← Back to Home

Privacy Policy

Last updated: May 8, 2026

Introduction

This Privacy Policy describes how the Prompt Seal browser extension ("Prompt Seal", "we", "us", or "our") handles information. Prompt Seal is committed to protecting your privacy. This policy applies to all users worldwide, including those protected under the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA/CPRA), Lei Geral de Proteção de Dados (LGPD), the UK Data Protection Act 2018, the Personal Information Protection and Electronic Documents Act (PIPEDA), and similar legislation in other jurisdictions.

Data Controller

Aleksei Aleinikov is the data controller for purposes of applicable data protection laws. Contact: contact@alekseialeinikov.com

Data We Collect

We do not collect any personal data. Prompt Seal does not collect, store, process, or transmit any personally identifiable information (PII). We do not use cookies, analytics, tracking pixels, fingerprinting, advertising SDKs, or any other tracking technologies. We do not access your browsing history, IP address, device identifiers, or any other personal information.

Local Storage

All user data — settings, theme preferences, language selections, scan statistics, and auto-redact mode — is stored exclusively on your device using the browser's storage.local API. This data is never transmitted to us or any third party. You maintain full control over this data and can delete it at any time by clearing the extension data or uninstalling Prompt Seal.

How the Extension Works

Prompt Seal scans your messages in AI chat interfaces (ChatGPT, Claude, Gemini, Copilot, Perplexity) for secrets and sensitive data using 110+ regex patterns and entropy-based analysis. All scanning is performed entirely locally in your browser using JavaScript. Your prompt content is analyzed in real-time within the browser tab and is never sent to any external server. No text leaves your device for scanning purposes.

Browser Permissions

Prompt Seal requests the following browser permissions, each used solely for its stated purpose:

  • storage — to save your preferences (language, theme, enabled state, auto-redact mode) locally on your device.
  • activeTab — to access the current tab's content for scanning prompts on supported AI chat sites.
  • Host permissions (chatgpt.com, claude.ai, gemini.google.com, copilot.microsoft.com, perplexity.ai) — to inject the content script that scans and protects your prompts on these specific sites.

No permission is used to collect, monitor, or transmit personal data.

Third-Party Services

Prompt Seal does not communicate with any external servers or APIs. No data is shared with advertisers, data brokers, analytics providers, or any other third party. We do not sell, rent, lease, or otherwise disclose any user data to any third party for any purpose.

Data Retention

Since Prompt Seal does not collect any personal data, there is no personal data to retain. Locally stored data (settings, statistics) persists on your device until you choose to delete it or uninstall the extension.

Your Rights

Because Prompt Seal does not collect personal data, most data subject rights (access, rectification, deletion, portability, objection) do not apply in practice. However, we fully respect and acknowledge your rights under applicable laws including GDPR (Articles 15–22), CCPA/CPRA, LGPD, UK GDPR, and PIPEDA. If you believe we hold any personal data about you, please contact us and we will respond within 30 days. You have the right to lodge a complaint with your local data protection authority.

International Data Transfers

Prompt Seal does not transfer personal data internationally. All processing occurs locally on your device.

Children's Privacy

Prompt Seal does not knowingly collect any information from anyone, including children under the age of 13 (or the applicable age of consent in your jurisdiction). Since no personal data is collected from any user, Prompt Seal is compliant with COPPA (Children's Online Privacy Protection Act), GDPR age of consent requirements, and similar regulations worldwide.

Security

Although Prompt Seal does not collect or transmit personal data, we are committed to maintaining the security of the extension. All locally stored data is protected by the browser's built-in extension sandboxing and storage isolation mechanisms.

Do Not Track

Prompt Seal does not track users in any way. We honor Do Not Track (DNT) signals by default, as no tracking occurs regardless of your browser settings.

Changes to This Policy

We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated revision date. Since Prompt Seal does not collect personal data, changes to this policy are unlikely to affect your rights. We encourage you to review this page periodically.

Contact

If you have questions, concerns, or requests regarding this Privacy Policy or your data rights, please contact:

Aleksei Aleinikov
Email: contact@alekseialeinikov.com