Privacy Policy

Last updated: September 19, 2026 · Privacy Policy version 3.0 · Tack by Certifyde

1. Introduction

Certifyde, Inc. ("Certifyde," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Chrome browser extension, Tack by Certifyde ("Tack"), our web application at https://tack.certifyde.ai, and related services (collectively, the "Service").

By using the Service, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use the Service.

Tack watches the work you already do in your web applications, learns the jobs you repeat, and offers to do them again with your approval of every write. Doing that means reading the pages you work in. This policy says exactly what is read, what is never read, where it goes, and how long it is kept.

Your account is yours alone. This version of Certifyde has one seat per account. There is no organisation administrator who deploys it to you, configures it, sees your activity, or receives reporting about you, and there is no team dashboard or leaderboard. You install it, you consent to it, you see what it holds, and you can delete all of it yourself. If your employer later deploys Certifyde to you under an agreement of its own, we will tell you before that changes anything, and that arrangement will have its own notice.

2. Information We Collect

2.1 Account Information

When you create an account, we collect your name and email address, either from Google Sign-In or from the email address you verify with a six-digit code. Sign-in through Google requests three scopes and no more — openid, email and profile — which say who you are and give no access to your Google data. We also store your own answer to what you do every day, if you give one.

2.2 Page Capture

Nothing is captured until you have signed in and answered the consent screen. After that, the extension's content script reads the pages you work in, while you work in them:

The extension asks not to run on pages Certifyde hosts, and a capture identified as coming from one is discarded at our API before anything is stored.

2.3 Connected Applications

When you connect an application — Gmail, Google Drive, Google Sheets, Google Calendar, Slack, or any other application in our catalogue — you authorise it through that application's own OAuth screen, under your own account, and you see the scopes you are granting before you grant them. Certifyde then holds a grant for that application and uses it to read and write on your behalf when a shortcut runs.

Certifyde's Google Sign-In application and its data-connection application are two separate OAuth applications with two separate redirect lists. The Service refuses to start if they are configured as one.

Section 5 covers Google data specifically.

2.4 What a Shortcut Records When It Runs

When a shortcut runs, we record what it did: the steps, the values it settled on, what it read, what it proposed, what you approved or refused, and any error. Before a step sends, writes or changes anything in another application, it stops and asks you, and you see the exact values before it goes — section 4.3 of the Terms sets out how that works and where its limits are.

2.5 Usage Data

We collect standard usage data about how you interact with the Service — features used, requests to our API, and error reports from the extension and the panel. This helps us improve the product and find faults.

2.6 Billing Information

If you subscribe, our payment processor collects and processes your payment details. We never receive, hold or store your card number, CVC or bank details. We receive from the processor only your subscription status, the last four digits and brand of your card, and your billing country. No card is required to sign up or during the fourteen-day trial.

2.7 What We Do Not Collect, and What We Cannot Promise

We do not collect:

We also do not use anything we hold for advertising, we run no advertising of any kind, and we build no advertising profiles. Card details you give Certifyde to pay for a subscription go to our payment processor and never to us — see section 2.6.

And here is what we cannot promise. Certifyde reads the pages you choose to work in, as they are. If those pages show financial information, health information, an address, someone else's message, or any other sensitive thing, it is in the capture. The credential floor in section 4 removes secrets; it is not a filter for sensitive categories, and there is no site blocklist. This is the honest position:

If that is not acceptable for a particular page, sign out before you work in it.

3. How We Use Your Information

We do not sell your personal information, we do not share it with advertising platforms or data brokers, we do not use it for advertising of any kind, and we do not use it to determine creditworthiness or for lending.

4. The Credential Floor

Certifyde has a mandatory, non-configurable floor over what may be recorded. You cannot waive it and neither can we. It runs in your browser before anything is sent, and again at our door before anything is stored — because a copy of the extension built before a rule was fixed would otherwise keep sending what the fixed rule blanks. An extension floored by outdated rules is refused outright rather than stored.

The floor is designed to blank:

The field itself stays in the record with its value replaced. A reader can still see that a password field was on the page, which is a fact about the page, without the secret being one of our rows.

What the floor is not, stated plainly. It matches field attributes, field names, endpoint paths and value shapes. It is a pattern-based floor, not a proof, and it is not general personal-data redaction. In particular:

Treat a page you would not want read as a page not to work in while Certifyde is capturing. You can stop capture at any time by signing out.

5. Google User Data

5.1 Limited Use

Certifyde's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

The use of information received from Google Workspace APIs will adhere to the Google Workspace API User Data and Developer Policy, including the Limited Use requirements.

Our collection and use of information received through the Tack by Certifyde browser extension adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements.

