InboxWatch was created by a SOC analyst who spent years watching real attacks work - not because security tools failed, but because they were looking in the wrong place.
Founder & CEO
Miami, Florida
“After watching a $2M wire fraud succeed because a simple forwarding rule went undetected for weeks, I built InboxWatch to catch what every other tool was missing.”
Traditional security tools monitor network endpoints and SIEM event streams. But the most damaging attacks happen inside email infrastructure itself. Hidden forwarding rules silently exfiltrate conversations for weeks before anyone notices.
Adversaries compromise an email account, set hidden forwarding rules, and quietly siphon information for weeks. Traditional tools don't watch for this because they focus on endpoints, not email infrastructure.
InboxWatch scans email infrastructure without ever reading email content. Our 12-stage pipeline with AI-powered classification and behavioral anomaly detection inspects the settings, rules, and permissions where attackers actually hide.
Every detection maps to a real attack pattern observed during incident response at enterprise scale. Behavioral anomaly detection, streaming attack chain correlation, and an internal threat intelligence network catch what static rule-based tools miss.
We believe security tools should be transparent about what they access. Check exactly what InboxWatch can see in your account settings. No surprises, no hidden permissions.
You will see exactly which permissions InboxWatch requests. We only ask for metadata access, never email content. On Google, look for “Gmail settings (basic)” and “Gmail metadata.” On Microsoft, look for “Read mailbox settings” and “Read basic mail.”
Built from years of SOC experience responding to email-based attacks
First users onboarded with core scanning engine and detection suite
Detection engine refined with real-world findings across industries
Full platform available with Google and Microsoft 365 support
A cybersecurity company focused on one thing: making sure attackers can't hide in your email infrastructure. InboxWatch runs 118+ detectors through a 12-stage pipeline with AI-powered classification, behavioral anomaly detection, and industry benchmarking — built from real SOC experience and continuously refined by an internal threat intelligence network.
Solo founder
Founded and built by Nicholas Papadam, a senior SOC analyst with 6+ years of Fortune 500 security operations experience.