AI Prompt Studio

Privacy Policy / 隐私政策

适用产品 / Applies to: AI Prompt Studio Chrome 浏览器扩展(Chrome Web Store 正式版)

最近更新 / Last updated: 2026-06-01

联系方式 / Contact: xiaotao666.1@gmail.com

在线全文 / Online: https://aipromptstudio.top/privacy


中文版

一、我们是谁

AI Prompt Studio 是一款 Chrome 浏览器扩展,由独立开发者 xiaotao-02 维护。正式版本通过 Chrome Web Store 分发。您可选择 自备 API Key(BYOK)平台代调用;仅在后一种模式下,数据会经我们运营的 HTTPS API 网关转发。

二、我们处理哪些数据,为什么处理

数据类别是否收集处理目的存储位置是否离开你的设备
模型 API Key(BYOK 模式)是(可选)直连您选择的供应商`chrome.storage.sync`仅发往您选择的供应商;开发者收不到
平台 API Token(平台模式)是(可选)认证平台代调用`chrome.storage.local`(不同步发往 `api.aipromptstudio.top` 网关
平台账户标识(Google 账号、邮箱魔法链接或可选手机号)是(平台模式)登录、订单与客服平台数据库存于平台服务器
平台余额与用量记录是(平台模式)计费平台数据库存于平台服务器
你右键的图片内容(含动图首帧 / 视频当前帧抓取后的 JPEG)作为视觉模型的输入内存中临时存在,不写入磁盘BYOK:仅发往您选择的供应商;平台模式:经网关内存转发至上游,不落盘
你在当前网页上拖拽选取矩形后的可见视口截图(由扩展裁剪成小尺寸 JPEG)当你的站点劫持原生右键、无法走「右键→添加到参考」时,作为替代的参考图来源;随后在面板中与图片链路透传到同一供应商内存中短暂存在,`tabs.captureVisibleTab` 整张快照经裁剪后即丢弃大图仅当您通过工具栏弹窗、快捷键、或页面右键菜单主动发起区域截取时才发生;裁剪结果仅发送给您选择的那一家视觉模型供应商
提示词结果与版本历史在浮动面板和工具栏弹窗中展示、可复制、可恢复历史版本`chrome.storage.local`(仅本地)
用户在"对话式调整"中输入的指令作为模型的 prompt 一部分内存中临时存在仅发送给你选择的供应商
偏好设置(输出风格、语言、活跃供应商等)用户体验持久化`chrome.storage.sync`否(仅在你登录的同一 Google 账号的浏览器之间同步)
任何形式的"匿名遥测 / 埋点 / 崩溃上报 / 用户行为分析"

三、数据流向(必须明确披露)

模式 A — 自备 API Key(默认可选)

你的浏览器 → HTTPS 直连 → 你在设置中选择的模型供应商

扩展开发者收不到 Key、图片或提示词。

模式 B — 平台代调用(需在设置中主动选择并粘贴 Token)

你的浏览器 → HTTPS → api.aipromptstudio.top(网关,内存转发)→ 上游视觉模型供应商

平台侧存储账户、余额、计费元数据;参考图与提示词正文不在服务器磁盘持久化。官网与隐私全文:https://aipromptstudio.top/privacy

各官方供应商的隐私政策:

四、我们额外的"网络请求"

扩展在用户主动点击「检查商店更新」时,会通过 Chrome 扩展 API 向 Chrome Web Store 查询是否有可用更新;该过程由浏览器完成,不携带 API Key、图片或个人信息。

若配置了远端运行时配置 URL(HTTPS JSON),扩展会在检查更新时尝试拉取公告与版本建议;该请求仅读取公开配置,不含用户数据。

五、权限说明

权限用途
`contextMenus`在你右键图片 / 视频 / 动图时显示「添加到参考」「直接反推提示词」;在正常页面上下文还提供「截取区域添加到参考」(适用于自定义右键的站点);「直接反推」或面板内点击「生成提示词」后再调用模型
`storage`本地保存 API Key、偏好、历史记录
`scripting` + `activeTab`在需要时由后台向当前标签页程序化注入扩展内容脚本(例如兜底注入);声明式脚本随页面轻量加载,用于右键探测与消息。`activeTab` 亦用于在用户从弹窗快捷键/菜单发起的流程中截取当前标签页可视区域快照并裁剪。可见的结果浮动面板仅在用户发起「添加到参考」「区域截取」或面板内反推等操作后出现
`clipboardWrite`你点「复制」时把提示词等文本写入剪贴板(含面板、弹窗、设置/库中的复制操作)
`host_permissions: <all_urls>`支持在任意站点使用右键与页内能力;声明式脚本随页加载仅用于监听与消息,不会像爬虫一样上传整页内容;仅在您操作后才会读取/发送您所指的那一张图相关的数据
`identity`平台模式下与官网账户进行 OAuth 登录(可选)

