Last Updated: June 17, 2025
Introduction
Privy ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our browser extension across supported browsers including Chrome, Brave, and Microsoft Edge.
1. Account Information
When you create an account, we collect:
- Email address
- Password (encrypted)
- Account preferences
- Browser type and version (for compatibility)
2. Usage Information
We collect limited usage data to improve our service:
- Number of analyses performed
- Analysis types (web, text, installer)
- Extension version and browser type
- Error logs (anonymized)
- Feature usage statistics (dashboard, caching, etc.)
3. Analysis Data
- Privacy policies you analyze: We temporarily process the text to provide analysis
- Selected text analysis: Text selected via context menu is processed similarly to web page analysis
- Analysis results: Stored locally in your browser, with optional cloud backup for dashboard features
- Usage statistics: Anonymous counts for billing and service improvement
- Dashboard data: Analysis history and statistics stored locally and optionally synced to cloud
4. Installer Scan Feature
When you choose to upload an installer file:
- File uploads: Selected files are uploaded to our secure servers for automated text extraction only
- Security scanning: All uploaded files are virus-scanned before processing
- Text extraction: Only legal text (licenses, EULAs, privacy policies) is extracted from installers
- File deletion: Original installer files are permanently deleted within 24 hours
- Extracted text: Treated the same as webpage analysis data per our standard practices
- No code execution: We never execute or run any code from uploaded files
- Encryption: All upload data is encrypted in transit and at rest
5. Dashboard and Analytics
When you use the dashboard feature:
- Analysis history: Local storage with optional cloud sync for cross-device access
- Cache management: Local storage of analysis results for performance
- User preferences: Dashboard settings and customizations
- Export data: When you export analysis results
Browser Compatibility Data
Chrome Web Store Compliance
- We comply with Chrome Web Store Developer Program Policies
- Data collection is limited to what's necessary for functionality
- No collection of browsing history or sensitive personal data
- Full compliance with Limited Use requirements for Chrome APIs
Cross-Browser Support
- Google Chrome: Primary supported browser
- Brave Browser: Fully supported via Chrome Web Store compatibility
- Microsoft Edge: Supported via Chrome Web Store compatibility
- Browser-specific data is collected only for compatibility and error reporting
What We DON'T Collect
- Your browsing history
- Personal information from websites you visit (beyond what you explicitly analyze)
- Content of websites beyond what you explicitly analyze
- Personally identifiable information from analyzed documents
- Private files from your computer (except installer files you explicitly upload)
- Location data or device information beyond browser type
- Third-party cookies or tracking pixels
How We Use Your Information
Service Provision
- Authenticate your account across supported browsers
- Process privacy policy analyses (web, text, and installer)
- Provide AI-powered insights and risk assessments
- Manage your subscription and billing
- Sync data across devices (dashboard feature)
- Provide cross-browser compatibility
Service Improvement
- Monitor service performance across different browsers
- Fix bugs and improve features
- Understand usage patterns (anonymized)
- Improve AI analysis accuracy
- Enhance dashboard functionality
Communication
- Send service updates and feature announcements
- Respond to support requests
- Process billing and subscription changes
- Notify of Chrome Web Store updates or policy changes
Data Storage and Security
Local Storage
- Analysis results are stored locally in your browser by default
- Dashboard data can be optionally synced to cloud for cross-device access
- Cache data is stored locally for performance
- Settings and preferences stored locally
Cloud Storage (Optional)
- Account information is encrypted and stored securely
- Dashboard sync data is encrypted in transit and at rest
- We use industry-standard security measures
- Data is stored on secure cloud infrastructure (Google Cloud/Firebase)
Data Retention
- Account data: Retained while your account is active
- Usage logs: Retained for 12 months
- Analysis results: Stored locally (you control deletion), cloud sync for 12 months
- Installer files: Deleted within 24 hours
- Dashboard data: Retained while account is active, with user control over deletion
Third-Party Services
OpenAI
- We use OpenAI's API to analyze privacy policies, selected text, and installer content
- Only the text you choose to analyze is sent to OpenAI
- OpenAI's privacy policy applies to this processing
- We comply with OpenAI's usage policies
Stripe
- Payment processing is handled by Stripe
- We don't store your payment information
- Stripe's privacy policy applies to payment data
Firebase/Google Cloud
- We use Firebase for authentication and optional data storage
- Google's privacy policy applies to this service
- The use of information received from Google APIs will adhere to the Chrome Web Store User Data Policy, including the Limited Use requirements
Chrome Web Store
- Extension distribution through Chrome Web Store
- Google's Chrome Web Store policies apply
- Automatic updates may be delivered through the store
Your Rights
Access and Control
- View your account information through the dashboard
- Delete your analysis history locally or from cloud sync
- Export your data from the dashboard
- Delete your account at any time
- Control cloud sync settings
Data Portability
- Request a copy of your data
- Export analysis results from dashboard
- Transfer data to another service
Opt-Out
- Disable usage analytics through dashboard settings
- Turn off cloud sync (use local-only mode)
- Unsubscribe from communications
- Delete your account at any time
Browser-Specific Privacy
Chrome Browser
- Complies with Chrome Web Store Developer Program Policies
- Limited Use requirements for Chrome APIs
- Standard Chrome extension privacy practices
Brave Browser
- Respects Brave's enhanced privacy features
- Works with Brave Shields enabled
- Complies with Brave's privacy expectations
Microsoft Edge
- Compatible with Edge privacy settings
- Works with Edge tracking prevention
- Complies with Microsoft Store policies when applicable
International Users
If you're outside the United States:
- Your data may be transferred to and processed in the US
- We comply with applicable international privacy laws
- EU users have additional rights under GDPR
- UK users have rights under UK GDPR
Children's Privacy
Privy is not intended for users under 13. We don't knowingly collect information from children under 13.
Changes to This Policy
We may update this Privacy Policy. We'll notify you of significant changes via:
- Email notification
- Extension update notice
- Dashboard notification
- Website announcement
For privacy-related questions:
Data Processing Legal Basis (GDPR)
For EU users, we process your data based on:
- Consent: When you agree to use our service
- Contract: To provide the service you've subscribed to
- Legitimate Interest: To improve our service and prevent fraud
Your GDPR Rights
If you're in the EU, you have the right to:
- Access your personal data
- Rectify inaccurate data
- Erase your data
- Restrict processing
- Data portability
- Object to processing
- Withdraw consent
To exercise these rights, contact us at contact@steveweedmedia.com or use the dashboard data management tools.
Chrome Web Store Compliance
This extension fully complies with:
- Chrome Web Store Developer Program Policies
- Limited Use requirements for Chrome APIs
- Single-purpose policy (privacy analysis)
- User data handling requirements
- Permissions justification requirements
Browser Extension Permissions
We request only the minimal permissions necessary:
- activeTab: To analyze the current page content
- scripting: To inject analysis scripts
- storage: To store analysis results locally
- contextMenus: To provide right-click text analysis
- host_permissions: Only for specific API endpoints (Firebase, OpenAI)
Each permission is used solely for its stated purpose and nothing else.
© 2025 Privy Extension. All rights reserved.