Browser Extension Coverage
Version: 1.0 Last Updated: January 2, 2025
Overview
This document describes the policy enforcement capabilities of our browser extension. It outlines how different user actions across various websites are controlled, differentiating between actions that do not involve content inspection (URL Access Policy Actions) and those that do (Data Protection Policy Actions). These policies aim to enhance data security, ensure compliance with organizational standards, and maintain a secure browsing environment.
Policy Action Definitions
Block: Completely prevent the action. Allow: Let the action proceed normally. Warn: Show a warning before the action; user decides to continue or stop. Alert: Create an alert in Swift console, but the alert is “silent” from the perspective of the end user. Mask: Hide or obfuscate sensitive data before the action completes.
Supported Browsers
Chrome, Firefox, Brave, Edge
URL ACCESS POLICY ACTIONS (No content inspection). The following user actions can be controlled via the policy. Supported policy actions include block and allow. On the roadmap, we will add (a) alert, (b) warn.
Copy - Supported for all websites configured in the policy. Support includes ctrl+c and right click and copy. Site specific copy action functionality would need to be supported for each web application.
Cut - Supported for all websites configured in the policy. Support includes ctrl+x and right click and cut. Site specific cut action functionality would need to be supported for each web application.
Print - Supported for all websites configured in the policy. Support includes ctrl+p and right click and print (whole page and selected content), and also supports when the print goes through the normal browser behavior (such as print opens a preview). Site specific print action functionality would need to be supported for each web application.
Download - Supported for all websites configured in the policy. Download functionality is generic for any downloads that goes through browser download queue. Meaning when you download an item and you have that icon with download in the top right corner showing the download. We don’t yet support certain download functionality such as right-click → download image.
DATA PROTECTION POLICY ACTIONS (with content inspection). The following user actions can be controlled via the policy.
Upload - Supported on all websites. Support includes all generic inputs that have type=”file”, which includes file types such as txt, docs, pdf, excel, image, CSV. Certain applications that use non standard upload approaches may not work. Policy actions supported include: block, warn, alert, allow.
Current known limitations include Microsoft One Drive.
Paste - Supported for all websites. Support includes ctrl+p and right click and paste. Paste action buttons on the web page would need to be supported page by page. Policy actions supported include: block, warn, mask, alert, allow.
Prompt typing and submitting - We support both pressing Enter and clicking the Submit button. Supported for selected website (see below)
https://chatgpt.com
https://claude.ai
https://codeium.com
https://console.x.ai
https://copilot.microsoft.com
https://gemini.google.com
https://coral.cohere.com
https://dashboard.cohere.com
https://forms.office.com
https://groq.com
https://huggingface.co
https://onedrive.live.com
https://platform.openai.com
https://my.replika.com
https://www.askcodi.com
https://www.bing.com
https://www.perplexity.ai
https://you.com
https://atlassian.net
https://google.com
https://novelai.net
https://app.clickup.com
https://app.copy.ai
https://app.grammarly.com
https://app.hubspot.com
https://app.rytr.me
https://app.writesonic.com
https://caktus.ai
https://character.ai
https://chat.deepseek.com
https://chat.groq.com
https://chat.mistral.ai
https://outlook.live.com
PROMPT AND RESPONSE
This feature collects and stores prompts and responses from these websites, which can be viewed in events and alerts
https://atlassian.net
https://chatgpt.com
https://claude.ai
https://chat.mistral.ai
https://api.x.com
https://copilot.microsoft.com
https://gemini.google.com
https://meta.ai
Last updated