Usage & Deployment Guides

User guide, rules guide, antivirus guide and deployment guides

Deployment Guides

Windows Client Standard Installation Guide

This document provides step-by-step deployment guidance for USB Disk Security (Standard Edition) and PrivateDLP (Pro Edition) endpoint clients using the EXE installer package. Tailored for individual evaluators, small teams and small-batch deployment administrators, it covers the full workflow including installer acquisition, local client setup, web console registration, free trial activation, paid license binding and post-deployment verification. The EXE installer is designed for single-device or small-scale rollout, requiring manual license configuration and console binding for each endpoint. Both product editions share an identical EXE installation workflow and client interface; functional differences are enabled automatically based on the activated license type. This guide is intended for end users, IT support staff and security administrators deploying the software on individual Windows devices.

Silent & Mass Deployment via Active Directory (Pre-Authorized MSI Package)

This document provides enterprise IT administrators with step-by-step guidance for silent, large-scale deployment of USB Disk Security (Standard Edition) and PrivateDLP (Pro Edition) endpoint clients through Active Directory (AD) Group Policy Objects (GPO) using the official pre-authorized MSI installation package. Designed exclusively for paid enterprise customers, the license-integrated MSI package eliminates per-device manual activation and configuration: endpoints automatically bind to your organization’s centralized web admin console immediately after installation and network connection. This guide covers pre-deployment prerequisites, full GPO configuration workflow, post-deployment verification, best practices and common troubleshooting for domain-wide endpoint rollouts.

Client Uninstallation & Removal Guide

This document outlines the complete procedures for fully uninstalling the USB Disk Security (Standard) and PrivateDLP (Pro) Windows endpoint clients from domain or local workstations. It covers two core scenarios: standard unrestricted uninstallation, and removal when Uninstall Protection is enabled by administrators. The guide details how to disable the anti-uninstall lock via the web management dashboard’s device detail panel, plus manual Windows uninstall workflows, silent MSI command-line removal, and post-uninstall cleanup steps for IT administrators.

Windows Client Usage

Windows Client Trial & Activation Guide

This guide focuses exclusively on the trial registration and license activation workflow for Windows endpoints installed via the EXE package for both USB Disk Security (Standard Edition) and PrivateDLP (Pro Edition). It elaborates on mandatory administrator account pre-registration, step-by-step 15-day full-feature trial activation, and official license activation operations for small-scale and individual device deployment. In addition, it clearly distinguishes the activation mechanism of the enterprise MSI installation package, which supports automatic server connection and license activation without manual operation. This document is applicable for enterprise IT administrators and individual users evaluating or officially activating the client software.

Free USB Drive Antivirus: Permanent Real-Time Protection Against USB-Borne Malware

USB removable drives remain one of the most common vectors for malware propagation, allowing threats to spread across air-gapped and networked systems alike. To address this pervasive risk, both USB Disk Security (Standard Edition) and PrivateDLP (Pro Edition) include a full-featured USB Drive Antivirus module — branded as USB Security — that is permanently free for all users. This built-in security layer delivers proactive, lightweight protection for Windows endpoints, with no subscription required to access its core threat defense capabilities.

How to Update PrivateDLP & USB Disk Security

Keeping your endpoint security software up to date is critical to defending against emerging threats and unlocking new feature improvements. Both **USB Disk Security (Standard Edition)** and **PrivateDLP (Pro Edition)** support automatic periodic update checks and manual on-demand updates.

Employee Self-Service Monitoring Pause: Balancing Security and Workplace Privacy

This document introduces the **employee-initiated monitoring pause feature** built into PrivateDLP AI Screen Audit. Administrators configure daily pause quotas and single-session durations centrally from the web management console. Authorized end users can temporarily suspend AI screen auditing via the client system tray when handling personal, private tasks. The feature delivers a balanced framework: enterprises retain overall endpoint security oversight while respecting employee privacy needs, helping organizations deploy workplace monitoring in a more transparent, human-friendly, and compliance-aligned manner.

