Someone pretends to be a person you already trust — very often the owner or the CEO — and asks for money or credentials. Usually the mail arrives from a domain a character or two away from your real one, close enough that nobody reads it twice. Detection works by profiling how each of your genuine senders actually writes: word choice, punctuation habits, sentence rhythm. An impostor can copy a signature block; copying how somebody writes is much harder.
Email that tells you when it is lying.
The dangerous email is not the one that looks dangerous. It is the one that looks exactly like a message from your bank, your bookkeeper, or your boss. We put a plain-English banner on every message so the fake ones stop being a guessing game.
What it is / in plain English
A second opinion on every message.
Spam filters answer one question: is this junk? That was enough when the threat was adverts for cheap pharmaceuticals. It is not enough when the threat is a message that appears to come from your CEO, references a real project, and asks for one urgent wire transfer.
So every message gets checked before it reaches you, and the result is written across the top of the email in a color you can read at a glance. Gray means nothing unusual. Yellow means look twice. Red means do not touch it. The banner also shows who the message is really from, and whether it came from inside or outside your organization.
The point is not to block everything. It is to make the fake obvious.
What it catches / the attacks that actually work
Three ways a convincing email lies.
A message that looks exactly like the bank, the courier, or Microsoft — right logo, right colors, right tone — and is not from them. Years of good marketing have trained all of us to trust a familiar logo on sight, and attackers know it. This is caught by looking at the mail the way a person does, comparing what the message looks like against what the real brand's mail looks like, rather than only reading the headers.
The link or attachment that installs something. It rarely announces itself — it looks like an invoice, a shared document, or a delivery notice. Links are re-checked at the moment you click them, not only when the mail arrived, which matters because a link that was harmless on Tuesday can be weaponised by Thursday. Pair this with tested backups and a bad click stops being a catastrophe.
Every one of these is designed to survive a careful reader having a busy day.
What is covered / beyond the inbox
Incoming is only half of it.
Most people picture email security as a wall around the inbox. The mail you send, and the mail your staff send each other, carry just as much risk.
Outbound protection scans what leaves, so a spreadsheet going to the wrong address triggers a confirmation before it sends rather than an apology afterwards. Internal protection covers staff-to-staff mail, which matters because once one account is compromised, the attacker's next message comes from a genuinely trusted address inside your own organization. Encryption keeps sensitive mail protected in transit without asking anyone to learn a new process. And the banners work identically on a phone — the device where people are most likely to skim and tap.
Who it is for / and how it is bought
Anyone whose staff can authorise a payment.
Which is to say: nearly everyone. Wire fraud does not require a large company, it requires one person who can move money and one convincing email on a bad morning.
Email protection is part of how we handle security for the businesses we look after, alongside the rest of the security stack and Microsoft 365. It is licensed per mailbox and included in the security tiers — the estimator prices it alongside everything else rather than as a surprise line item.
Already protected and wondering what a banner means? The FAQ answers that in plain English — no sign-in needed, and it is fine to forward to your whole team.
One convincing email / one bad morning
Stop guessing which ones are real.
We will look at how your mail is protected today and tell you honestly whether it needs changing. If it is already fine, we will say so.