FillApp Privacy Policy
Last updated: August 22, 2025
Introduction
FillApp, LLC ("FillApp," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and protect your information when you use our AI browser agent extension and related services (the "Service").
Please also review our Terms of Service at /terms-of-service, which governs your use of the Service.
Controller & Scope
FillApp, LLC (Delaware, USA) is the controller for personal information processed via the FillApp website, web app/APIs, and browser extension (the "Service"). This Policy does not apply to third-party websites or services you visit or automate using FillApp; their policies govern those sites.
Contact Information
FillApp, LLC
131 Continental Dr, Suite 305
Newark, DE 19713
Email: legal@fillapp.ai
For any privacy-related questions or concerns, please contact us using the information above.
Information We Collect
Account Information
When you create an account, we collect:
- Email address
- Name
- Payment information (processed securely through Stripe)
Service Data
- Snippets: Reusable form templates and data you create and save
- Conversation History: Your interactions with the AI agent, including prompts and responses
- Usage Analytics: Privacy‑respecting analytics configured to avoid collecting sensitive content (e.g., IP redaction where available; no capture of form inputs)
Browser Extension Data
Our extension requires access to:
- Active Tab: To interact with forms and web pages you're currently using
- Tabs: To perform multi-tab automation tasks as requested by you
Important: We only access page content when you explicitly start a conversation or engage the agent. We do not monitor your browsing activity in the background.
How We Use Your Information
We use your information to:
- Provide and improve our AI browser agent service
- Process your account registration and payments
- Store and manage your snippets and conversation history
- Analyze feature adoption and performance to improve the Service (configured to avoid collecting sensitive content)
- Respond to your support requests and communications
AI Processing
We use third-party AI providers to power our agent:
- OpenAI - For AI model processing
- Anthropic - For AI model processing
When AI features run, your prompts and necessary context may be sent to these providers. We configure providers not to use your data to train their models (where controls exist) and to limit retention. We also minimize the data we send and apply redaction where feasible.
Third-Party Services
We work with trusted service providers to operate our service:
- Payment Processing: Secure handling of subscription payments
- Data Storage and Hosting: Cloud infrastructure, database services, and authentication
- Analytics: Privacy-respecting analytics configured to avoid collecting sensitive content (e.g., IP redaction where available; no capture of form inputs)
- Communication: Service-related emails and notifications
Our service providers primarily process data in the United States, and some may process data in other countries. They are contractually required to protect your data and to use it only to provide services to us.
Service Providers (Subprocessors)
We may employ third‑party companies and individuals to facilitate our Service ("Subprocessors"), provide Service on our behalf, perform Service‑related services, or assist us in analyzing how our Service is used. These third parties have access to your personal data only to perform these tasks on our behalf and are obligated not to disclose or use it for any other purpose. You can find a list of Subprocessors we use on our website at Subprocessors.
Important: We do not sell, or share your personal data with third parties for their commercial purposes.
Legal Disclosure and Compliance
We may disclose your personal information when required by law or when we believe in good faith that disclosure is necessary to:
- Comply with legal process (subpoenas, court orders, search warrants, or other legal requirements)
- Protect and defend our rights, property, or safety, or the rights, property, or safety of our users or others
- Prevent or investigate fraud, security threats, or illegal activities
- Comply with government requests or law enforcement investigations
- Enforce our Terms of Service or other agreements
Transparency Statement: Since FillApp's founding, we have received zero government requests for user information. We are committed to protecting user privacy and will challenge requests that we believe are overly broad or inappropriate where legally permissible.
Data Learning and Privacy
When our documentation mentions that "FillApp learns from its actions," this refers only to:
- User interface interaction patterns (e.g., how dropdowns work on specific websites)
- Technical behaviors to optimize future interactions
We never learn from or retain your personal data, form content, or business information.
Your Data Rights and Control
Data Deletion
You can delete individual conversations/chats/messages/snippets in the extension and delete your account from the dashboard. When you delete content or your account, we remove it from active production systems. Residual copies may persist temporarily in encrypted backups and logs and will be purged on their normal rotation cycles.
Data Retention
- Account & content (conversations, uploads, snippets): kept while your account is active or until you delete them.
- Inactivity cleanup: after 1 year of account inactivity, we delete stored content associated with that account.
- Security/diagnostic logs: typically 30–180 days unless needed longer for security investigations.
