Privacy Policy
Legal

Your data.
Always yours.

Last updated March 2026 Applies to fillr.ai Chrome Extension Version 1.0.0
TL;DR — The short version
🔒
Stored locally All your profile data lives only on your device. Never on our servers.
✉️
Only one exception Cover letter generation sends your profile + job description to an AI endpoint, then discards it.
🚫
Zero selling We don't sell, share, or monetise your data. Ever. Full stop.
01

Data We Collect

fillr.ai saves your job-application profile locally on your device using Chrome's built-in storage API. Nothing is uploaded to any server during the normal autofill workflow.

Field What it is Where it lives
Full name First name + last name Local only
Email address Your contact email Local only
Phone number Your contact phone Local only
Home address Street, city, state, zip, country Local only
Current job title Your present role Local only
Current company Where you work now Local only
Years of experience How long you've worked Local only
LinkedIn / GitHub / Portfolio Your profile URLs Local only
Desired salary Your compensation expectation Local only
Available start date When you can start Local only
Professional summary Your written bio Local only
Work history & skills Synced from LinkedIn (optional) Local only
Profile photo From LinkedIn sync (optional) Local only
License key Your Pro activation key Local only
Cover letter request Profile + job description sent on generate Sent & discarded
Payment details Card numbers, billing info Never collected
02

When Data Leaves Your Device

There is exactly one scenario where any data leaves your device: when you click Generate in the Cover Letter tab.

Your profile data and the job description you paste are transmitted over HTTPS to a secure AI endpoint. The endpoint generates your cover letter, returns the text to your browser, and immediately discards all input. Nothing is stored, logged, or retained on any server after the response is returned.

Additionally, when you activate or validate a Pro license key, your key is sent to a server-side verification proxy (a Cloudflare Worker). This is a one-way check — the key is validated but never stored on our servers. It lives only in your local Chrome storage.

No other data ever leaves your device under any circumstances during normal use of the extension.

03

What We Don't Do

We want to be explicit. Here is a complete list of things fillr.ai does not do:

  • Sell your data to any third party, ever
  • Share your information with recruiters, employers, or data brokers
  • Use your data for advertising, targeting, or analytics
  • Require you to create an account to use the autofill feature
  • Read your LinkedIn messages, connections list, or private activity
  • Access any LinkedIn data that is not publicly visible on your profile page
  • Upload your profile photo to any server
  • Run in the background or monitor your browsing when you are not using the extension
  • Inject scripts into pages you are not actively applying to a job on
  • Store, log, or retain any data sent during cover letter generation
  • Display advertisements of any kind
  • Track your usage patterns or behaviour for any purpose
04

Permissions We Use & Why

fillr.ai requests only the permissions it needs to function. Here is exactly what each permission does:

storage

Saves your profile data locally on your device using Chrome's built-in storage API.

activeTab

Lets the extension read and fill form fields on the job application page you are currently viewing.

scripting

Required to inject the autofill logic into the active job application page when you click Autofill.

tabs

Used to detect when you visit a known job site and update the extension tooltip accordingly.

contextMenus

Adds a right-click option to fill any editable field on any page for quick access.

host_permissions

Required because job applications exist on thousands of different company domains. Without this, autofill would only work on a predefined list of sites.

About host_permissions (all URLs): This is the broadest permission Chrome offers, and we take that seriously. It is the only way to autofill forms on custom company career pages that are not on a predefined list. fillr.ai does not read, collect, or transmit any data from pages where you are not actively using the extension.

05

Third-Party Services

fillr.ai interacts with the following third-party services in specific, limited circumstances:

  • 🤖
    Anthropic (AI provider) Used exclusively for cover letter generation. Your profile and job description are sent when you click Generate and immediately discarded after the response. Anthropic's privacy policy governs their handling of this data.
  • 💳
    Stripe (payment processing) Handles Pro subscription payments. We never see or store your card details. All payment data is handled entirely by Stripe and governed by their privacy policy and PCI compliance standards.
  • 🔑
    Gumroad (license verification) Used to validate Pro license keys via a server-side proxy. License keys are checked but not stored on our servers. They are stored only in your local Chrome storage.
  • Cloudflare Workers (secure proxy) Acts as a secure intermediary for license key verification. No personal data is stored. Cloudflare's privacy policy applies to infrastructure-level logging.
06

Data Retention

All profile data is stored locally on your device in Chrome's local storage. It persists as long as you have the extension installed and have not cleared it.

You can delete all stored data at any time by:

  • Clearing the extension's storage from Chrome's settings
  • Uninstalling the fillr.ai extension entirely
  • Using the clear data option within the extension popup

Data sent during cover letter generation is not retained by us or our AI provider after the response is delivered. There is nothing to delete on our end.

07

Children's Privacy

fillr.ai is a professional tool designed for adults engaged in job searching. It is not directed at, marketed to, or designed for use by anyone under the age of 13. We do not knowingly collect personal information from children. If you believe a child has provided personal information through this extension, please contact us immediately.

08

Changes to This Policy

If this privacy policy changes in a material way, the "Last updated" date at the top of this page will be updated. For significant changes that affect how your data is handled, we will make reasonable efforts to notify users through the extension interface.

Continued use of fillr.ai after any changes constitutes acceptance of the updated policy. We recommend reviewing this page periodically.

09

Contact Us

Have a question about this privacy policy, want to request deletion of your data, or found something that doesn't look right? Reach out directly.

We're real people.

Questions about privacy are taken seriously and responded to within 48 hours.

✉ privacy@fillr.ai