2.0.2.0
minorVersion 2.0.2.0 flags email from a sender domain you have never received mail from - the pattern behind business email compromise and spoofed invoices.
What changed
- Flags email from a sender domain with no history in your inbox
- Aimed at business email compromise and spoofed invoices
- Works from a per-installation history that is never shared
- Complements trusted contacts, which handles the opposite case
The most convincing invoice scam is not the one with the broken English. It is the one from a supplier you actually use, sent from an address you have never seen.
That is business email compromise at its most effective: no malware, no link to click, just an invoice that looks like every other invoice - which is why it is also the hardest kind of invoice fraud to catch by reading the message alone.
This release flags that pattern directly. When an email arrives from a domain you have never received mail from, the extension adds a first-time sender caution to its findings. The history behind it stays on your installation - it is a record of what you have received, not something shared with anyone else.