Privacy Policy
Privacy Commitment: Agent Wielder is local-first by default. Your prompts, sequences, word lists, and settings are stored on your device and never leave it through the core Extension. Personal data is processed only if you choose to create an account, subscribe, or turn on optional cloud sync — and each of those is disclosed below.
⚠️ Important: Third-Party AI Platforms Collect Data
Separately from anything in this policy, the AI platforms you use (ChatGPT, Claude, Gemini, Midjourney, etc.) collect and process your prompts and conversations according to their own privacy policies and terms of service.
You must read and agree to each platform's privacy policy and terms before using them with Agent Wielder.
1. Introduction
This Privacy Policy describes how Agent Wielder ("we," "our," or "the Extension") handles your information. Agent Wielder is developed and maintained by Ralph Theodori, based in Germany.
By using Agent Wielder, you agree to the practices described in this Privacy Policy.
2. What Stays Local, By Default
Agent Wielder is designed to work entirely on-device unless you opt into an account. By default, the Extension does not transmit:
- Prompt Content: Your prompts, sequences, and instructions are stored in your browser's local storage (Chrome's storage API) and are not sent to our servers
- AI Conversations: Your conversations with AI platforms happen directly between your browser and those platforms — we never see them
- Usage Data: No analytics, telemetry, or behavioral tracking of how you use the Extension
- Browsing History: No tracking of which websites you visit
- Device or Browser Fingerprints: We do not generate or collect canvas/WebGL/font-based device fingerprints
- Location Data: No tracking of your geographic location
- Advertising: No cookies, web beacons, ad trackers, or ad identifiers
This is the state of the Extension the moment you install it, and stays true unless you take one of the explicit actions in Section 3.
3. Optional Account, Subscription & Cloud Sync
Agent Wielder offers an optional account with a paid tier and optional cross-device sync. None of this activates automatically — each is started by a specific action you take (opening account settings, starting checkout, or turning on sync in Settings). The table below is the complete list of what that involves:
| Data | Collected when | Stored where | Purpose |
| Email address | You create an account or start checkout | Supabase (our database provider) | Authentication, account recovery, receipts |
| Authentication session | Signed in | Supabase Auth; session token on-device | Keeping you signed in |
| Subscription / entitlement status, Stripe customer & subscription IDs | You subscribe | Supabase + Stripe | Unlocking paid features, billing |
| Payment card details | Checkout | Stripe only — never reaches our servers | Processing payment |
| Synced configuration (agent/template settings, including any custom agent-phase text you've written in the Studio) | Only if you turn on Cloud Sync in Settings (default: off) | Supabase, keyed to your account | Making your own agent setup available across devices |
Explicitly not collected, even with an account: your AI-platform conversation content (what you send to ChatGPT, Claude, Gemini, etc. — see Section 4), browsing history, page content, device fingerprints, precise location, or advertising identifiers. We do not sell your data or share it for advertising or unrelated third-party purposes. The one exception is the custom agent-phase text noted in the table above: if you write your own instructions into the Agent Studio and turn on Cloud Sync, that text is synced the same as any other agent setting so it's available on your other devices.
If you never open an account or subscription flow, none of this section applies to you — the Extension behaves exactly as described in Section 2.
4. Third-Party AI Platforms and Data Collection
⚠️ CRITICAL INFORMATION: AI Platforms Collect Your Data
The account features above are about our servers. Separately, the AI platforms you automate WILL collect and process your prompts the same way they would if you typed them in yourself.
What Third-Party Platforms Collect
When you use Agent Wielder to automate prompts on AI platforms like ChatGPT, Claude, Gemini, Midjourney, and others:
- Your Prompts: Every prompt you send through Agent Wielder is received and processed by the AI platform
- Your Conversations: The AI platform stores your conversation history according to their policies
- Your Account Information: The AI platform has access to your account details, email, payment information, etc.
- Usage Data: The AI platform may track how you use their service, including through our extension
- Generated Content: The AI platform may use your prompts and conversations to train their models (check each platform's policy)
Your Responsibility
YOU MUST READ AND AGREE TO EACH PLATFORM'S PRIVACY POLICY AND TERMS OF SERVICE:
We Have No Control
Important limitations:
- Separate Services: Agent Wielder is completely independent from these AI platforms
- No Control: We have no control over what data these platforms collect or how they use it
- No Responsibility: We are not responsible for their data practices, privacy policies, or security
- Direct Relationship: Your relationship with these platforms is direct - you must comply with their terms
- Policy Changes: These platforms can change their policies at any time without our knowledge
Browser Policies
Your browser (Chrome, Edge, Brave, etc.) also has its own privacy policies regarding:
- Extension data storage
- Extension permissions
- Browsing data collection
- Sync and backup features
Review your browser's privacy policy for more information.
5. Data Security
- Local Data: Protected by your browser's built-in storage security; you're responsible for securing your device and browser
- Account Data: Transmitted over TLS; payment details are handled entirely by Stripe (PCI-DSS compliant) and never reach our servers
- Backup Recommendation: We recommend backing up important prompts and sequences, since locally-stored data can be cleared by clearing browser storage
6. Data Retention and Deletion
- Local Data: Stays on your device until you delete it — using the Extension's built-in delete functions, clearing browser storage, or uninstalling the Extension
- Account Data: Kept while your account is active. You can permanently delete your account and its associated data at any time from Settings ("Delete Account & Data"), or by emailing us; deletion is applied within 30 days, with backups purged within 90 days, minus anything we're legally required to keep (e.g. billing records)
- Uninstalling the Extension removes all locally-stored Extension data from your device; it does not delete a remote account, which is deleted separately via the option above
7. Children's Privacy
Agent Wielder is not directed at children under the age of 13, and account features require the ability to enter into a payment agreement. We do not knowingly collect information from children.
