Limited Use

Effective date: 20 August 2026

This page is the Chrome Web Store Limited Use statement for Fromensics, operated by Zima Media OÜ. The full privacy policy is at fromensics.com/privacy.

This statement describes how Zima Media OÜ, doing business as Fromensics, complies with the Chrome Web Store User Data Policy, including the Limited Use requirements.

Fromensics’ single purpose

Fromensics’ single purpose is to investigate the sender and security signals of a Gmail message that the user deliberately selects. The extension accesses the open message only to provide or improve that user-facing investigation feature and closely related security functionality.

The current version reads the open Gmail page after the user clicks Investigate Sender. It does not use the Gmail API or request Google account OAuth. This version does not call Google APIs.

Data the extension handles

For the selected message, the extension may handle sender name and address, subject, visible date, body and quoted text, links, attachment names, message/thread identifiers, and authentication or original-message details that Gmail exposes or the user provides. It also creates derived findings, scores, and investigation history.

This is user data under Chrome Web Store policy even when it is processed or stored only on the device.

Allowed use

Fromensics uses this data only to provide or improve its single purpose, including:

Fromensics does not use selected-message data for unrelated products, general-purpose AI training, advertising, creditworthiness, or lending.

Allowed transfers

In Strict Local mode, Fromensics does not transmit message content or message-derived indicators for investigation. Operational feed-update requests still occur and do not contain message content or derived indicators.

If the user enables Private Live-Check, the extension may transfer only the minimum indicator needed—normally a registrable domain or hostname—to a DNS or RDAP provider or to the Fromensics Pro privacy proxy at https://proxy.fromensics.com. It does not transfer the message body, subject, recipients, email-address local part, full headers, or full private URLs for these lookups. Optional license validation transfers the license key and extension version to the Fromensics proxy and Whop.

Fromensics transfers user data only:

  1. as necessary to provide or improve the extension’s single purpose;
  2. to comply with applicable law;
  3. as necessary to protect against malware, spam, phishing, fraud, abuse, or security threats; or
  4. as part of a merger, acquisition, or sale of assets, subject to the explicit prior consent required by the Chrome Web Store User Data Policy.

All other transfers are prohibited.

Prohibited advertising, sale, and data brokerage

Fromensics does not:

We do not sell user data.

Human access

Fromensics personnel do not ordinarily receive or read analyzed messages. If Fromensics receives user data, a human may read it only when:

Affirmative compliance statement

Fromensics’ use and transfer of information received from Google APIs will adhere to the Chrome Web Store User Data Policy, including the Limited Use requirements.

Although the current version does not call Google APIs, Fromensics applies the same Limited Use protections described above to Gmail content read from the page and to data derived from that content.

Questions may be sent to privacy@fromensics.com.