SafePaste Enterprise Privacy Policy
SafePaste Enterprise is a browser extension published by LogicGrid AI, LLC. This policy explains what the SafePaste extension processes locally, what is sent for license validation, and what is never transmitted.
Privacy summary
SafePaste processes clipboard paste-event data and limited page-context data locally inside your browser. No clipboard content, pasted text, detected sensitive value, local vault data, or browsing activity is transmitted to LogicGrid AI servers or any third party.
The only outbound request from the SafePaste extension is a license validation request to
api.safepaste.app. That request contains your license key and a hashed device identifier used to enforce license limits. It does not include clipboard content, pasted text, browsing content, vault data, or detected sensitive values.
Chrome Web Store Limited Use Disclosure
SafePaste uses clipboard, paste-event, webpage, and form-field access only to provide its user-facing security features: detecting, redacting, blocking, and locally revealing sensitive data before pasted content reaches a webpage.
SafePaste does not sell, transfer, or use clipboard content, pasted text, detected sensitive values, browsing activity, or local vault data for advertising, analytics, profiling, creditworthiness, or any unrelated purpose.
No clipboard content, pasted text, detected sensitive value, local vault data, or browsing activity is transmitted to LogicGrid AI servers.
1. Who we are
SafePaste Enterprise is a browser extension published by LogicGrid AI, LLC, a registered limited liability company. You can contact us at [email protected].
2. Scope of this policy
This Privacy Policy applies only to the SafePaste Enterprise browser extension submitted to browser extension stores, including the Chrome Web Store.
This policy does not describe separate LogicGrid AI desktop apps, transcription tools, or other products that are not part of the SafePaste browser extension submission.
3. What data SafePaste processes
SafePaste is designed to process sensitive content locally whenever possible. The following categories explain what is processed and where it is stored.
Clipboard content — local only
When you paste text into a webpage, SafePaste reads the paste event to detect and redact sensitive patterns. Clipboard text is processed locally inside the extension. It is not sent to LogicGrid AI servers or any third party.
Vault data — local only
Redacted values are stored in a RAM-only vault that exists only in your browser tab’s memory. The vault is destroyed when the tab is closed. Vault data is never written to disk and never transmitted.
Page context and destination checks — local only
SafePaste may inspect the current page context, including the destination page URL, locally to apply destination-based protection rules such as Exfiltration Shield. URLs and browsing activity are not transmitted to LogicGrid AI servers.
License key
When you activate Pro, your license key is sent to our Cloudflare Worker at api.safepaste.app for verification. The license key is also stored locally in chrome.storage.local so the extension can remember activation status.
Hashed device identifier
SafePaste uses a one-way SHA-256 hashed device identifier to enforce per-device license limits. Depending on the installed version, this identifier may be derived from limited browser/device attributes such as browser language, screen resolution, timezone, and CPU core count, or from a locally generated device ID. Raw underlying values are not stored by LogicGrid AI.
Extension settings — local only
Toggle preferences, shield settings, and custom NDA keywords are stored locally in chrome.storage.local. They are not transmitted to LogicGrid AI servers.
Audit log — local only
Exfiltration Shield events may be logged locally in chrome.storage.local with a rolling limit of 500 entries. These local audit entries are not transmitted to LogicGrid AI servers.
4. What data we do not collect
- We do not transmit or remotely collect clipboard contents.
- We do not transmit or remotely collect pasted text.
- We do not transmit or remotely collect the actual sensitive values that SafePaste redacts.
- We do not collect browsing history.
- We do not sell data to any third party.
- We do not display advertisements.
- We do not use tracking pixels.
- We do not use analytics services such as Google Analytics, Mixpanel, or similar tools inside the extension.
5. License verification
When you click Unlock Pro and enter a license key, SafePaste sends a request to api.safepaste.app/license, a Cloudflare Worker operated by LogicGrid AI, LLC.
This request may contain:
- Your license key or license-key hash.
- A one-way hashed device identifier.
- Extension version and plan/status information needed to validate activation.
For license enforcement, SafePaste may store a license activation record in Cloudflare KV containing a license-key hash, hashed device identifier, activation timestamp, plan status, and expiration status. License records do not include clipboard content, pasted text, vault data, browsing activity, or detected sensitive values.
Verification responses may be cached for up to 24 hours to support offline or intermittent connectivity.
6. Third-party services
Stripe
Stripe processes payments and subscription management. LogicGrid AI does not store full payment card numbers. Stripe’s privacy policy applies to purchases made through Stripe.
Cloudflare Workers
Cloudflare Workers hosts the SafePaste license verification endpoint at api.safepaste.app. Cloudflare may process request metadata such as IP address and timestamp according to its standard service practices. Clipboard content, pasted text, vault data, browsing activity, and detected sensitive values are not included in license validation requests.
7. Data retention
- Vault data: Destroyed when the browser tab is closed. Zero server-side retention.
- Clipboard and pasted text: Processed locally during paste/redaction and not retained by LogicGrid AI.
- Extension settings and local audit log: Stored in
chrome.storage.localuntil you uninstall the extension, reset settings, or clear local extension data. - License activation records: May be stored in Cloudflare KV for up to 1 year to enforce license limits, renewals, refunds, abuse prevention, and device activation management.
8. Your controls and rights
You may at any time:
- Reset stats and clear your local audit log using the extension controls.
- Clear your RAM-only vault using the extension controls.
- Disable any SafePaste shield or toggle in the extension popup.
- Request deletion of license activation records by emailing [email protected] with your license key or purchase email.
- Uninstall the extension, which removes extension-local data stored by SafePaste in your browser.
9. Children’s privacy
SafePaste Enterprise is intended for professional and enterprise use. We do not knowingly collect information from users under the age of 18.
10. Changes to this policy
We may update this policy when we add, remove, or change SafePaste features. The “Last updated” date at the top of this page will reflect changes. Continued use of SafePaste after a policy update means you accept the updated policy.
11. Limitations
SafePaste Enterprise uses pattern-based detection to identify and redact sensitive data. It is designed to reduce accidental data exposure, but it cannot guarantee detection of every sensitive value in every format, website, or browser context.
- Format dependency: Detection relies on recognizable data formats. Non-standard, abbreviated, custom, or intentionally obfuscated formats may not be detected.
- No guarantee of completeness: SafePaste significantly reduces common accidental exposure risk, but no DLP tool can guarantee 100% interception in all contexts.
- Not a compliance guarantee: SafePaste is a supplementary DLP tool. It does not replace your organization’s security policy, compliance program, legal review, or obligations under HIPAA, GDPR, PCI-DSS, NDPR, or other applicable regulations.
- AI tool dependency: SafePaste intercepts paste events in the browser before content reaches a webpage. It does not control what happens after a user manually submits content to an AI provider or third-party service.
- Browser limitations: SafePaste operates as a browser extension and is subject to browser security policies. Certain iframe-heavy, sandboxed, or highly customized applications may limit detection capability.
- Custom patterns: Enterprise customers requiring detection of proprietary or organization-specific data formats can contact [email protected] to discuss custom pattern options.
Users remain responsible for reviewing content before submitting it to third-party services and for following applicable organizational policies and legal requirements.
12. Contact
Questions about this policy or SafePaste data handling?
Email: [email protected]
Website: logicgrid.ai