Policy Management

Home Overview Dashboard Guide

The Home Overview page serves as the primary landing page of the PrivateDLP & USB Disk Security centralized web management console. Built for the Client/Server (C/S) architecture, this dashboard delivers a single-pane view of all connected Windows endpoints, displaying real-time connectivity status, subscription validity, and recent security alerts. Administrators can open a dedicated device configuration panel by clicking the **Details** button for any workstation, to adjust device aliases, toggle uninstall protection, activate email alert notifications, and review or modify all endpoint security policies including USB control, software restrictions and browser access rules. This article explains every core capability and daily operation workflow available on the Home Overview page.

USB Storage Control Policy Guide

This guide introduces the USB Storage Control module within the PrivateDLP & USB Disk Security web management console. Administrators can centrally deploy flexible USB security policies for all Windows endpoints to mitigate data leakage risks via portable storage devices, including USB flash drives, external hard drives, and mobile phones that mount as mass storage. Supported policy modes include read-only restriction, full USB blocking, and global USB whitelist management. The built-in USB application workflow allows end users to submit access requests for new USB devices, while administrators review, approve or reject all requests from a unified whitelist management panel.

Software Control: Restrict Unauthorized Application Execution on Windows Endpoints

Software Control is a built-in policy module available for both USB Disk Security (Standard Edition) and PrivateDLP (Pro Edition). IT administrators can centrally create and enforce application blocking rules via the web management dashboard, preventing prohibited executable processes from launching on employee Windows workstations. The feature supports per-device configuration and bulk batch deployment, flexible time-scheduled enforcement, and generates real-time alerts when users attempt to open restricted software, helping enterprises reduce non-work application usage and mitigate security risks introduced by unauthorized programs.

Browser Control: Web Access Management for Chrome & Edge

Browser Control is a built-in policy module available within USB Disk Security (Standard Edition) and PrivateDLP (Pro Edition). IT administrators can centrally manage website access for Google Chrome and Microsoft Edge browsers via the web management dashboard. The module supports both blacklist and whitelist filtering modes, flexible time-scheduled policy enforcement, individual device configuration and bulk batch deployment. Combined with the platform’s network control capabilities, enterprises can effectively regulate employee web browsing behavior, block risky or non-work websites, reduce productivity loss and prevent access to malicious web resources.

Network Control: Restrict Application Internet Access on Windows Endpoints

Network Control is a core policy module supported by USB Disk Security (Standard Edition) and PrivateDLP (Pro Edition). IT administrators can remotely restrict network connectivity for specified Windows executable applications via the web management dashboard. This feature works alongside Browser Control to deliver comprehensive web and application network governance. It supports single-device configuration, bulk batch deployment, and flexible time-scheduled enforcement. By cutting off internet access for unauthorized programs, enterprises block risky external connections, prevent data exfiltration, and standardize employee network usage.

AI Audit

AI Screen Audit Feature Overview and Quick Start Guide

AI Screen Audit is a privacy-oriented, LLM-powered intelligent monitoring feature exclusive to PrivateDLP Pro. It enables administrators to define workplace behaviors and security risks via plain language, automatically analyzes periodic terminal screenshots to classify working, leisure and offline time, and triggers real-time email alerts for abnormal or data-risk behaviors. All regular analysis screenshots are instantly deleted after AI recognition to protect employee privacy, while violation records are retained for audit. The feature works out-of-the-box with Google Gemini and supports customizable integration with third-party or on-premises LLMs, effectively compensating for traditional rule-based DLP limitations and improving enterprise productivity supervision and data leakage prevention.

AI Audit Rule Configuration Operation Guide

This guide focuses on the rule configuration operations of PrivateDLP AI Screen Audit, including natural-language-based work/leisure behavior definition and customized security alert rules. It covers single-device and batch deployment procedures, rule effective logic, and alert triggering mechanisms. The flexible natural language rule system overcomes the limitations of traditional fixed-pattern DLP policies, allowing enterprises to adaptively identify unknown office risks and precisely classify employee working and leisure status. All non-violation screen data is automatically deleted after AI analysis to ensure employee privacy while maintaining effective internal security supervision.

Employee Activity Data & Statistical Report User Guide

This user guide introduces the data viewing, statistical analysis, and report query functions of PrivateDLP AI Screen Audit. It focuses on how administrators can view real-time and historical terminal activity data via the View Details entry, interpret working time, leisure time, and offline time metrics, and analyze long-term employee office behavior trends. The visualized report data helps enterprises quantify employee productivity, identify abnormal office behaviors, and support refined internal management and data security supervision.