Privacy Policy
Privacy Policy for EmailPointer
Last updated: July 27, 2026
EmailPointer is a Chrome extension from WesternIM that helps Microsoft 365 work or school users file Outlook on the web emails, attachments, and related files into destinations they choose in Microsoft 365 or approved local Windows folders.
This policy covers the EmailPointer Chrome extension and the optional EmailPointer Desktop Helper.
Information EmailPointer processes
Depending on the feature you choose, EmailPointer may process:
- Microsoft account identity information required for sign-in, such as display name, email address, account and tenant identifiers;
- Microsoft authorization tokens required to perform an action on your behalf;
- Outlook message context, identifiers, subject, sender, recipients, timestamps, body, headers, and attachments;
- SharePoint, Teams-connected SharePoint, OneDrive, and Outlook site, drive, library, folder, file, and mailbox metadata;
- files and email artifacts that you explicitly file, copy, move, open, download, convert, or delete;
- EmailPointer profiles, selected targets, property aliases, preferences, limited filing history, status, and diagnostics;
- when the Desktop Helper is installed, approved Windows root paths, local folder/file metadata, helper version and capability information, and the content you explicitly save or convert.
EmailPointer does not request your Microsoft account password. Microsoft handles authentication.
EmailPointer transiently checks open-tab URLs only to find a supported Microsoft tab or, when you request it, use the active SharePoint or OneDrive location as a destination suggestion. Those URLs are not retained as general browsing history.
How information is used
EmailPointer uses information only to provide or maintain its disclosed filing functionality, including:
- identifying the Outlook message or attachment you selected;
- browsing a destination you are authorized to use;
- creating, uploading, copying, moving, renaming, opening, or deleting content when you explicitly request that action;
- converting a user-selected Outlook email from
.emlto.msgon the same computer when that format is requested for browser handoff, local filing, or Microsoft 365 upload; - creating and sharing EmailPointer profile configuration;
- saving settings and profile configuration;
- diagnosing and recovering from a filing or helper error;
- protecting the service, users, and data from abuse or security threats.
EmailPointer does not sell personal information, use it for personalized advertising, determine creditworthiness, or use it for unrelated profiling.
Where information is sent
Microsoft services
EmailPointer communicates with Microsoft Entra ID and Microsoft Graph over HTTPS to authenticate you and complete the Outlook, SharePoint, OneDrive, Teams, or mailbox operation you request. Its delegated Microsoft scopes are openid, profile, email, offline_access, User.Read, Mail.ReadWrite, Sites.Read.All, and Files.ReadWrite.All. Microsoft processes that information under your organization's Microsoft agreements and policies.
Optional Desktop Helper
When you separately install the EmailPointer Desktop Helper, the extension may send either a user-requested operation for an approved Windows folder or a user-selected Outlook email artifact for local .eml-to-.msg conversion through Chrome native messaging. Conversion can support browser handoff, local filing, or a Microsoft 365 upload. All helper processing stays on the same computer.
The Desktop Helper:
- is not bundled with or silently installed by the Chrome Web Store extension;
- accepts messages only from an allowed EmailPointer extension origin;
- creates and allows a dedicated
Documents\EmailPointerroot on first use, and limits any additional access to roots you or your organization explicitly add; - performs the requested operation locally and returns bounded status, metadata, or converted-artifact chunks to the extension;
- may temporarily stage a large converted artifact under
%LOCALAPPDATA%\EmailPointer\NativeHost\stagingfor verified chunked transfer; the extension requests deletion immediately after transfer, and the helper removes expired staged files older than one hour on a later start; - does not upload local files to WesternIM merely because the helper is installed.
WesternIM systems
The standard direct-Microsoft and local-helper filing paths do not send email bodies or attachments to WesternIM servers. EmailPointer.com may receive normal web-server information, such as IP address, timestamp, requested URL, browser user agent, and download status when you visit help pages or download the helper.
Local storage and retention
EmailPointer stores profiles, preferences, and limited operational state in the Chrome extension profile until you clear the data or uninstall the extension. Persisted operational metadata may include subjects or message identifiers, filenames, profile and target names or paths, timestamps, status, and diagnostics. Email bodies, attachments, and file payload bytes used for an active filing operation are not retained in persistent Chrome storage.
Microsoft access tokens are kept in session-scoped extension storage and are cleared when the browser session ends, the extension is reloaded or disabled, or you sign out.
The Desktop Helper stores its configuration under the current Windows user's local application data. Uninstalling the helper removes the executable and Chrome registration but preserves its configuration for a later reinstall. Large converted artifacts may be staged temporarily for chunked transfer as described above. You can remove all retained helper state after uninstall by deleting %LOCALAPPDATA%\EmailPointer\NativeHost. Filed email artifacts and files remain in the destination you selected until you or your organization removes them.
WesternIM does not retain Microsoft 365 message content from the standard direct filing path. Normal website security logs are retained only as reasonably necessary for security, reliability, and legal obligations.
Sharing and human access
EmailPointer transfers user data only:
- as necessary to provide the user-requested filing functionality;
- to Microsoft or a destination explicitly selected by the user or organization;
- when required for security or legal compliance;
- as part of a merger, acquisition, or sale of assets, subject to applicable notice and safeguards.
WesternIM personnel do not read email content except when a user gives explicit consent for support involving specific content, when required for security or legal compliance, or when data has been aggregated and anonymized for internal operations.
When you choose Share Profile, EmailPointer places the selected profile settings into a new Outlook compose draft. Those settings may include a local path or property aliases when they are part of the profile. You review the draft, choose the recipients, and send it yourself.
Security
EmailPointer uses HTTPS for Microsoft and website communications, limits Chrome and Microsoft permissions to product functionality, restricts native-helper origins and approved roots, and validates data crossing extension and native-helper boundaries.
No security measure is perfect. Users and administrators remain responsible for destination permissions, Microsoft 365 policies, device security, and appropriate backups.
Your controls
You can:
- close the first-run privacy notice and choose not to sign in to Microsoft;
- sign out of Microsoft from EmailPointer;
- remove or edit filing profiles and aliases;
- clear extension storage or uninstall EmailPointer;
- remove additional approved helper roots, uninstall the Desktop Helper, and delete
%LOCALAPPDATA%\EmailPointer\NativeHostif you do not want helper configuration or temporary state preserved; - delete filed content from its destination subject to your organization's permissions and retention rules;
- contact WesternIM to ask a privacy or support question.
Children
EmailPointer is a business productivity tool and is not directed to children.
Changes
If EmailPointer's data handling changes materially, the extension will present an updated prominent disclosure before the changed handling begins. Where required, EmailPointer will request affirmative consent for the changed practice. This page will also show a revised effective date.
Chrome Web Store Limited Use disclosure
EmailPointer's use and transfer of information received from Chrome and Microsoft APIs adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements. User data is used only to provide or improve EmailPointer's disclosed, user-facing filing functionality.
Contact
WesternIM
Email: support@westernim.com
Support: https://emailpointer.com/web-help/
Privacy policy: https://emailpointer.com/privacy-policy/