Skip to content

Chrome Extension

AgentID Browser Protection Privacy Policy

This Privacy Policy applies specifically to the AgentID Browser Protection extension for supported AI chat surfaces such as ChatGPT, Gemini, and Copilot. It supplements the main AgentID Privacy Policy.

Last updated: June 14, 2026

1. What the extension does

The extension intercepts prompt submissions on supported AI chat sites before the prompt is sent. It sends the prompt and related metadata to the AgentID backend for policy evaluation, which can allow the prompt, rewrite it to mask sensitive data, or block it. After an allowed send, the extension can capture the assistant response from the page and log it back to AgentID for audit and analytics.

2. Data we process

The extension may process the following categories of data:

  • Prompt text entered by the user on supported AI chat pages.
  • Captured assistant response text from supported AI chat pages.
  • Policy evaluation metadata such as allow, block, or masking outcomes.
  • Site metadata such as supported host, page path, and provider identifier.
  • Extension configuration values such as backend base URL, system ID, and API key.
  • Limited operational telemetry such as request timing and error status.

3. Why we process this data

We process this data only to provide the extension's user-facing security purpose:

  • Inspect prompts before send.
  • Mask personal or sensitive data before send where policy allows.
  • Block prompts that violate configured security rules.
  • Record prompts and captured responses for audit, security, and analytics.
  • Maintain extension reliability and investigate operational failures.

4. How the data is used

Prompt text and captured response text are transmitted to the AgentID backend only as needed to provide prompt inspection, masking, blocking, logging, and related security functionality. We do not use this data for advertising, cross-site profiling, or unrelated analytics.

5. Limited Use commitment

AgentID uses prompt content and related metadata only to provide and improve the extension's user-facing security functionality, including prompt inspection, sensitive-data masking, policy enforcement, abuse detection, audit logging, and related operational security. AgentID does not use or transfer this data for advertising, profiling, or any purpose unrelated to the extension's single purpose.

AgentID does not allow humans to read prompt or captured response content except with the user's explicit consent for support, when necessary for security investigation, or when required by law. Any transfer of data is limited to what is necessary to provide the extension's functionality or to satisfy legal or security obligations.

6. Local storage in the browser

The extension stores configuration values locally in the browser using Chrome storage. This can include whether the extension is enabled, the configured backend base URL, the system ID, the API key, and recent extension status information such as the last guard result.

7. Sharing and transfers

Data processed by the extension is sent to AgentID infrastructure to provide security and logging functionality. We do not sell prompt content or captured response content. We do not share this data with third parties except as necessary to host and operate the service, to investigate abuse or security incidents, or to comply with law.

8. Retention

Data retention depends on the configuration of the customer workspace and the service retention settings applied to security events and analytics data. Some audit or security records may be retained longer where required for integrity, compliance, or incident investigation.

9. Security

AgentID uses access controls, transport security, encryption measures, and operational monitoring designed to protect prompt and response data processed through the extension.

10. Your choices

Administrators can configure how the extension behaves through AgentID policies. Users can also disable the extension locally or remove it from the browser. If you have rights requests relating to data processed through the service, contact the organization or support channel responsible for your deployment.

11. Changes

We may update this policy as the extension evolves. The date at the top of this page indicates when the policy was last updated.

12. Contact & Data Rights

For privacy or data protection questions relating to AgentID Browser Protection, or to request data modification or deletion, please contact your AgentID support channel, your account representative, or reach out to us directly at privacy@getagentid.com.