Full policy: https://loupekit.com/privacy
LoupeKit needs no account. The identifier it runs on is a random UUID your browser generates on first run and keeps in local extension
storage.
What leaves your browser, and only when you click "Audit": the hostname, integer counts, class-name strings, the page title truncated,
and heading text with passwords, credit-card numbers, email addresses and auth tokens redacted before sending. Nothing is collected
in the background and nothing is collected across tabs.
What never leaves your browser: body copy, form values, the full URL, page assets or images, and your AI provider API keys. BYOK keys
are held in chrome.storage.local and are sent directly to the provider you chose; they never reach our server, a log line or an
analytics event.
The optional paid account stores an email address, a session token and a licence key. Payment is handled by Stripe; we never see card
data. No IP-derived value is ever stored.
Every transmitted field is listed field by field at https://loupekit.com/privacy, and the page is enforced against the collector by an
automated test in both directions.
Contact: info@loupekit.com