Fillsnap에 대한 개인정보처리방침
- Introduction
Fillsnap ("we," "us," or "our") is a browser extension that uses artificial intelligence to help you fill out web forms quickly and accurately. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our Chrome extension, website, and related services (collectively, the "Service").
We are committed to protecting your privacy. Fillsnap follows a local-first architecture, meaning your personal profile data is primarily stored on your own device. We only process the minimum amount of information necessary to provide our AI form-filling functionality.
By installing or using Fillsnap, you agree to the practices described in this Privacy Policy. If you do not agree, please uninstall the extension and discontinue use of the Service.
- Data We Collect
Profile Data. When you create a profile in Fillsnap, you provide personal information such as your name, email address, phone number, physical address, date of birth, and any other fields you choose to save. This data is stored locally in your browser's storage and is under your control. You can edit or delete your profiles at any time.
Form Structure Data. When you activate Fillsnap on a web page, we analyze the structure of the form (field names, labels, input types, placeholders, and available options) to determine how to fill it correctly. This structural metadata is sent to our AI processing service when you explicitly trigger a fill. We do not send the content of fields you have already filled in, nor do we capture passwords, consent checkbox choices, or authentication tokens.
Account Data. If you create a Fillsnap account, we collect your email address and authentication credentials. Account data is used to manage your subscription, enable cross-device synchronization, and communicate important service updates.
Usage & Analytics Data. We collect anonymized usage metrics such as the number of forms filled, feature usage patterns, and error rates. This data does not contain personally identifiable information and is used solely to improve the Service.
- How We Use Your Data
Form Filling: When you explicitly trigger a fill, your profile data is matched to form fields using AI. By default, the form structure and the relevant profile values needed to complete the fill request are sent to our AI service for that single request. If you enable Enhanced Privacy Mode, your actual profile values stay on your device and only the form structure plus your profile field keys are sent.
Synchronization: If you opt in to cross-device sync, your encrypted profile data is transmitted to our servers so it can be accessed from your other devices.
Analytics: Anonymized usage data helps us understand how users interact with Fillsnap so we can improve form detection accuracy, add new features, and fix bugs.
Account Management: Your email address is used for authentication, subscription management, password resets, and critical service communications.
Abuse Prevention: We monitor usage patterns to detect and prevent abuse of our AI processing quota, such as automated or bot-driven requests. - Data Storage & Security
Fillsnap is designed with a local-first architecture. Your profile is stored in your browser's local storage. It is not persisted on our servers unless you explicitly enable cross-device synchronization. When you trigger a fill, the profile values needed for that single request are sent to our server (and on to our AI provider) so the fields can be mapped; see "AI Processing" below for the full flow and the Enhanced Privacy Mode that sends only field keys instead.
When synchronization is enabled, your profile data is encrypted in transit using TLS 1.2+ and encrypted at rest on our servers. We use industry-standard security practices including access controls, regular security audits, and secure infrastructure hosting.
We do not sell, rent, trade, or otherwise share your personal data with third parties for their marketing purposes. We will never monetize your personal information.
In the event of a data breach that affects your personal information, we will notify you and the relevant supervisory authorities within 72 hours as required by applicable law.
- AI Processing
Fillsnap uses AI language models to intelligently map your profile data to web form fields. When you activate the form filler, the following process occurs:
The extension extracts the structure of the form, including field names, labels, types, and available options.
By default, this structural metadata, along with the relevant profile field keys and profile values, is sent to our server for that single fill request.
If you enable Enhanced Privacy Mode, your actual profile values are not sent. In that mode, our server receives only the form structure plus your profile field keys (such as "first_name" or "email") so the mapping can be completed without exposing your values.
Our server forwards the mapping request to our AI provider (currently OpenRouter) to determine the best field-to-profile mapping for the request you initiated.
The mapping result is returned to the extension, which fills the form locally using your profile data stored on your device.
By default, the AI request may include the form structure and the profile values needed to complete the fill you explicitly triggered. If you enable Enhanced Privacy Mode, your actual profile values stay on your device and only the form structure plus profile field keys are transmitted.
Fillsnap's use of user data complies with the Chrome Web Store User Data Policy, including the Limited Use requirements. We use page and profile data only to provide the form-filling functionality you requested, and we do not sell that data or use it for advertising.
- Google Sign-In and Google User Data
Fillsnap offers "Sign in with Google" as an optional way to create an account and log in. When you choose this option, we authenticate you through Google's OAuth 2.0 service using the OpenID Connect openid, email, and profile scopes. We do not request access to your Gmail, Google Drive, Calendar, Contacts, or any other Google service.
