Privacy Policy

Privacy isn't a promise here.
It's the architecture.

Last updated 21 July 2026 · Applies to SubChat v5.2.0

SubChat has no chat backend and no analytics. Questions and user-approved drafting context go directly to the AI provider you choose. Web Mind is optional, off by default, encrypted on this device, and controlled from the dashboard.

At a glance

01 What SubChat sends, and where

When you highlight text and ask a follow-up, your question — plus any context you chose to include — goes directly to the AI provider. It never passes through a server operated by SubChat, because none exists.

What a request can contain: the text you highlighted and your typed question. With a wider context mode (Pro), it can also include nearby turns or the whole of the Claude conversation you're reading — fetched from your own Claude account — or the visible text of the current page. Context is only ever part of the prompt you send, and only to the provider answering it.

If you explicitly attach files, they are sent only to the answering AI: extractable text, code, PDF, and DOCX content is included in the request; binary or scanned files supported by Claude can upload to your own Claude account. If you enable web search, the answering provider runs its own search tool. Neither files nor search activity pass through a SubChat server.

If Web Mind supplies context, SubChat first retrieves a bounded, source-labelled set of relevant memories or local document excerpts. That context is sent only after you explicitly ask a question or choose Draft, Improve, Shorten, or Research. Ambient observation and ordinary background consolidation do not trigger an AI request. A separate off-by-default AI-assisted consolidation control changes this: only after explicit consent, an idle maintenance pass may send a bounded set of local episode summaries to your selected AI provider to propose durable memories. Returned candidates are filtered into the reviewable Inbox with provenance, not silently treated as direct facts.

When a user-triggered form suggestion references a selected public software repository, SubChat may retrieve public metadata from GitHub, npm, Visual Studio Marketplace, and a Chrome Web Store metric endpoint provided by Shields.io, such as stars, forks, contributors, release downloads, package downloads, extension installs, and current users. Those lookups use only public repository, package, or extension identifiers—not Web Mind records or unrelated form values.

On pages where SubChat is present but Web Mind is off and you do not invoke the widget, it reads or sends nothing for personalization. When Web Mind is enabled, only the sensors shown in Data controls run, and their output remains local.

02 What's stored on your device

Everything SubChat keeps lives in your browser profile. Web Mind records use extension-origin IndexedDB with record-level AES-256-GCM encryption. Store-specific keys derive from a random device key in the same browser profile; this protects database records at rest but does not replace operating-system or browser-profile security.

Web Mind capture levels: Off remembers nothing new; Manual records explicit Remember/source actions; Assisted learns durable context from SubChat side-chats; Ambient also learns from supported visible AI conversations; Full Sentinel can additionally process reading activity, coarse navigation, and text you send or publish. Assisted, Ambient, and Full Sentinel are Pro features.

Local identity inference: authored statements and labelled, non-sensitive form values are converted into short typed claims such as Name, Education, Role, or Goal instead of being saved as chat fragments. SubChat can connect matching claims across documents, forms, and conversations, but it only confirms an inferred identity claim when at least two independent local sources agree and no exclusive identity claim conflicts. One-source hypotheses are not saved as confirmed memories. This deterministic process runs on-device and never triggers an AI-provider request.

Utility filtering and automatic curation: before authored web text is persisted, an on-device gate rejects short, casual, repetitive, or otherwise low-information chatter unless it contains a durable claim, decision, project detail, structured form value, or reference. Local maintenance applies the same gate to older events. By default, deterministic curation can promote high-confidence or reinforced candidates, expire stale low-confidence candidates, and archive low-quality records. Changes are recorded in the local audit ledger, remain reviewable/reversible, and automatic curation can be disabled.

Hard exclusions: password, payment, OTP, government-identity fields, incognito pages, sensitive hosts, and user-blocked sites are excluded. Secrets and high-entropy tokens are redacted before persistence. Observation can be paused at any time.

Backups: Persona Passport export files use passphrase-wrapped AES-256-GCM. Uninstalling removes local extension data, so export a Passport first if you want a backup. Cloud sync is not included in v5.2.0.

03 Data handling summary

A precise view of what is handled and where it goes. This mirrors the disclosures on the Chrome Web Store listing.

DataStoredSent to developerSent elsewhere
PreferencesYour browserNoNo
Free-plan usage countYour browserNoNo
Saved history (Pro)Your browserNoNo
Web Mind memories & signalsEncrypted in your browserNoOnly bounded context to your chosen AI after your action
Vault documents & imported chatsEncrypted in your browserNoRelevant excerpts only after your question/draft action
License keyYour browserNoTo Dodo Payments, to validate
API key (optional)Your browserNoOnly to the provider it belongs to
Your question & contextNot stored by usNoTo the AI provider you chose
Card / payment detailsNever handled by usNoEntered on Dodo's checkout only
Analytics / telemetryNot collectedNo

04 Payments & license keys

Pro is sold through Dodo Payments, our merchant of record. Checkout happens on Dodo's site — they process your payment and email you a license key. We never see your card details.

When you activate the key, the extension sends it (with a short device label, e.g. your platform name) to dodopayments.com to confirm it's genuine, and re-checks it periodically. Separate user-triggered public repository research may contact the public software/catalog services described above. Dodo's handling of payment data is governed by Dodo's privacy policy. You can cancel anytime from the Dodo customer portal.

05 Analytics & tracking

None. No analytics, no tracking pixels, no fingerprinting, not even anonymous usage pings. There is nothing to opt out of, because nothing is collected.

06 Permissions, and why each exists

07 What SubChat does not do

08 Children

SubChat is not directed at children under 13 and does not knowingly collect information from them.

09 Changes

If this policy changes, the “last updated” date and the version note above change with it. Material changes will be reflected here before a new version that relies on them is published.

10 Contact

Questions about this policy? Reach the developer through the Chrome Web Store listing.