Privacy Policy
Effective date: April 17, 2026
FinePrint ("we", "us", "our") is a browser extension that helps you understand the legal documents you encounter online. This policy explains what data we collect, why, and how we protect it.
1. What We Collect
Account information. When you create a FinePrint account, we collect your email address and a hashed password. We never see or store your plaintext password.
Page text for analysis. When FinePrint detects a legal document on a page you visit, it sends the text of that document to our server for AI analysis. We do not send any other browsing data, page content, or URLs that are not legal documents.
Analysis history & page URLs. When FinePrint analyzes a legal document, we store the URL of that specific page alongside the AI-generated summary and flagged clauses so you can review them later. We only record the URLs of pages where a legal document was actively analyzed — we do not record your general browsing history.
Usage metrics. We store aggregate counts locally in your browser (e.g., number of policies scanned, cookies rejected) via chrome.storage. These counts are never sent to our servers.
In-extension interactions. We track user-initiated actions within the extension (e.g., toggling auto opt-out, clicking Upgrade) solely to provide and improve core features.
2. What We Do NOT Collect
We do not track your general browsing history. We only store the URL of a page when you actively use FinePrint to analyze a legal document on that page.
We do not read, collect, or transmit any personal data from the pages you visit (passwords, form inputs, emails, etc.).
We do not inject ads, trackers, or third-party analytics scripts.
We do not sell, rent, or share your data with third parties for advertising purposes.
3. How We Use Your Data
AI analysis: Document text is sent to OpenAI's API (GPT-4o-mini) to generate a plain-English summary and flag concerning clauses. OpenAI processes the text under their Enterprise Privacy policy and does not use API inputs for model training.
Account management: Your email is used for authentication, password resets, and verification codes.
Product improvement: We may review aggregate, anonymized statistics to improve the product.
4. Third-Party Services
Supabase — authentication and database, hosted in the US.
OpenAI — AI analysis, processes document text under API terms.
Stripe — payments for Pro plan only; we never see your full card number.
5. Data Storage and Security
Your data is stored in a Supabase-managed PostgreSQL database with row-level security (RLS) enabled — each user can only access their own data. All data is encrypted in transit (TLS) and at rest.
6. Data Retention
Your analysis history is retained as long as your account exists. You may delete your account at any time by contacting fineprintsupport@gmail.com, and all associated data will be permanently deleted within 30 days.
7. Cookie Banner Auto-Rejection
FinePrint can automatically click "Reject All" on cookie consent banners. This feature runs entirely in your browser — no data is sent to our servers.
8. Children's Privacy
FinePrint is not intended for children under 13. We do not knowingly collect data from children.
9. Your Rights
Depending on your jurisdiction (GDPR, CCPA, etc.), you may have the right to access, correct, export, or delete your personal data. Contact fineprintsupport@gmail.com and we will respond within 30 days.
10. Contact
Questions? Email us at fineprintsupport@gmail.com.