← Back to Home
Privacy Policy for ChatDataMask
Last Updated: August 2026
At ChatDataMask, we are fully committed to protecting your privacy and ensuring strict data compliance under the European Union’s General Data Protection Regulation (GDPR), the EU AI Act, and other international data protection frameworks (including RGPD in Spain/France and AVG in the Netherlands).
This Privacy Policy describes how our Google Chrome Extension operates and outlines our strict policy regarding user data collection.
1. 100% ZERO-TRUST ARCHITECTURE (No Data Collection)
ChatDataMask operates under a strict "Zero-Trust" and "Zero-Data Retention" model.
- Local Processing Only: All data masking, text anonymization, cryptographic tagging, and text restoration happen locally on your device inside the Chrome Extension Side Panel.
- No Server Storage: We do not own, operate, or maintain any external database or servers that store user text, logs, or history.
- No Data Transmissions: Your Personally Identifiable Information (PII), confidential documents, financial data, and credentials never leave your browser interface.
2. TYPES OF DATA PROCESSED LOCALLY
To provide local anonymization services, the extension temporarily handles the following data types strictly in your browser's local memory (RAM) during your active session:
- Personal Identifiers: Names, locations, National ID numbers (e.g., PESEL, NIP, Passport numbers).
- Contact Information: Email addresses, usernames, and telephone numbers (validated locally via 'libphonenumber-js').
- Financial Credentials: Credit card details, IBAN, and SWIFT/BIC bank account codes.
- Network Logs: IP addresses and URLs.
- Artificial Intelligence Prompts: Any text you prepare for generative AI platforms (such as ChatGPT, Claude AI, Google Gemini, and Microsoft Copilot).
Note: All data mentioned above is instantly wiped clean from the session memory if you clear the screen, trigger a downward cascading auto-wipe, or close the browser tab.
3. THIRD-PARTY SERVICES AND AI TRAINING
- No Data Brokerage: We do not sell, rent, lease, or share your data with any third parties.
- No AI Training Use: Because your original PII is replaced with cryptographic tags before you send your prompts to AI providers (like OpenAI or Anthropic), these companies never see your real sensitive data. Therefore, your private data cannot be leaked through public AI training loops.
4. COMPLIANCE INDICATION (GDPR, RGPD, AVG)
By using this extension, you are actively exercising your right to data minimization and protection under:
- EU GDPR / Regulation (EU) 2016/679
- Ley Orgánica de Protección de Datos y Garantía de Derechos Digitales (LOPDGDD / RGPD - Spain)
- Loi Informatique et Libertés (RGPD - France)
- Algemene Verordening Gegevensbescherming (AVG - Netherlands)
- The EU AI Act
5. CONTACT INFORMATION
For any questions regarding this Privacy Policy or the extension’s architecture, you may contact the Publisher directly via the contact information provided in the Chrome Web Store Developer Dashboard.