- Billing/tax records: retained up to 7 years as required by law.
Access and Portability
You can access and export your data through your account dashboard or by contacting us at legal@fillapp.ai.
Privacy by Design
Our service is built with privacy as a core principle:
- Active Consent Only: The extension only accesses page context when you explicitly start a thread
- No Background Monitoring: We do not collect data when you're not actively using the agent
- Your Data Stays Yours: We don't sell your data or use it for any purpose other than providing our service
- Transparent Operations: You can see every action the agent takes through our visible trace feature
Age Requirements
Our service is intended for users aged 13 and older. We do not knowingly collect personal information from children under 13. If you become aware that a child has provided us with personal information, please contact us so we can take appropriate action.
Data Security
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. This includes:
- Encryption of data in transit and at rest
- Regular security assessments
- Access controls and authentication measures
- Secure hosting infrastructure
Security Incidents. If we become aware of a security incident that affects your personal information, we will notify you and applicable regulators without undue delay, consistent with legal requirements.
Browser Extension Permissions
Our Chrome extension requests the minimum permissions needed:
- activeTab — interact with the current page after you engage the agent.
- tabs — open/switch tabs when you ask the agent to do multi‑tab tasks.
- storage — store extension settings and preferences locally.
- contextMenus — show FillApp actions in the right‑click menu.
- sidePanel — display the FillApp interface in the browser side panel.
Page Access and Data Reading
FillApp can read page content and interact with web pages to provide automation features. However, data reading and collection only occurs when you intentionally send a message or start an automation task.
Specifically, FillApp reads page content to:
- Understand form fields and page structure when you request automation
- Click buttons and fill forms as directed by you
- Navigate through multi-step processes you initiate
- Provide the visible action trace you see on screen
Important: FillApp only reads and processes page data when you actively send a message or request an action. Data reading stops immediately when you click stop or when the response is fully received. In all other cases, FillApp does not read, collect, or access any page data.
These permissions are used solely to provide our automation features and are not used for data collection beyond what's necessary for the service to function.
Cookies and Tracking Technologies
We use cookies and similar technologies to provide and improve our service. Cookies are small text files stored on your device that help us:
Essential Cookies
- Authentication: Keep you logged in to your account
- Security: Protect against unauthorized access and fraud
- Session Management: Maintain your session across pages
Analytics Cookies
- Usage Analytics: Privacy‑respecting analytics configured to avoid collecting sensitive content (e.g., IP redaction where available; no capture of form inputs)
- Feature Usage: Analyze which features are most valuable to users
Cookie Management
You can control cookies through your browser settings. However, disabling essential cookies may limit your ability to use certain features of our service. Most browsers allow you to:
- View and delete cookies
- Block cookies from specific sites
- Block third-party cookies
- Receive alerts when cookies are being sent
Our browser extension operates independently of website cookies and requires explicit user consent for each action.
We honor recognized browser opt‑out preference signals (such as Global Privacy Control) for choices that apply to our use of cookies and similar technologies.
International Users
Our Service is operated from the United States. While we primarily process data in the US, some service providers may process data in other countries. By using the Service, you understand your information may be transferred to and processed in the United States and, where applicable, other countries with appropriate safeguards.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on our website and updating the "Effective Date" at the top of this policy. Your continued use of the service after such changes constitutes your acceptance of the updated policy.
California Privacy Rights (CPRA)
If you are a California resident, you have the rights to know/access, delete, correct, and obtain a portable copy of your personal information. We do not sell personal information and we do not share it for cross‑context behavioral advertising as defined by CPRA. We honor opt‑out preference signals (such as Global Privacy Control) for applicable choices. To exercise rights, email legal@fillapp.ai; we may need to verify your request. We will not discriminate against you for exercising your rights.
We respond to verifiable consumer requests within 45 days (and may extend once by an additional 45 days when reasonably necessary). We may need to verify your identity and you may designate an authorized agent to make a request on your behalf where permitted by law.
Contact Us
If you have any questions about this Privacy Policy or our privacy practices, please contact us:
Email: legal@fillapp.ai
Support: Through the help section in your FillApp dashboard
We will respond to your privacy-related inquiries promptly and work to resolve any concerns you may have.
This Privacy Policy is designed to be clear and comprehensive while respecting your privacy rights. We believe in transparency and user control over personal data.