Skip to content
devfiller

DevFiller Privacy Policy

Last updated: 29 September 2026

DevFiller is a Chrome extension that fills website forms with generated, fictional test data. This policy explains what data DevFiller handles, where it goes, and what it never does.

Summary

  • DevFiller has no server. The developer does not collect, receive, or store any of your data.
  • Settings stay in your browser's local extension storage and are never synced.
  • Values you type into forms are never sent anywhere.
  • Only if you turn on the optional AI feature and add your own API key, descriptions of form fields (not their values) are sent to the AI provider you picked (Groq or Google Gemini).

Data stored on your device

DataWhereHow long
Generator settings, custom field values, field exclusionschrome.storage.local (this browser only)Until you change them or uninstall DevFiller
AI provider, model, and API key (if you add one)chrome.storage.local, only readable by the extension's own pages. It is not encrypted.Until you choose Remove saved key or uninstall DevFiller
AI suggestionschrome.storage.session (memory, cleared when the browser closes)Your chosen cache time (1–60 minutes), or until you clear them
Undo history for the last fillThe page's memoryUntil the page is closed or reloaded

None of this data is sent to the developer.

Data sent to third parties (optional AI only)

The AI feature is off by default. When you turn it on and save your own API key, DevFiller sends a request to the provider you chose:

Each request contains:

  • Field metadata from forms DevFiller could not fill with local data: visible labels and accessibility names, input names and IDs, placeholders, input types, and constraints such as length limits or allowed options.
  • The language you picked for generated data.
  • Your API key, which the provider uses to authenticate you.

Each request never contains:

  • Values typed into or already in form fields
  • Page URLs or full page HTML
  • Cookies, browsing history, or other tabs

Website authors write the field labels and placeholders, so they may mention something specific to that website. These requests go directly from your browser to the provider under your own account, and that provider's terms and privacy policy apply to them.

Website access

  • When you click the toolbar icon, the side panel, or the context menu, DevFiller reads and fills the form fields on the active tab only (activeTab, scripting).
  • If you turn on automatic preparation for AI, DevFiller asks for permission to access websites. With that permission, a small script detects forms as they load so suggestions are ready sooner. You can remove this permission at any time in Chrome's extension settings.
  • DevFiller never submits forms. You always submit them yourself.

What DevFiller does not do

  • No analytics, tracking, advertising, or fingerprinting
  • No selling or transferring user data, and no use of it for credit, lending, or any purpose unrelated to filling forms
  • No remote code. All code ships inside the extension package.

Your control

  • Turn off AI or choose Remove saved key in Options to stop all third-party requests and clear cached suggestions.
  • Uninstall DevFiller to delete everything it stored.

Changes and contact

If this policy changes, the updated version will be published at this address with a new date. For questions, open an issue at https://github.com/gouderhaithem/form-filler/issues.