// YOUR EMAIL LANDSCAPE

See who actually emails you — and how risky they are.

Once you've connected a Gmail account, the Landscape tab in your portal can scan your whole inbox — not just the spam folder — and show you every domain that emailed you recently: how many messages, how often they landed in spam, and what the OpenShield community already knows about them. One click, a few minutes, and you get a picture of your inbox most people have never seen.

The report groups senders into plain-language buckets so you don't need to read any technical fields: Dangerous (confirmed risky by the community, or almost everything they sent you went to spam), Suspicious (warning signs worth caution), Newsletters (legitimate mailing lists with a standard unsubscribe), Transactional (receipts, alerts, and other machine mail from services you use), and Unknown (nothing notable either way yet). Each bucket explains itself, and each warning badge tells you why it's there.

You can act right on the report. Risky senders get a one-click Report button (the same report the rest of OpenShield files — it feeds the community investigation pipeline), and any sender can be Muted so it disappears from your own OpenShield views without affecting anyone else. Once a sender you've reported has an OpenShield-verified case, a Protect button appears too — it files a real, ordinary inbox rule (visible and removable from your own Gmail or Outlook settings) so that sender's next email skips your inbox entirely, no more waiting for it to land in spam. If a sender already has a public case, its name also links straight to the investigation. And the report will teach you the one unsubscribe rule worth knowing: unsubscribing from real newsletters is safe — unsubscribing from spammers just confirms your address is alive, so report or mute those instead. When a sender you've already gotten spam from shows up in the report, you may also see an example subject line straight from your synced Spam folder, so the risk feels concrete instead of abstract.

Need to show someone? The Export CSV (alpha) button downloads your landscape as a spreadsheet — senders, counts, risk levels, and links to any public cases — ready to hand to your IT team, or just to keep. Prefer a document over a spreadsheet? The Export PDF (alpha) button next to it lays out the same data as a paginated document you can attach to an email or print. Both are labeled alpha because they're a personal overview, not a certified evidence bundle — the PDF says so plainly on its first page, and applies no signature of any kind (those exist too, but they belong to the formal case pipeline, not this personal export).

See the shape of it, not just the list. When your report has enough history, a Timeline chart shows how much mail you've been getting week by week, so a sudden spike is easy to spot. Underneath it, Pattern hints call out when several of your senders trace back to the same actor the community has already confirmed, or share the same hosting provider — a sign they may be run by the same operation even though the domain names look unrelated.

Outlook and Hotmail too. If you connect a Microsoft account instead of (or alongside) Gmail, the same scan runs against your Inbox, Junk Email, and Archive folders and shows up as its own section in the Landscape tab — the same domain buckets, timeline, pattern hints, unsubscribe teaching, and Report/Mute/Protect actions as the Gmail report, using the same read-only Microsoft permission you already granted (Protect needs its own second Outlook consent, the same way it does for Gmail).

What we read, and what we keep. The scan itself uses the same read-only Gmail permission you already granted — no new consent screens. It reads only message headers (who sent it, when, whether it offers an unsubscribe), and it stores only per-domain totals: never individual messages or anyone's email address. The example subject lines mentioned above come from somewhere separate — your synced Spam folder (a different, already-existing part of Enhanced Protection) — never from the scan itself. Disconnect the account or delete your OpenShield account and both go with it — here's how deletion works.

At an organisation? You may see a banner on your report inviting you to tell us — it takes three fields and connects you with what an org-wide account looks like. See OpenShield for Organizations if you want the details first.

Ready? Open your Landscape tab — or connect Gmail first on the Protection tab.