六、儿童隐私

本扩展不面向 13 岁以下儿童,也不会刻意收集任何儿童个人信息。

七、数据删除

  • 删除所有本地数据:在 Chrome 中卸载扩展即可。
  • 删除同步数据:卸载扩展并到 chrome://settings/syncSetup 中清空"扩展程序"的同步项。

八、变更通知

本政策的任何修改会在官网与商店版本说明中更新。重大变更会在扩展内通过提示告知。

九、联系我们

任何隐私相关问题,请发送邮件至 xiaotao666.1@gmail.com


English Version

1. Who we are

AI Prompt Studio is a Chrome browser extension maintained by an independent developer, xiaotao-02. The official build is distributed via the Chrome Web Store. You may use BYOK (your own API keys) or platform proxy (optional paid credits).

2. What data we handle and why

DataCollected?PurposeStorageLeaves your device?
Model API key (BYOK)OptionalDirect calls to your chosen provider`chrome.storage.sync`Sent only to that provider; developer never receives it
Platform API tokenOptionalAuthenticate platform proxy`chrome.storage.local` (not synced)Sent to `api.aipromptstudio.top`
Platform login identifiers (Google account subject, email for magic-link sign-in, or optional phone)If you registerLogin & billingPlatform databaseStored on platform servers
Balance & usage metadata (platform)If you use platformBillingPlatform databaseStored on platform servers
The image you right-click (including the first frame of GIF/APNG/animated WebP and the current frame of `<video>`, captured to JPEG)YesInput to the visual modelIn-memory only, not written to diskBYOK: your provider only; Platform: via gateway in RAM, not persisted on disk
A JPEG crop of the visible tab from the rectangle you drag (full-tab snapshot captured then cropped/discarded immediately)YesFallback reference image when sites replace the native context menu — same pipeline afterwardHeld briefly in memory; the full snapshot is cropped and not retained once processedOnly when you explicitly start region capture (toolbar popup, shortcut, or page context menu item); cropped pixels are sent only to the vision provider you selected
Generated prompts and version historyYesDisplayed in the in-page panel and toolbar popup, copy/restore by user`chrome.storage.local` (local only)No
Your text instructions in "conversational refine"YesPart of the prompt sent to the modelIn-memory onlySent only to the provider you selected
Preferences (output style, language, active provider, etc.)YesPersist user preferences`chrome.storage.sync`No (only synced across browsers logged into the same Google account)
Any form of telemetry, analytics, crash reports, or behavior trackingNo

3. Data flow (full disclosure required by Chrome Web Store)

Mode A — BYOK: `Your browser → HTTPS direct → provider you configured`

Mode B — Platform proxy (opt-in): `Your browser → api.aipromptstudio.top (gateway, in-memory forward) → upstream vision provider`

Account/billing metadata is stored for platform users; images are not persisted on disk at the gateway. See https://aipromptstudio.top/privacy.

Privacy policies of the supported providers:

4. Additional outbound traffic

When you click Check for store updates, the extension asks Chrome to query the Chrome Web Store for an available update via the browser extension API. No API key, image, or personal data is sent.

If a remote runtime config URL (HTTPS JSON) is configured, the extension may fetch announcements and version hints during update checks; only public config is read.

5. Permission justifications

PermissionPurpose
`contextMenus`Adds “Add to reference” and “Extract prompt directly” on `<img>/<video>` with masked-image fallback entries; adds “Capture region to reference” on generic page contexts
`storage`Save API keys, preferences and history locally
`scripting` + `activeTab`Fallback programmatic injection plus a declarative lightweight content script at `document_idle`; `activeTab` also allows `captureVisibleTab` for the rectangle-screenshot flow you start from the toolbar popup/hotkey. The floating result panel appears only after you initiate an action
`clipboardWrite`Write prompts or selected text to the clipboard when the user clicks a copy control (panel, popup, options / library)
`host_permissions: <all_urls>`The user may use the extension on any website; content scripts may load with the page for listeners/messaging, but page-wide scraping or non-targeted upload is not performed
`identity`Optional OAuth sign-in with the platform website

6. Children's privacy

The extension is not directed to children under 13 and does not knowingly collect personal data from children.

7. Data deletion

  • Local data: uninstall the extension in Chrome.
  • Synced data: uninstall the extension and clear "Extensions" sync at chrome://settings/syncSetup.

8. Changes

Material changes will be published on the website and in store release notes. Significant changes may also be surfaced inside the extension UI.

9. Contact

For any privacy-related questions, email xiaotao666.1@gmail.com.