ParaphrasePro collects the minimum necessary to function:
Nothing at all when you use the extension with your own API key. Your settings, your history and your API key live in your browser's extension storage and never reach us. Your API key never leaves this device. It is stored in this browser's local extension storage — never synced to your Google account, never sent to ParaphrasePro's servers. It is sent only to the AI provider you choose, when you rewrite text. If you switch on “Sync across devices” in Settings, Chrome replicates only your ordinary preferences (provider, model name, modes, language, per-site toggles, keyboard shortcuts) through your own Google account so your other Chrome profiles get them; your API key, your Cloud sign-in token and your rewrite history are excluded and stay on this device.
Account data (email address) when you sign up for ParaphrasePro Cloud, used solely for signing in, resetting your password and managing your subscription.
Usage totals linked to your account. For Cloud accounts we record, per request, an estimated size for the text you sent and the text returned, with a timestamp, so we can enforce the daily fair-use limit. These records are tied to your account — they are not anonymous. They contain none of the text itself and no browsing history.
2. How your text is handled
Text you select is processed only to produce rewrites:
With your own API key: text is sent directly from your browser to the AI provider you configure (OpenAI, Anthropic, Gemini, DeepSeek, or a custom endpoint). It never passes through our servers.
With ParaphrasePro Cloud: text is sent to our server, streamed to the AI model (DeepSeek), and discarded as soon as the response finishes. We keep no copy of it — only the usage total described above, recorded against your account.
We do not use your text to train models, sell data, or build profiles. There are no trackers, no analytics SDKs, and no advertising on this site or in the extension.
3. Payments and email
Subscriptions are handled by Dodo Payments, a Merchant of Record. Payment details never touch our servers — we receive only subscription status via signed webhooks. Transactional email we send ourselves (password-reset links) goes out through Resend, our email provider; receipts come from Dodo Payments. We send no marketing email.
4. Data storage and deletion
Extension settings, rewrite history and API keys live in your browser's extension storage. Turning on “Sync across devices” replicates your ordinary preferences through your own Google account; your API key, your Cloud sign-in token and your rewrite history are never included and stay on the device. On our side, a Cloud account holds your email address, your plan and your usage totals. Cloud accounts can be deleted by contacting [email protected]; all account and usage records are removed.