Privacy Policy

Add-in: Successor Console · Last updated: July 2026

Summary: this add-in does not collect, store, transmit, sell, or share any personal data. It has no servers, no accounts, no analytics, and no third-party trackers. Your data never leaves the Microsoft 365 boundary, and no artificial intelligence is involved in anything the add-in does.

What the add-in does

Successor Console reads a mailbox the signed-in user has been granted access to — their own, or a shared mailbox (typically a departed employee's) that their IT department has already given them Full Access to. It derives navigational views (correspondents, open items, topics, attachments) using deterministic rules that run entirely inside the user's Outlook session, and at the user's request writes a "knowledge pack" of documents — verbatim excerpts of the mailbox's own content, each linked to its source email — into the user's OneDrive or a SharePoint folder the user chooses.

Data we collect

None. The add-in does not collect, log, or retain any information about you, the mailbox, or your usage. The analysis happens in your own Outlook session and its results are shown only to you.

How your data is handled

When you scan or build a pack, the add-in signs you in (Microsoft nested app authentication) and uses Microsoft Graph — Microsoft's own Microsoft 365 service — to read the mailbox and write the pack files. The data travels only between the mailbox, Microsoft Graph, and the OneDrive or SharePoint location you choose. It stays entirely within the Microsoft 365 boundary.

There is no PurposeBuilt Systems server in this process, and no third party receives your data. All permissions are delegated (Mail.Read, Mail.Read.Shared, Files.ReadWrite.All): the add-in can never read a mailbox or write to a location that the signed-in user couldn't already open themselves. Access to a departed employee's mailbox is granted and governed by your IT department, not by this add-in.

About the knowledge pack

The pack is a copy of mailbox content, created deliberately by you, stored where you choose, and governed by that location's permissions. The pack's README instructs a human review before the pack is shared or used as agent knowledge. If your organization later configures a Copilot agent over the pack, that agent is your organization's own Microsoft product operating under your organization's licensing and controls — this add-in neither provides nor communicates with any AI.

Hosting

The add-in's static program files (HTML, JavaScript, icons) are served from GitHub Pages. Serving these files involves no customer data.

Changes

If this policy ever changes, the updated version will be posted at this URL with a new "Last updated" date.

Contact

Questions: Matthew@purposebuilt.systems