Thought client-side scanning was a dealbreaker until a pen tester in Tampa showed me his log
He pulled up 14 unpatched browser extensions on my crew's laptops that were already shipping every saved password out to random servers, and suddenly the thing I was scared of felt a lot smaller than the thing I was ignoring, so what finally changed your mind on it?