5.2 What Google data we access, and why

Two different things, kept apart:

5.3 How Google data is stored and handled

5.4 What we never do with Google data

6. Models, and Model Training

6.1 The models that read your work

Certifyde's agents run on Amazon Bedrock, in Amazon Web Services accounts we control, in the United States. The primary route is a United States cross-region inference profile, which means a single call may be processed in any one of several US regions rather than only in us-east-1; a named fallback in us-east-2 is used when the primary is unavailable. Your prompts and completions are handled under Bedrock's terms:

We also use Amazon Comprehend as a fast first pass over a captured page, to suggest candidate names, organisations, dates and key phrases that our own model then judges. It sees up to 25,000 characters of a captured document's text per pass.

Amazon Comprehend is handled differently from Bedrock, and we will not pretend otherwise. Under the AWS Service Terms, Amazon Comprehend is one of the AI Services whose content AWS may use and store to develop and improve that service, and — where the content is not personal data — other AWS machine-learning technologies, and may store in an AWS region outside the one where the service was called. A customer may instruct AWS not to, by configuring an AI services opt-out policy.

We send content to Amazon Comprehend only while that opt-out is in force, so that AWS may not use or store it to develop or improve its own services. Before sending any, the Service asks AWS for the opt-out setting that applies to our account, and asks again every fifteen minutes. If AWS does not confirm the opt-out, no content goes to Amazon Comprehend, and our own model reads the page without it — we do not carry on and simply tell you afterwards. AWS requires the customer of the service — us — to give you this notice, which is why it is here rather than left to Amazon's terms.

6.2 Certifyde's own model training

We build training examples, which may be used to train, fine-tune and evaluate our own models, to make the Service better at reading a page and recognising a job. The training set is built from page captures made in your browser and what our agents made of them. It is never built from data obtained through a connected application's API or derived from it, and never from your browser history.

What a training example contains, stated exactly. It is not anonymised and it is not a summary. It holds the document our agents produced from a capture — its label, description and text — together with the captured page's address, title and host, and the request and response bodies that page exchanged, after the credential floor in section 4 has been applied. It is stored in our object store under a key identifying your account, encrypted at rest, in the same AWS account as everything else.

Unlike the raw captures they were derived from, training examples are not automatically deleted after 30 days. They are removed when you delete your account, under section 8. Deleting them does not reverse training that has already been done; where the law requires us to address personal information retained in a trained model, we will.

We do not use your data to train any third party's model, and no third party receives your data to train or improve its own models or services.

7. Data Retention

WhatHow long
Raw page captures — the page tree and the network bodies30 days from capture, then deleted automatically
A capture record that produced nothing — its address, title, host and the values you enteredAbout 30 days from capture, then deleted
A capture record that produced a document — the same fieldsKept with that document, until you delete your account
The document made from a capture — including the page's text as our agent rendered itUntil you delete your account
Model turn records — the prompt as the model saw it, with the page in it30 days, then deleted automatically
What a run read while it ran30 days, then deleted automatically
Capture chains exported for fault diagnosis30 days, then deleted automatically
Derived training examples (section 6.2)Until you delete your account
Your account, connections, shortcuts and run recordsUntil you or we delete them (section 8)
Application logs3 days
Database backups7 days

Two things worth saying plainly about that table. First, the 30 days runs from when the page was captured, not from when you stop using Certifyde — it is an automatic expiry, not an offboarding promise. Second, a capture that taught us something outlives 30 days. The raw page and the network bodies always expire; but where a capture produced a document, the document and the capture record that points at it are kept until you delete your account, because they are what your shortcuts were built from. A small number of captures stored before 17 September 2026 sit under an older storage layout that the automatic rule does not reach; they go when you delete your account.

Data is held in Amazon Web Services in the us-east-1 region of the United States, except as described in section 6.1 for model inference, which may be processed in another United States region.

8. Deletion of Your Account and Your Data

You may delete your account from the Service at any time. Before you confirm, the Service shows you the count of what deletion destroys — every page seen, every document, every connection.

Deleting your account deletes your account records and everything that hangs off them: your captures, documents, shortcuts, runs, run records, derived training examples, and your sealed grants for every application you connected. Deleting the grant does not by itself revoke it at the application; you can also revoke Certifyde's access from your Google Account's permissions page or the equivalent page at any other application you connected.

Some residual copies persist after a deletion, and then go on their own:

None of these is used to restore a deleted account, and all expire automatically. Deleting your training examples does not undo training already done; section 6.2 covers that.

Signing out stops the extension capturing anything further, without deleting your account. It does not by itself disconnect the applications you connected or revoke Certifyde's access at them — do that from the application's own permissions page — and it does not delete what we already hold.

To ask us to delete your account on your behalf, write to privacy@certifyde.com.

