Introduction
AI Autocomplete ("we", "our", or "the extension") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our Chrome browser extension.
Data Sharing
Third-Party Services
OpenRouter AI:
- We send your text data to OpenRouter ONLY when you trigger autocomplete
- OpenRouter processes the text according to their privacy policy
- We do not control how OpenRouter handles data once received
- Review OpenRouter's privacy policy at: https://openrouter.ai/privacy
ExtensionPay (Currently Disabled):
- Payment integration is currently disabled - all features are free
- If we enable premium features in the future, ExtensionPay would handle payment processing
- We would not store credit card information
- Payment data would be processed according to ExtensionPay's privacy policy
We Never:
- Sell your data to third parties
- Share your data for advertising purposes
- Store your typed text permanently
- Access your browsing history beyond the current tab
Data Security
We implement security measures including:
- API Key Encryption: AES-256-GCM encryption with PBKDF2 key derivation (100,000 iterations)
- HTTPS-Only Communication: All API requests use secure HTTPS connections
- Content Security Policy: Prevents XSS attacks and code injection
- No Remote Code Execution: All extension code is bundled and static - we never fetch or execute remote JavaScript
- Sensitive Field Exclusion: Password fields and credit card inputs are automatically excluded from detection
- Minimal Permissions: Conservative mode by default requires no special permissions
- User Control: Granular permission requests with clear explanations
Your Rights
You Can:
- Access Your Data: Export all stored settings via the extension
- Delete Your Data: Clear all data through extension settings or by uninstalling
- Opt-Out: Disable enhanced detection (keyboard buffer) at any time
- Control Collection: Text is only processed when you explicitly trigger it
- Revoke Consent: Uninstall the extension to stop all data processing
Data Deletion:
- All local data is deleted when you uninstall the extension
- No data is retained on our servers (we don't have servers)
- API providers may retain data according to their policies
Children's Privacy
This extension is not intended for users under 13 years of age. We do not knowingly collect information from children under 13.
International Users
This extension is available globally. By using it, you consent to the processing of your information in the United States and other countries where OpenRouter operates.
Chrome Web Store Compliance
This extension complies with the Chrome Web Store User Data Policy, including the Limited Use requirements. We only use the minimum permissions necessary for functionality.
Permissions Used:
storage: Save your preferences and settings (encrypted for sensitive data)
scripting: Inject autocomplete functionality into web pages
tabs: Manage extension activation across tabs and show status badge
clipboardWrite: Copy completions to clipboard as insertion fallback method
webNavigation (optional): Auto-inject on page loads (balanced/aggressive modes only)
https://openrouter.ai/*: Communicate with AI service for completions
https://extensionpay.com/*: Payment processing (currently disabled)
https://*/* (optional): Allow injection on all HTTPS sites (balanced/aggressive modes only)
http://localhost/* (optional): Support local development environments
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by:
- Updating the "Last Updated" date
- Showing a notification in the extension
- Requiring re-consent for significant changes
Consent
By installing and using AI Autocomplete, you consent to this Privacy Policy and agree to its terms.
Additional Disclosures
Fallback Detection Mode
When enabled, the fallback detection mode uses a keyboard buffer to capture text input on websites where standard detection fails. This feature:
- Is OFF by default
- Requires explicit opt-in with clear warning
- Shows a red indicator when active
- Clears buffer on navigation and after 5 minutes of inactivity
- Can be disabled at any time in Privacy settings
Data Retention
- Local Storage: Settings retained until you delete them
- Session Data: Cleared when browser closes
- Text Buffer: Cleared immediately after use or within 5 minutes
- API Logs: Subject to OpenRouter's retention policy
GDPR Compliance (EU Users)
- Legal Basis: Consent (you explicitly trigger data processing)
- Data Controller: You, the user
- Data Processor: OpenRouter AI
- Right to Erasure: Uninstall extension or clear storage
- Data Portability: Export feature available in settings
CCPA Compliance (California Users)
- We do not sell personal information
- You have the right to opt-out of data collection (via settings)
- You have the right to request deletion (via uninstall)
- No discrimination for exercising privacy rights
Remember: You are in control. The extension only processes text when you explicitly request it, and you can adjust privacy settings or uninstall at any time.