Legal

Privacy Policy

Last updated: July 14, 2026

01

Information We Collect

We collect the following limited information when you use GenFlow:

02

How We Use Your Information

03

Browser Extension Permissions & Automation

GenFlow is a browser extension that automates actions on supported AI platforms. Here is exactly what it does and does not do:

04

Data We Do NOT Collect

05

Data Storage & Security

Your account data is stored securely on Supabase (PostgreSQL), hosted on AWS infrastructure. Payment and billing data is managed by Dodo Payments under their own privacy policy.

The Extension stores your session token in Chrome's local storage to keep you logged in. No tracking cookies are used.

If you sign in with Google, the temporary Google OAuth access token is sent once to our server to verify your identity and is never stored — it is discarded immediately after verification. Our server then issues its own session token, which is what the Extension stores locally (as noted above). This session token is retained only until you sign out — we do not keep it for any fixed period beyond that — is used solely to keep you logged in, and is never shared with or transmitted to any third party.

06

Third-Party Services

07

Your Rights

You have the right to access, correct, or delete your personal data. We retain your account data for as long as your account is active.

To prevent abuse of our free trial, your email address is retained for up to 1 year after account deletion solely for eligibility verification. No other personal data is kept.

To exercise these rights or request account deletion, contact us at support@genflow.work.

08

Data Retention

We keep different types of data for different lengths of time, only as long as necessary for the purpose it was collected for:

09

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify users of significant changes via email or in-app notice.

Privacy-related inquiries?

support@genflow.work