1. Our Principle
PromptPal is designed with a privacy-first approach. Your prompt templates stay on your device. We collect only the minimum described in Section 2 — your email for Pro licensing, and optional pseudonymous usage statistics that you can disable at any time.
2. What Data We Collect
| Data | Purpose | Processed By |
|---|---|---|
| Email (Pro only) | License verification and recovery | Our server and the Merchant of Record |
| Feedback submissions | Bug reports, suggestions, support requests | EmailJS — transmitted to our team |
| Prompt content (during AI optimization) | Sent to the AI provider to perform optimization | Built-in: via our Worker → AI provider; BYOK: direct to your provider. Never stored. |
| API keys (BYOK, optional) | Authenticate with your own AI provider | Stored locally on your device in an encoded form; sent directly to your AI provider, never to us |
| Usage statistics (pseudonymous) | Understand which features are used, so we can improve them | Google Analytics (Measurement Protocol) — a random device ID only, never prompt content (see Section 10) |
Payment is processed by our Merchant of Record. We receive only your email and payment confirmation — never your card details. Their privacy policy applies to payment data they collect.
When submitting feedback, you may optionally include diagnostic information (extension version, browser info, and the current page URL). This is sent only if you check the “Include diagnostics” option. Your API keys and prompt content are never included.
Memory import (optional): when you start it, PromptPal reads the memories shown on the settings page of the service you pick (ChatGPT, Claude or Gemini) and processes them entirely on your device — nothing is uploaded.
3. What We Do NOT Collect
- Your prompt templates or content
- Your browsing history or website content
- Personal information beyond what is listed above
- Analytics tied to your identity. The usage statistics we keep are pseudonymous and never linked to your name or email (see Section 10); service logs contain no personal data (see Section 5)
- Cookies for advertising
4. Local Data Storage
All your templates, categories, and context blocks are stored locally in your browser using chrome.storage.local. Templates and categories never leave your device unless you explicitly enable cross-device sync (Pro feature), which uses chrome.storage.sync; context blocks always stay on your device and are never synced. Your preferences (theme, language, and other settings) and license status are also stored in chrome.storage.sync, so they follow you across devices. chrome.storage.sync is a built-in Chrome feature that syncs through your Google account under Google’s privacy policy, not through our servers. None of this data contains prompt content.
5. AI Optimization Feature
PromptPal offers AI-powered prompt optimization through two methods:
- Built-in AI: Free users get a limited number of AI optimization trials. Pro users have broader access to built-in AI. When using built-in AI, your prompt text is forwarded through our server (hosted on Cloudflare) to third-party AI providers (e.g., Google Gemini, Groq, Zhipu GLM). We do not store, log, or use your prompt content for training or any purpose beyond delivering the optimization result.
- Your own API key (BYOK): PromptPal acts solely as a software interface. You can configure your own API key from supported AI providers (e.g., OpenAI, Anthropic, Google, DeepSeek). Your prompts and API key are sent directly from your browser to the AI provider you select. We never see, store, or relay this data. Each provider’s privacy policy applies to data they receive.
For reliability monitoring of the built-in AI feature, our server logs aggregated usage statistics (success/failure rate, which model was used). No prompt content is ever logged. BYOK requests go directly to your provider and do not pass through our server.
6. License Verification
For Pro users, the extension contacts our server (hosted on Cloudflare) to verify your license status when needed. This request contains only your email address — which is immediately hashed (SHA-256) on arrival; only the irreversible hash is stored, and the plaintext email is never persisted or written to logs. No other data is sent. The extension works offline using a cached license status.
7. Data Retention
- Local data: Persists until you uninstall the extension or clear browser data. We have no access to it.
- License records: Retained indefinitely so you can restore your Pro license at any time.
- Email hash (not plaintext): Only the irreversible SHA-256 hash is retained with your license record for recovery purposes. Plaintext email is never stored. You can request deletion by contacting us.
- Feedback data: Retained for as long as needed to address your submission. You can request deletion at any time.
- Usage statistics: Pseudonymous events are retained by Google Analytics for at most 2 months, then automatically deleted.
8. Your Rights
You can:
- Export all your data at any time using the built-in export feature.
- Delete all local data by uninstalling the extension.
- Request deletion of your license record, email, or feedback data from our server by contacting us.
- Disable usage statistics at any time in Settings (see Section 10).
9. Children’s Privacy
PromptPal is not directed at children under 13. We do not knowingly collect data from children.
10. Analytics
We use Google Analytics (Measurement Protocol) to collect pseudonymous, non-identifying usage events, such as how often the side panel is opened or a prompt is inserted. This data includes a random device-level ID and the approximate region (country/city) that Google derives from your IP address, but never your prompt content, template text, email address, or API keys. You can disable these statistics at any time in Settings → Usage Statistics. These events are processed by Google under the Google Analytics Terms of Service; see also Google’s Privacy Policy.
11. Changes
We may update this policy from time to time. Material changes will be communicated via the extension or this page.
12. Contact
For privacy questions or data deletion requests, please use the feedback feature built into PromptPal, contact us through the extension’s settings page, or email [email protected].