DomainGuardPrivacy Policy
networksecuritycloud.com
DomainGuard — Legal

DomainGuard — Privacy Policy

Effective: 2026-07-25

Applies to: the DomainGuard browser extension (v2.1.0), native endpoint agent (v2.6.8), mobile companion app (iOS, v1.0.0), and dashboard backend (release v2.7.3).

DomainGuard is an enterprise AI-governance and data-loss-prevention (DLP) tool distributed by your organization's IT or security team. It is not a consumer product. This policy describes what the software collects, where that data goes, and how long it is kept.

If you are an end user reading this because DomainGuard is installed on your work device: your employer (the "Organization") operates the backend and dashboard and is the data controller. DomainGuard is a product of Network Security Cloud Analytics Private Limited (NSCA). Your data is processed only by the Organization's own backend — it is not shared with any third-party AI vendor.

A defining design property: sensitive content is classified on your device — the allow / warn / redact / block *decision* your Organization's policy applies to AI tools is made locally, and raw content is never sent to any third-party AI vendor to be scored. Because this is monitoring software on company-owned, consented endpoints, your Organization can also configure the console to record what a user attempted to send so an administrator can investigate it. What is recorded depends on the configured capture mode (§1): in the default capture mode this includes the matched value plus surrounding context; in redact mode the matched value is masked on the device first. Either way, that captured content is visible in the console only to designated administrators (§5) — analysts and auditors see the event, its data class, and the verdict, never the raw value.

1. What we collect

Baseline browser + endpoint visibility (when installed)

AI-firewall content (only when your Organization enables the AI firewall / DLP)

Content is scanned on the endpoint by a 63-pattern secret/PII detector plus an on-device classifier, and tagged by regulated data class (PII, PHI, PAN, secret, source-code, financial, credential). What is *recorded to the console for administrator review* depends on your Organization's capture (the default) vs redact mode — capture keeps the matched value with surrounding context so an admin can judge intent; redact masks the matched value on the device before it leaves. Even with no sensitive match, a short excerpt (up to ~300 characters) of a paste or AI prompt may be recorded so the activity is reviewable. All such recorded content is admin-only (§5). Note: the capture-vs-redact choice governs the browser extension; on the endpoint agent's AI-proxy and CLI-tool-hook paths (e.g. Claude Code, Cursor), matched values are always masked at the source ([DG_REDACTED:…]) before anything is sent — the raw value never leaves the device on that path:

AI-tool inventory (agent, when enabled)

The agent can inventory AI tooling on the machine so admins have a roster:

Mobile companion app (iOS)

The DomainGuard mobile app (for admins and security teams) is a companion to the web console. It collects only what it needs to sign you in and notify you:

Your session token is stored in the iOS Keychain, and Face ID / biometric unlock is performed by iOS locally — the app never receives your biometric data. In the app you view only your own Organization's (tenant-scoped) security activity, which is the Organization's data governed by the sections above. The app talks only to your Organization's own backend, contains no analytics, advertising, or third-party tracking SDKs, does no tracking, and never sells or shares your data. Accounts are created by your Organization's administrator — to delete yours, contact your administrator or use the web console.

What we explicitly do NOT collect

We do not screenshot your device; images you *attach to an AI prompt* are OCR'd on-device as described above.

2. How it is transmitted

3. Where it is stored

DomainGuard data stays within your tenant's backend; it is not shared with any third-party AI vendor.

4. How long it is kept

5. Who has access

6. Your rights

Contact your Organization's IT or security team to see what data has been collected from your machine, request correction or deletion, understand what policies are being enforced, or object to processing. DomainGuard has no direct relationship with end users; your rights are administered by the Organization that deployed the software. Mobile-app and web accounts are created and managed by your Organization's administrator — to deactivate or delete an account, contact your administrator or use the web console.

Compliance evidence + tamper-evident audit

Your Organization can generate Ed25519-signed compliance evidence bundles (audit-log segments, policy snapshots, machine inventory, detection summaries, and per-framework coverage for SOC 2, CMMC, ISO 27001, NIST CSF / 800-53, OWASP LLM & Agentic Top-N, MITRE ATLAS, and the EU AI Act). Every administrator action is recorded in a SHA-256 hash-chained audit log; the public verification key is published at /api/compliance/pubkey/:tenantId so external auditors can verify offline.

7. Security

8. Consent & disclosure

DomainGuard is workforce-monitoring software. Where it is deployed via managed install (GPO / Intune / Google Admin Console), the deployment is the disclosure pathway — your Organization is responsible for notifying employees that endpoint and AI-usage monitoring is in effect, and for complying with applicable law (including data-protection, electronic-communications, and works-council requirements in your jurisdiction).

9. Changes

We may update this policy. The Effective date at the top reflects the most recent revision. Material changes are announced via the dashboard's release notes.

10. Contact

Questions about how your Organization uses DomainGuard: contact your Organization's IT or security team.

Questions about DomainGuard itself (the software): developers@networksecuritycloud.com.