8. International Users and GDPR Compliance
Agent Wielder is developed in Germany and is designed around data minimization:
- Data Minimization: Core functionality collects nothing; account features collect only what's needed for authentication, billing, and the sync you explicitly enable
- Right to Access: Request a copy of your account data by contacting us below
- Right to Erasure: Delete your account and its data at any time from Settings, or by request
- Right to Portability: Export your locally-stored prompts and sequences using the Extension's export feature
- Sub-processors: Supabase (authentication, database, hosting our account/sync data) and Stripe (payments) — both under data-processing agreements, with safeguards for any international transfer. Separately, Google Fonts serves typefaces to the Extension's pages (see Section 10) and receives your IP address for that request, as it would for any website using it.
9. California Privacy Rights (CCPA)
For California residents:
- Right to Know: Section 3 above is the complete list of personal data we process, and only for users who create an account
- Right to Delete: Delete your account and data at any time from Settings, or by request
- Right to Opt-Out: We do not sell or share personal information; there is nothing to opt out of
- Non-Discrimination: We treat all users equally regardless of their privacy choices
10. Chrome Web Store Permissions
Agent Wielder requests the following browser permissions, each used solely for the Extension's core functionality — never to collect data beyond what this policy describes:
- storage: Save your prompts, sequences, and settings locally on your device
- tabs: Detect which supported AI platform a tab is on, and coordinate multi-tab agent runs you start (e.g. switching to or opening the tab a queued step targets)
- scripting: Inject the Extension's interface and automation into the AI platform tab you're using
- activeTab: Act on the tab you're currently viewing when you invoke the Extension
- contextMenus: Provide right-click actions (like "Save to Agent Wielder Library") on supported AI platform pages
- sidePanel: Power the optional side-panel interface
- Host access: Limited to the specific AI platform domains the Extension supports (ChatGPT, Claude, Gemini, Copilot, Poe, Grok, and a small number of image-generation sites) — never
<all_urls>, and never any other site
Important: These permissions let the Extension function on the pages you use it on. They do not, by themselves, transmit anything to our servers — that only happens through the account features in Section 3.
Google Fonts: Some of the Extension's pages load typefaces from Google Fonts (fonts.googleapis.com / fonts.gstatic.com). This is a standard web font request — it sends your IP address to Google the same way any website using Google Fonts would, and is separate from anything described in Section 3. See Google's privacy policy for how they handle that request.
11. Open Source and Transparency
We aim to keep this policy in sync with what the Extension actually does, and update it whenever that changes.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. Any changes will be posted with a new "Last Updated" date. Continued use of the Extension after changes constitutes acceptance of the updated policy.
Material changes will be communicated through:
- An in-Extension notification
- Updates to this page
- Chrome Web Store listing updates
13. Legal Basis for Processing (GDPR)
- Contract (Art. 6(1)(b)): Account, authentication, and subscription data — necessary to provide the account/paid features you request
- Consent (Art. 6(1)(a)): Optional cloud sync — active only once you turn it on in Settings, and withdrawable at any time by turning it back off
- No Special Categories: We do not process sensitive personal data (health, biometric, etc.)
14. Your Rights
Under GDPR and other privacy laws, you have rights including:
- Right to Information: This Privacy Policy provides full transparency
- Right to Access: Access your locally-stored data through the Extension's interface, or request a copy of your account data below
- Right to Rectification: Edit your local data at any time through the Extension, or your account email via Settings
- Right to Erasure: Delete your local data, and/or your account and its data, at any time
- Right to Object: Turn off cloud sync, cancel your subscription, or stop using the Extension at any time
- Right to Lodge a Complaint: File a complaint with your local data protection authority
16. Supervisory Authority
As Agent Wielder is developed in Germany, the relevant supervisory authority is:
Die Bundesbeauftragte für den Datenschutz und die Informationsfreiheit (BfDI)
Website: https://www.bfdi.bund.de
17. Summary
In Simple Terms - Agent Wielder:
- ✓ Core features (prompts, sequences, settings) stay on your device by default
- ✓ We never see your AI-platform prompts or conversations, account or no account (the one exception: custom agent-phase text you write yourself is synced if you turn on Cloud Sync — Section 3)
- ✓ No analytics, tracking, or ad identifiers, ever
- ✓ An account is entirely optional, and only collects what Section 3 lists
- ✓ You can delete your account and its data at any time
Local by default. An account only if you choose one, and only for what's listed above.
⚠️ But Remember - AI Platforms DO Collect Data:
- ⚠️ ChatGPT, Claude, Gemini, Midjourney, etc. collect your prompts and conversations
- ⚠️ You must read their privacy policies and terms of service
- ⚠️ We have no control over their data practices
- ⚠️ Your data goes directly to those platforms, not through us
Always review the privacy policy of any AI platform you use!
Agent Wielder
Version 1.3.1 (Open Beta)
© 2026 Ralph Theodori. All rights reserved.