The criminal in the inbox is one risk. Granting us access is the other — and you should judge it just as hard. This page shows exactly what we request, what those permissions can and cannot do, what we keep, when a human sees anything, and how to cut us off in one click.
Family Sentinel LLC, a Texas limited liability company, family-owned and run by a working Security Architect. Reach a person at security@familysentinel.org or (940) 281-6672 — calls are returned the same business day. Service health is monitored continuously, around the clock — and if an incident ever affects your monitoring, we tell you by email rather than expecting you to go and check a page.
These are the actual permission names from your provider's consent screen — not a summary. You will see them yourself, on your own screen, when you authorize.
| Permission | Why we need it | What it allows | What it does NOT allow |
|---|---|---|---|
| Read email gmail.readonly |
Analyze senders, links, attachments, and message content for malware, ransomware, phishing, impersonation, and malicious intent | Read messages and their technical headers | Send, delete, edit, forward, or reply to anything. Move a message. Touch a folder. |
| Read mail settings gmail.settings.basic |
Detect the fingerprints of a hijacked account — hidden auto-forwarding rules and filters that quietly delete bank & security alerts | View forwarding rules, filters, and aliases | Create, change, or delete any rule, filter, or setting. Being exact, because this row is the one place on this page where the honest answer is longer: Google does not publish a read-only version of this permission, so unlike the row above — where the restriction is enforced by Google and we could not send mail if we wanted to — this one is a restriction we impose on ourselves. We only ever read these settings. We would rather tell you which of these two kinds of promise you are getting. |
| Microsoft Mail.Read (Outlook inbox monitoring — rolling out; Microsoft 365 admin-console monitoring is available today via Org Guard) |
The same read-only analysis for Outlook & Hotmail inboxes | Read messages and headers | Send, delete, or modify anything. |
Messages that analyze as safe are not stored. Not archived, not indexed, not "retained for quality purposes." Analyzed and released.
The message itself is kept encrypted for 14 days — your proof if you need it for a bank or a police report — then destroyed. The verdict (who it was from, what it was, why we judged it) is kept as metadata for 13 months, so you have a record of what was caught. Both deletions run automatically on a timer, not when somebody remembers.
No selling data. No advertising. No AI training on your mail — our AI provider processes under terms that exclude training. No sharing beyond the subprocessors that run the service.
You are about to give a small company access to your parent's email. That should feel like a big decision, and anyone who tells you it isn't is selling. So here is the argument, and note what it does not rest on: our good intentions.
Questions this page didn't answer? Ask them before you connect anything — that's the right order. Our founder is a working Security Architect who answers every message personally, no sales team in between.
Ask the founder a questionCall or text (940) 281-6672 · security@familysentinel.org · A free 20-minute checkup is available too, and needs no inbox access.