Privacy Policy
1. Who we are
The ThreatChaser DLP Browser Protection extension is published by Siberkale Teknoloji ve Yazılım A.Ş. ("we"). For questions about this policy, contact destek@cycastle.com.
2. What the extension does
The extension is part of ThreatChaser DLP, a data loss prevention product used by organizations. It checks files that a user selects, drags and drops or pastes into a web page, and messages typed into the compose box of supported web messaging pages, against the data protection policy of the user's organization before they leave the browser. The check is done by the ThreatChaser DLP agent installed on the same computer; the extension then allows, warns about or blocks the action according to the agent's decision.
The extension is meant to be deployed by an organization that uses ThreatChaser DLP. It does nothing useful without the agent.
3. What data the extension processes
- The content, name, type and size of files the user selects, drops or pastes into a web page.
- The text of messages typed in the compose box of supported messaging pages, when the user sends them.
- The address (URL) of the page where the action happens.
To observe uploads, a page script also reads the type and size of upload requests sent by the page. It does not change those requests and does not read their content.
4. Where the data goes
The data listed above is sent only to the ThreatChaser DLP agent on the same computer, through the browser's native messaging channel (native host com.cycastle.dlp.browser_host). File content is sent in chunks of up to 1 MB.
The extension has no code that contacts any remote server: it makes no network requests and contains no analytics, advertising or tracking. We do not receive the data processed by the extension.
5. What is stored
The extension keeps only the last policy received from the local agent (on/off state, list of domains, warning and block texts) in the browser's local extension storage (chrome.storage.local), so that protection continues if the agent is briefly unreachable. File contents and message texts are not stored by the extension.
The extension does not use cookies.
6. Decisions and records
Decisions and any logging are made by the locally installed ThreatChaser DLP agent, under the policy set by the user's organization. The organization that deploys ThreatChaser DLP decides what is checked and what is recorded, and is responsible for that processing. If you use the extension on a work device, contact your organization's IT or security team for details about its policy.
7. Permissions
| Permission | Why it is needed |
|---|---|
nativeMessaging | To communicate with the ThreatChaser DLP agent on the same computer. Files are scanned by the agent, not inside the browser. |
storage | To keep the last policy received from the local agent. |
alarms | To refresh the policy from the local agent every minute. |
| Content scripts on all web pages | File selection, drag and drop and paste can happen on any website, and the organization's policy decides which domains are checked. A file is read only when the user selects, drops or pastes it. |
The extension requests no host permissions.
8. What we do not do
- We do not sell the data or transfer it to third parties.
- We do not use the data for purposes unrelated to the single purpose described above.
- We do not use the data to determine creditworthiness or for lending purposes.
9. Changes to this policy
If the extension's data handling changes, we will update this page and the date at the top.
10. Contact
Siberkale Teknoloji ve Yazılım A.Ş. — destek@cycastle.com