9. Data Sharing

We do not sell your personal information. We share data only in the following circumstances:

9.1 Service Providers and Artificial Intelligence Subprocessors

We use third parties to run the Service, each processing data on our behalf as our service providers and subprocessors:

| Provider | What it does | What it sees | |---|---|---| | Amazon Web Services | Hosting, storage, database, encryption keys | Everything the Service holds, encrypted in transit and at rest | | Amazon Bedrock (AWS) | The models our agents call | The prompts our agents send, which include the page a capture read | | Amazon Comprehend (AWS) | Candidate names and phrases in a captured page | Up to 25,000 characters of a document's text per pass | | Mailgun | Transactional email | Your email address and the contents of the message | | Google | Sign-in, and the applications you choose to connect | Your identity for sign-in; for a connection, only what that application's own scopes cover | | Stripe | Subscription billing | Your payment details, which go to Stripe and not to us |

Each application you connect also sees the requests a shortcut makes to it, under the grant you gave.

The artificial-intelligence subprocessors on this list are Amazon Bedrock and Amazon Comprehend, both Amazon Web Services. Section 6 states what each is contractually permitted to do with what it sees. A current list of subprocessors is available on request.

9.2 Other disclosures

10. Data Security

We implement security measures appropriate to what the Service holds, including:

No system is perfectly secure. We do not claim the Service is.

Human access. No one at Certifyde reads your data, from your browser or from a connected application, except on the grounds section 5.4 sets out: with your agreement to look at something specific (for example, when you ask us for help with a run), where it is necessary for security, such as investigating abuse, or where the law requires it. Our internal console, which only our own staff can reach, shows the state of the Service (whether a run finished, how long a step took, which application it used) and not the content of your pages, runs or connected applications.

11. Your Rights

Depending on your jurisdiction, you may have the following rights:

To exercise any of these rights, contact us at privacy@certifyde.com. We may need to verify your identity before we act on a request. We will respond within the time the applicable law allows. Where a United States state privacy law applies to our processing, any additional rights, methods and exceptions it gives you apply too, and a supplemental notice will describe them.

12. International Transfer

The Service is operated in the United States by Certifyde, whose principal office in the United States is located at 465 Brickell Avenue CU-1 Miami, FL 33131. Whatever country you use the Service from, your information is transferred to, stored in and processed in the United States — in Amazon Web Services, as section 7 describes. The privacy and data protection laws of the United States may differ from those of your own country.

If you are located in the European Union, the United Kingdom or Switzerland, you may have rights under the General Data Protection Regulation (GDPR) or equivalent local law in addition to those in section 11, including the right to lodge a complaint with your national supervisory authority. Where Certifyde processes your information as a "data processor" under the GDPR — for example where a shortcut acts on data you obtained from a connected application on someone else's behalf — we do so on your instruction. For any GDPR request, write to privacy@certifyde.com.

13. Children's Privacy

The Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.

14. Chrome Extension Specific Disclosures

14.1 Permissions

PermissionWhy it's needed
Host permissions (all sites)The extension's purpose is to learn the work you repeat in whichever web applications you use, and which ones those are is your choice, not ours. The content script runs on the pages you work in, after you sign in and consent. It asks not to run on pages Certifyde hosts, and a capture of one is refused at our door before anything is stored.
scriptingTo re-inject the content script into already-open tabs after the extension installs or updates, so capture does not silently stop on every open tab.
identityGoogle Sign-In from the panel.
alarmsThe capture loop's timers and the checks for a run waiting on you and for your subscription. A worker timer dies with the service worker; an alarm does not.
storageYour session token, your consent answers, and the local set of pages worth asking about.
sidePanelThe panel where approvals, shortcuts and connections live. An approval never renders inside a third-party page.
notificationsTo tell you a run is waiting on you when the page it started from is not in front of you.

14.2 Data the extension handles

Consistent with our Chrome Web Store listing, the extension handles:

We certify that we do not sell your data to third parties, do not use or transfer it for purposes unrelated to the extension's single purpose, and do not use or transfer it to determine creditworthiness or for lending.

15. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy at https://tack.certifyde.ai/privacy and updating the "Last updated" date, and, where we begin using data in a way this policy did not describe, by asking you to consent before we do so. Your continued use of the Service after changes constitutes acceptance of the updated policy.

16. Contact Us

If you have questions about this Privacy Policy or our data practices, contact us at:

Certifyde, Inc. 465 Brickell Avenue CU-1 Miami, FL 33131

Email: privacy@certifyde.com Support: support@certifyde.com


What changed in this version

This is a substantially new Privacy Policy, because the product it describes is substantially new. In summary: it now says that Certifyde reads the content of the pages you work in, the values you enter and the requests those pages make — not a summary of a page's structure; it describes the browser-history states that the extension does not read your browser history; it describes the applications you connect and the Google data that reaches us; it states which model providers process your work and on what terms; it discloses that page captures are used to build training examples for Certifyde's own models and that those examples are kept until you delete your account; it gives a retention table with real numbers; and it is explicit about what the credential floor does not do. Earlier versions of this document are available on request.