Last updated: 2026-04-15
This Privacy Policy describes how RedactGate Ltd ('we', 'us', 'our') collects, uses, and protects information when you visit redactgate.com (the 'Site') and when you use our browser extension (the 'Extension'). We are committed to protecting your privacy and being transparent about our practices.
01 Information we collect via the website
When you visit the Site, we may collect limited, non-personal information through analytics cookies, only with your explicit consent. This is aggregated and includes page views, referring URLs, and approximate geographic region. See our Cookie Policy for full details.
If you contact us by email (for example, to request a briefing), we store what you voluntarily provide: your name, email address, and the contents of your message.
02 The RedactGate extension does NOT collect personal data
The RedactGate browser extension is architected to minimise data collection. Specifically, the Extension:
- Does not track your browsing history or browsing activity.
- Does not read, record, or exfiltrate the content of pages you visit outside the moments of an active policy evaluation.
- Does not capture keystrokes, passwords, form inputs, or authentication tokens.
- Does not collect files, screenshots, or the contents of other applications.
- Does not access cookies, localStorage, or session data from other sites.
- Does not collect device identifiers, IP addresses, or geolocation data beyond what is required for regional audit-trail purposes.
- Does not transmit any data to third-party services, advertisers, or data brokers.
- All policy evaluation on prompts entering generative-AI tools is performed locally on your device; only match / no-match event metadata is logged.
This no-content-transmission architecture is the core of RedactGate's design. It is verifiable by reviewing the extension's manifest permissions and source under our partner-disclosure programme.
03 Enterprise administration
When the Extension is deployed by an organisation, IT administrators configure policies through a central management console. The Extension enforces these policies locally. Administrators may receive aggregated, anonymised reports on policy events (e.g., 'X policy violations detected this week') but do not receive the underlying user content that triggered those events.
04 How we use information
The limited information we collect via the Site is used to understand how visitors interact with our website (via anonymised analytics), to respond to enquiries and briefing requests, and to improve our services. We do not sell, rent, or share personal information with third parties for marketing purposes.
05 Data security
We implement appropriate technical and organisational measures to protect any information we hold. Our infrastructure uses encryption in transit (TLS 1.3) and at rest (AES-256). Access to systems is restricted on a least-privilege basis with multi-factor authentication. We undergo annual third-party security assessments.
06 Data retention
Analytics data collected via the Site is retained in aggregated form for up to 14 months, after which it is automatically deleted. Contact information provided via email is retained only as long as necessary to fulfil the purpose for which it was collected, typically no longer than 24 months.
07 Your rights
Under the UK Data Protection Act 2018, GDPR, and equivalent frameworks, you may have the right to:
- Access the personal data we hold about you
- Request correction or deletion of your personal data
- Object to or restrict the processing of your data
- Withdraw consent for analytics cookies at any time
- Lodge a complaint with the UK ICO or your national data-protection authority
To exercise any of these rights, contact us at privacy@redactgate.com.
08 Third-party services
Our Site uses Google Analytics 4 for anonymised website analytics, loaded only after you grant consent. We do not use any other third-party tracking, advertising, or data-processing services on the Site. The Extension does not load or interact with any third-party services at runtime.
09 Children's privacy
Our Site and Extension are not directed at individuals under the age of 16. We do not knowingly collect personal information from children. If you believe we have inadvertently collected such information, please contact us and we will delete it.
10 Changes to this policy
We may update this Privacy Policy from time to time. When we do, we will revise the 'Last updated' date at the top of this page and, for substantial changes, will announce them on the Site. We encourage you to review this policy periodically.