Frequently Asked Questions
How does it work?
When you receive a borderline email, submit it to Phishing Concierge, a Gmail add-on compatible with Gmail.com and Gmail for iOS/Android. It executes a layered security analysis to identify danger. 90% of submissions receive an auto-determination, dangerous or not dangerous, in < 60 seconds.
Phishing Concierge works 24/7 and the sender is not notified. It's a respectful and responsible way to handle questionable emails.
Tell me more
When you submit an email, you will get an auto-reply that the email has been received. Phishing Concierge ingests the .EML file to parse the sender address, domain, links, files, and the text. It runs the parsed elements through open source databases (like URL Scan and VirusTotal), a series of rules (with the help of our friends at Sublime Security) and an AI-based text sentiment analysis looking for malicious indications. It then scores the danger and its confidence. The system issues dangerous or not dangerous determinations based on high confidence scores. This determination will arrive by email, but the add-on will also update to show you the determination as well. For low confidence determinations, human analysts review in a sandbox environment and respond with a determination within 12 hours.
How accurate is it?
Phishing Concierge auto-determines 90% of emails < 60 seconds. Of auto-determinations, internal accuracy benchmarks are 85% for dangerous and 99.99% for not dangerous. The remaining 10% of emails, which are are reviewed by a security analyst are 99.99% accurate. This is to say, Phishing Concierge is overly sensitive in some cases, labeling some not dangerous emails as dangerous. We are okay making the occaisional Type I error, but never Type II.
What are the privacy standards?
We view data as a liability. We want to collect as little information as possible in order to help individuals better detect phishing attacks. Despite Google's warning during install, we only view contents of submitted emails.
Who owns it?
Phishing Concierge is owned by The Cyber Health Company