Skip to content
devfiller

Privacy and permissions

What is stored, what is sent, and why each permission exists.

DevFiller has no server, no account and no analytics. The full privacy policy is the reference; this page summarizes it.

Where your data lives

DataWhere
Settings, custom fields and exclusionsLocal extension storage in this browser. Never synced.
AI provider, model and API keyLocal extension storage, readable only by DevFiller's own pages. Not encrypted. Sent only to your provider, to authenticate.
AI suggestionsSession memory, cleared on expiry, when you clear the cache, or when the browser closes.
Undo historyThe page's memory, until it reloads.

Remove saved key in Options → AI turns AI off and clears the cache.

What is sent, and only with AI on

Sent to your providerNever sent
Field labels, names, IDs, placeholders, types and limitsValues typed into or already in fields
The data languagePage addresses and page content
Your API keyCookies, history, other tabs

Why each permission exists

PermissionWhy DevFiller needs it
activeTabFill the tab you're looking at, only after you click or use the shortcut.
scriptingRun the fill in that page. Nothing runs until you click, unless you turn on "Prepare ahead of the click".
storageKeep your settings, rules, exclusions and optional API key on your device.
alarmsRemove expired AI suggestions on time.
sidePanelShow the side panel beside the page.
contextMenusAdd Open DevFiller panel to the toolbar icon's right-click menu.
api.groq.com, generativelanguage.googleapis.comSend AI requests to the provider you chose, only with AI on.
All websites (optional)Asked for only when you turn on "Prepare ahead of the click". You can decline, and remove it any time in chrome://extensions.

Something wrong or missing on this page? Open an issue.