Google user data we receive. When you sign in with Google, we receive the following information from your Google Account: your Google Account ID, your email address and email verification status, your name, your locale, and your profile picture URL.
How we use Google user data. We use this information solely to (a) create and authenticate your Fillsnap account, (b) link your session to your Fillsnap profile across devices, and (c) display your name and avatar inside the extension and account settings. We do not use Google user data for advertising, profiling, or any purpose unrelated to providing the Fillsnap service you requested.
Storage and retention. Your Google Account ID and email are stored alongside your Fillsnap account record so we can recognize you on subsequent sign-ins. You can delete this data at any time by deleting your Fillsnap account (see Section 9 — Data Retention) or by contacting us at hello@fillsnap.com.
Sharing and transfer. We do not sell, rent, trade, or transfer Google user data to third parties. We do not use Google user data to serve advertisements. We do not use Google user data to develop, improve, or train generalized or non-personalized AI or machine learning models. Google user data is only transferred to subprocessors strictly to the extent required to operate the Fillsnap service (for example, our authentication infrastructure provider), and only under contractual confidentiality and security obligations.
Limited Use compliance. Fillsnap's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Revoking access. You can revoke Fillsnap's access to your Google Account at any time by visiting myaccount.google.com/permissions. Revoking access does not delete the Fillsnap account associated with that Google identity; to delete the account itself, contact us at hello@fillsnap.com.
- Third-Party Services
We use the following third-party services to operate Fillsnap. Each service receives only the minimum data necessary to perform its function:
OpenRouter. AI model routing service used for form field mapping. Receives the form structure and, depending on your privacy settings, either the relevant profile values for the fill request or only your profile field keys. Subject to OpenRouter's Privacy Policy.
Polar. Payment processing platform for subscription management. Receives your email address and payment information. We do not store your credit card details. Subject to Polar's Privacy Policy.
Resend. Email delivery service used for transactional emails such as account verification, password resets, and important service notices. Receives your email address only. Subject to Resend's Privacy Policy.
8. Your Rights
Depending on your jurisdiction, you may have certain rights regarding your personal data. Fillsnap respects and supports the following rights under the General Data Protection Regulation (GDPR) and the Turkish Personal Data Protection Law (KVKK):
Right of Access: You may request a copy of the personal data we hold about you.
Right to Rectification: You may request correction of inaccurate or incomplete personal data.
Right to Erasure: You may request deletion of your personal data. You can delete your local profile data at any time through the extension. To delete server-side account data, contact us or use the account deletion feature.
Right to Data Portability: You may request your data in a structured, machine-readable format. Fillsnap's profile export feature allows you to download your profiles at any time.
Right to Object: You may object to the processing of your personal data for certain purposes, including analytics and marketing communications.
Right to Restrict Processing: You may request that we limit the processing of your personal data under certain circumstances.
To exercise any of these rights, please contact us at hello@fillsnap.com. We will respond to your request within 30 days.
- Data Retention
We retain your data only for as long as necessary to provide the Service and fulfill the purposes described in this Privacy Policy:
Local Profile Data: Stored on your device indefinitely until you delete it or uninstall the extension.
Synced Profile Data: Retained on our servers while your account is active. Deleted within 30 days of account deletion.
Account Data: Retained while your account is active and for up to 90 days after deletion to comply with legal obligations and resolve disputes.
Usage Analytics: Anonymized analytics data is retained for up to 24 months.
AI Processing Logs: Form structure metadata sent for AI processing is not stored permanently. Transient processing logs are deleted within 7 days.
10. Children's Privacy
Fillsnap is not intended for use by children. We do not knowingly collect personal information from anyone under the age of 13, or under the age of 16 in the European Economic Area (EEA).
If we become aware that we have inadvertently collected personal data from a child under the applicable minimum age, we will take steps to delete that information promptly. If you believe a child has provided us with personal data, please contact us at hello@fillsnap.com.
- Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. When we make material changes, we will:
Update the "Last updated" date at the top of this page.
Notify you through the extension or by email if the changes are significant.
Provide a summary of key changes where practicable.
Your continued use of Fillsnap after a policy update constitutes acceptance of the revised Privacy Policy. We encourage you to review this page periodically.
- Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or your personal data, please reach out to us at hello@fillsnap.com. We aim to respond to all privacy-related inquiries within 30 days.