Back to home

Privacy Policy

Last updated: 2026-10-03

TL;DR: InnerAgents (the browser extension and the mobile apps) is local-first. Your conversations, API keys, and settings are stored on your device — API keys in the device's secure storage on mobile. External connections are only made to services you explicitly configure: your AI provider, your MCP servers and, if you choose, Google Drive sync. Anonymous usage statistics (no message content, no personal data) are opt-out on the extension and opt-in on the mobile apps.

1. What data InnerAgents accesses

Browsing content — with your action only

InnerAgents requests access to all URLs (<all_urls>) exclusively to:

  • Read the content of the page you are viewing, when you click "Page" or when a URL rule you configured triggers an injection
  • Capture a screenshot of the active tab when you click "Screen"
  • Execute scripts on a page when a Skill you created explicitly requests it (with your prior consent per API)

InnerAgents does not monitor your browsing, track visited pages, or collect any data passively.

Text selections

When you right-click a selection and choose "Ask agent", the selected text is stored temporarily in chrome.storage.session and sent to the model in your next message only.

2. Data stored locally on your device

All data is stored on your device. Nothing is synced to external servers by InnerAgents, unless you turn on the optional Google Drive sync (see section 3).

DataStorageRetention
Provider API keyschrome.storage.local (extension) · iOS Keychain / Android Keystore (mobile apps)Until you delete the provider
Agent configurationschrome.storage.localUntil you delete the agent
Conversation historyIndexedDB (on-device)Up to 50 conversations per agent
Agent memorieschrome.storage.localUntil you clear them
MCP server credentialschrome.storage.local (extension) · Keychain / Keystore (mobile apps)Until you delete the server
OAuth tokens (MCP) and account sessionschrome.storage.local (extension) · Keychain / Keystore (mobile apps)Until you disconnect
Anonymous analytics UUIDchrome.storage.localUntil you clear extension data (contains no personal data)

On the mobile apps, API keys, credentials and session tokens live in the operating system's secure storage (iOS Keychain, Android Keystore), not in the app's ordinary storage. On iOS they are never copied into a device backup or iCloud Keychain, and they remain on the device after you delete the app until you remove them in the app or erase the device.

3. External connections

InnerAgents connects to external services only at your direction:

LLM providers

Your messages are sent directly to the API of the provider you configured (e.g. api.anthropic.com, api.openai.com). No InnerAgents server logs, stores, or inspects these requests.

On the mobile apps, InnerAgents asks for your explicit permission the first time you send a message to a given provider. It tells you which service will receive your messages, the files you attach, and the notes or tool results your agent reads. The provider's own privacy policy applies to that data.

MCP servers

If you configure MCP servers, InnerAgents connects to the URLs you provided, on demand, when the agent needs to use a tool.

Web fetch / Web search

When an agent uses web_fetch or web_search, InnerAgents fetches the requested URL or calls the Brave Search API using your configured key. These are explicit, agent-triggered actions.

OpenRouter model pricing (optional)

If you have an OpenRouter provider configured, InnerAgents performs a read-only fetch to openrouter.ai/api/v1/models to display pricing in the model selector.

Sign in with Google and Drive sync (optional)

If you choose to sign in with Google to sync your settings between your devices, InnerAgents requests access to your Google account's name and email address (to identify you) and to a private application-data folder in your Google Drive (drive.appdata). This folder is hidden, is created by InnerAgents, and cannot be used to read, list or modify any of your own Drive files.

InnerAgents stores there only your own InnerAgents data (agents, settings, notes and, if you enabled it, conversations), optionally encrypted with a passphrase that only you know. This data is used only to provide synchronisation between your devices. It is not sent to the InnerAgents developer, not shared with third parties, not used for advertising, and not used to train AI models.

InnerAgents' use of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.

Organization accounts (optional)

Some builds offer an optional sign-in for people whose employer has set up an InnerAgents organization account. It is off by default and never required. When you sign in, your work email domain (not your full address), your user ID, your organization ID and, if applicable, your admin role are sent to the identity provider and to a small backend that we operate, to route your sign-in and deliver the agent catalogs your organization shares. Your agents, conversations, API keys and other credentials are never sent. Signing out removes the organization's catalogs and forgets the session.

Biometric lock (mobile apps)

On the mobile apps you can optionally lock InnerAgents with Face ID, a fingerprint or your device passcode. The check is performed by your operating system; InnerAgents never receives or stores biometric data, only whether the check succeeded.

Anonymous usage analytics (opt-out on the extension, opt-in on mobile)

InnerAgents sends anonymous usage events (e.g. extension opened, message sent, feature used) to Google Analytics 4 via the Measurement Protocol (www.google-analytics.com/mp/collect).

These events contain no message content, no API keys, no URLs you visit, and no personal data of any kind. The only identifier is a random UUID generated at install — it cannot be linked to your identity.

You can disable analytics at any time in Settings → General → Telemetry. Disabling takes effect immediately. On the mobile apps, analytics are off by default and only start if you turn them on there.

Error monitoring (opt-out)

InnerAgents uses Sentry (ingest.de.sentry.io) to capture anonymous crash reports and unhandled errors. This helps identify and fix bugs affecting users.

Error reports contain the stack trace of the error, the extension version, and the browser context (sidepanel or background). They contain no message content, no API keys, no URLs you visit, and no personal data.

Error monitoring is governed by the same Settings → General → Telemetry toggle as analytics. Disabling it stops all error reports from being sent. Error monitoring runs in the browser extension only; it is not active in the mobile apps.

4. What InnerAgents does NOT do

  • Does not include message content, API keys, or personal data in analytics events
  • Does not send your conversations, API keys, or settings to InnerAgents servers (the only servers we operate are the optional organization-account services described above, which receive account and catalog data only)
  • Does not track which websites you visit
  • Does not sell or share your data with any third party
  • Does not use cookies
  • Does not require account registration (signing in is always optional)

5. Your choices and deleting your data

  • Analytics and error reports: turn them off (extension) or on (mobile) in Settings → General → Telemetry.
  • Data stored on your device: delete a provider, agent, conversation or note in the app to remove it. Removing the extension, or deleting the mobile app, removes the app's data on the device (on iOS, the Keychain items remain until you remove them in the app or erase the device).
  • Data synced to your Google Drive: in the app, Settings → Account → "Delete my synced data" erases everything InnerAgents stored in that Drive folder and signs you out. You can also revoke InnerAgents' access at any time from your Google Account's security settings.
  • Data sent to an AI provider: it is governed by that provider's policy; deleting the provider in InnerAgents stops any further sending.

6. Children's privacy

InnerAgents is not directed at children under 13 and does not knowingly collect data from them.

7. Changes to this policy

If this policy changes materially, the "Last updated" date will be updated. Continued use after changes constitutes acceptance.

8. Contact

Privacy questions: contact@frontastic.com