Learn how to connect your Google account to ThunderSweep
When connecting your Google account to ThunderSweep, you MUST check all permission boxes for the extension to work properly. Missing any permission will cause scanning or vault features to fail.
ThunderSweep requires the following permissions across Gmail and Google Drive:
Crucial context: ThunderSweep is an extension installed locally on your Chrome browser; it is not a remote server or a person. When you grant these permissions, you are giving your local browser the ability to run these security tasks on your own computer. No data is ever sent externally. I have no backend servers.
What it does: Allows the local extension on your machine to map your inbox structure.
Why it's needed: Your browser uses this to identify which emails contain attachments so it knows what to scan.
What it DOES NOT do: It does not give me (the developer) or anyone else the ability to read your emails from a remote server.
What it does: Grants your local browser the ability to download attachments into its temporary memory for scanning.
Why it's needed: Without this, the extension cannot actually inspect PDFs or documents for sensitive information before vaulting them.
What it DOES NOT do: It does not send emails on your behalf, nor does it upload your attachments to any cloud servers for processing.
What it does: Gives the extension necessary read/write authorization within your private Drive architecture.
Why it's needed: Your browser must be able to scan your existing Drive files, generate its own encrypted versions locally, place those secure files into your new ThunderSweep Vault folder, and delete the exposed originals.
What it DOES NOT do: It does not give me or my company any visibility into your files. ThunderSweep operates completely blindly on our end.
Solution: Make sure ALL boxes are checked when connecting your account. Go back and re-authorize with all permissions enabled — both Gmail and Google Drive.
Solution: Disconnect and reconnect your account in the extension settings, ensuring all permissions are granted during the OAuth flow.
Solution: The Encrypted Vault requires the Google Drive permissions. Disconnect and reconnect your account, making sure the Drive permission boxes are checked.
Solution: This is normal after extension updates. Re-grant all permissions to continue using ThunderSweep. Your previous scan results, vault files, and settings are preserved.
📧 Email: support@thundersweep.com
🌐 Website: https://thundersweep.com
Last Updated: September 2026