PROMPT GUARD BY IRONSTRIDE

Privacy Policy

This policy explains how Prompt Guard handles data when you use the browser extension and IronStride's related legal and support pages.

Effective date: 6 September 2026

1. Controller and contact

IronStride, Netherlands, is the controller for the processing described in this policy. Privacy questions can be sent to info@ironstride.nl.

2. What Prompt Guard does

Prompt Guard is a browser extension for Google Chrome and Microsoft Edge. It improves user-written AI prompts, checks whether an improved prompt preserves the user's intent, performs a local privacy-pattern check, and provides a local prompt library.

3. Data kept locally in the browser

Saved prompts, prompt titles, tags and library preferences are stored in the browser's extension storage. Normal actions such as saving, searching, loading, exporting or importing the local library do not intentionally upload those library records to IronStride.

Before an AI optimization request, Prompt Guard performs a local pattern-based privacy check. This is an additional safeguard and cannot guarantee detection of every type of personal or sensitive information.

4. Data sent when you choose Improve

Prompt text is transmitted only when you explicitly choose Improve my prompt. The current prompt is sent over HTTPS to IronStride's cloud backend and then to OpenAI's API to perform prompt optimization and a separate intent-preservation check.

If you explicitly use Prompt Guard's browser context-menu action on selected webpage text, that selected text can become the prompt to be processed. Prompt Guard does not require or intentionally collect your general browsing history, and it does not send the page URL or page title as part of this workflow.

5. Purposes

6. Service providers and sharing

IronStride does not sell prompt content or use it for advertising. Data is shared only where necessary to provide, secure or operate Prompt Guard.

7. Retention

The current Prompt Guard backend does not use an IronStride application database to persist complete prompt bodies, and the application code does not intentionally write complete prompt bodies to its own logs. A prompt is processed to return the requested result.

OpenAI states that API data is not used to train its models by default. Its standard API abuse-monitoring logs may contain prompts and responses and may be retained for up to 30 days, unless a longer period is legally required or different approved retention controls apply.

Infrastructure providers may retain technical request and security information according to their applicable service terms and retention settings. Local prompt-library data remains in the browser until the user deletes it, clears the extension's storage, or removes the extension.

8. Legal bases for EEA users

Where the GDPR applies, processing needed to provide a user-requested Prompt Guard function is based on performance of the requested service or steps taken at the user's request. Security, abuse prevention and service reliability are based on IronStride's legitimate interests in operating a secure and reliable service. Other processing will use another lawful basis where required by law.

9. Sensitive information

Do not submit or save passwords, authentication secrets, API keys, payment card details, financial account credentials, health data, government identifiers or other highly sensitive information unless Prompt Guard explicitly supports that use in the future and appropriate safeguards are in place.

10. Security

Prompt requests are transmitted over HTTPS. Cloud-provider API credentials are stored server-side and are not embedded in the browser extension. Prompt Guard requests only the browser permissions needed for its disclosed functions.

11. Your choices and rights

You decide when a prompt is sent for AI optimization. You can delete local library records in Prompt Guard and export your local library before removing the extension if you want to keep a copy.

Where applicable, you may have rights to access, correct, erase, restrict or object to processing of personal data and to lodge a complaint with your data-protection authority. Because local library data is stored in your browser and is not normally uploaded to IronStride, IronStride may not have access to that local data. Contact info@ironstride.nl for privacy requests concerning data IronStride does control.

12. International processing

Cloud service providers may process data in countries outside the European Economic Area. Where required, IronStride relies on the contractual and legal transfer safeguards available through those providers.

13. IronStride website pages

IronStride does not add advertising trackers or analytics cookies to these legal and support pages. The hosting provider may still process ordinary technical request information needed to deliver and secure the site.

14. Chrome Web Store Limited Use

IronStride uses data handled by Prompt Guard only to provide or improve the extension's disclosed single purpose and related security and reliability functions. User data is not used or transferred for personalized, retargeted or interest-based advertising.

IronStride does not allow humans to read submitted prompt content except where the user has explicitly consented for support, where access is necessary for security or abuse investigation, or where required by law. Transfers to service providers are limited to what is necessary to provide, secure or operate Prompt Guard.

15. Changes to this policy

If Prompt Guard's data handling changes materially, IronStride will update this policy and the relevant in-product or store disclosures before the new processing begins where required.

16. Contact

Privacy questions and requests: info@ironstride.nl.