Privacy Policy

Effective Date: May 19, 2025

1. Overview

Legal Eyes is a Chrome Extension that allows users to convert casual or informal text into formal legal language using AI. This Privacy Policy explains how we handle your data.

2. What Information We Collect

  • Email address (used for authentication via Supabase)
  • Authentication tokens (stored locally in chrome.storage)

We do not collect, store, or transmit any personal content you highlight, rewrite, or convert using the extension.

3. How We Use Your Information

Your email and token are used strictly to verify your identity via Supabase and allow access to your subscription tier via Stripe.

4. What We Do Not Do

  • We do not track your browsing history
  • We do not inject scripts into websites
  • We do not sell or share your data

5. Why We Use <all_urls>

Legal Eyes uses Supabase magic link login for secure authentication. The extension includes a callback page which must be loaded via browser redirect after a user clicks their login link. To support this, we include <all_urls> in our manifest.json solely so the page can open. No other access is performed.

6. Data Retention

We do not store data on any external servers. Authentication is handled entirely via Supabase. Subscription data is managed by Stripe.

7. Rights of EU/EEA Users (GDPR)

If you are located in the European Economic Area (EEA), you have the right to:

  • Access the personal data we hold about you
  • Request correction or deletion of your personal data
  • Withdraw consent or object to processing
  • Lodge a complaint with a local data protection authority

Our legal basis for processing your email and authentication data is contract — to provide access to the features you've signed up for. We do not use your data for profiling or automated decision-making.

8. Third-Party Services

We use the following third-party providers:

  • Supabase – for user authentication and session management
  • Stripe – for subscription billing
  • OpenAI – to process user-submitted text for rewrite functionality. No data is stored or logged.
  • ipapi.co – used to detect your country based on IP address. This is only used to improve region-specific legal phrasing and is never stored or shared.

9. Contact

;