers under NDA — contact admin@mailbond.us.

1. Data We Process vs. Data We Store

MailBond is designed to analyze email content without retaining the request content. Each scan is ephemeral: the request is validated, analyzed, returned as a verdict, and then destroyed. When a user scans an email:

  • Request content — email body, attachments, screenshots, OCR text, and decoded QR/barcode payloads — is processed for the scan and is not written to persistent storage.
  • Limited scan metadata — sender, recipient, subject, extracted URLs, attachment names and cryptographic hashes, source counts, and the resulting risk score — is retained for up to 90 days so your dashboard, audit log, scan history, and export features are available to your security team.
  • Anonymized threat intelligence (e.g., "this URL was observed as malicious") may be retained without customer identifiers to improve detection for all customers.

Full retention timelines are covered in our Privacy Policy. Authorized customer administrators can export scan history before the 90-day retention window expires, and scan history can be deleted on request at any time.

2. Encryption

  • In transit: all traffic between the MailBond Outlook add-in, our API, and our infrastructure is encrypted using TLS 1.2 or higher.
  • At rest: all persisted data is stored on encrypted Azure-managed storage using AES-256.
  • API authentication: customer API keys are handled server-side, scoped to each organization, and protected with rate limiting and usage metering.

3. Access Controls

  • Outlook permission scope: the MailBond add-in requests ReadItem permission only — the minimum needed to analyze the currently open email. MailBond cannot read other messages, modify mail, or send on your behalf.
  • Customer authentication: administrators sign in to the customer dashboard using Microsoft Single Sign-On. No separate MailBond passwords to manage.
  • Organization-wide controls: customer administrators can block senders for the whole company through the customer dashboard. Blocks are scoped to the customer's API key, not to a single recipient.
  • Internal access: production systems and customer data are accessible only to a small number of authorized engineers, following least-privilege principles and audited access.

4. Infrastructure

MailBond is hosted on Microsoft Azure in the United States. Azure maintains independent compliance attestations for covered Azure infrastructure and platform services, including SOC 2 Type II and ISO 27001-family certifications. Production systems run in isolated environments with encrypted storage, backups, monitoring, and alerting.

A note on certifications. The certifications listed above are held by Microsoft Azure as our hosting provider and represent inherited cloud-provider controls. MailBond does not currently hold its own SOC 2 attestation. We will state clearly when that changes.

5. Current Detection Safeguards

MailBond's current analysis pipeline uses multiple independent signal categories for links, sender authenticity, social-engineering patterns, supported attachments, image-based lures, QR-based lures, and brand impersonation. Results are presented to users with severity-colored risk bubbles: red for dangerous indicators, orange for suspicious medium-risk indicators, and gray for low-context observations.

6. Subprocessors

We use the following third-party services to operate MailBond. Each is bound by its own security and privacy commitments, and we only share the minimum data necessary for each vendor's function.

SubprocessorPurposeLocation
Microsoft AzureCloud infrastructure (compute, storage, networking) and transactional email delivery via Microsoft GraphUnited States
Microsoft Entra ID / Microsoft identity servicesCustomer dashboard authentication and optional Microsoft sign-in flows. MailBond does not maintain separate dashboard passwords.Microsoft cloud regions
Google Web RiskURL reputation lookup for extracted, OCR-discovered, and QR-decoded URLs. No email body, attachment bytes, screenshots, or customer identifiers are sent.United States
PhishTankCrowdsourced phishing URL reputation lookup for extracted, OCR-discovered, and QR-decoded URLs. No email body, attachment bytes, screenshots, or customer identifiers are sent.United States
StripePayment processing and subscription billingUnited States

A detailed breakdown of exactly which data fields are shared with each subprocessor is available in our security documentation package on request.

7. Data Processing Agreement

A Data Processing Agreement (DPA) covering controller/processor responsibilities, breach notification, subprocessor changes, data subject rights, and international data transfers is available for qualified customers. Request a copy by emailing admin@mailbond.us.

8. Incident Response

We maintain an internal incident response procedure covering detection, containment, customer notification, and post-incident review. In the event of a security incident that affects customer data, we will notify affected customers without undue delay and within the timeframe required by applicable law and contract.

9. Responsible Disclosure

We welcome reports from security researchers. If you believe you have found a vulnerability in MailBond, please email security@mailbond.us with details. We commit to:

  • Acknowledging your report within 3 business days.
  • Investigating and responding with a remediation plan within 30 days.
  • Not pursuing legal action against researchers who act in good faith, do not disrupt our service, and do not access customer data beyond what is necessary to demonstrate the issue.

10. Requesting the Full Security Package

For prospects and customers evaluating MailBond for regulated environments, we provide a detailed security package under NDA that includes:

  • Architecture overview with data-flow diagrams
  • Subprocessor data-sharing breakdown (field-level)
  • Ephemeral request processing and data-minimization summary
  • Data Processing Agreement
  • Completed CAIQ / SIG Lite questionnaire (as available)
  • Vulnerability management and SDLC summary

Contact admin@mailbond.us to begin the NDA and documentation exchange.

11. Contact

MailBond LLC
100 W High St, PO Box 1153
Moorpark, CA 93020
General security inquiries: admin@mailbond.us
Privacy / DPA requests: privacy@mailbond.us
Vulnerability disclosure: security@mailbond.us

© 2026 MailBond LLC. MailBond™ is a trademark of MailBond LLC. USPTO Serial No. 99836871. All rights reserved. · Privacy Policy · Security