AI Memory Vault Privacy Policy
Effective date: August 20, 2026
Overview
AI Memory Vault is a browser extension and web dashboard that helps users save, rename, search, and reuse encrypted memory notes and saved AI chat context. This policy explains what user data is collected, how it is used, where it is stored, and which parties receive it.
Data Collected Or Processed
AI Memory Vault collects or processes the following user data only when needed for the product's core features:
- Account information: email address and authentication session data used for sign-up, sign-in, and password reset.
- Authentication information: the login password is sent to Supabase Auth over HTTPS for authentication. AI Memory Vault does not store the login password.
- Vault passphrase: the passphrase entered by the user is used locally in the browser to encrypt and decrypt memory content. It is not sent to Supabase or to the developer. The extension may store it locally on the user's device so the user does not need to retype it every time.
- Website content and personal communications: AI chat page text, conversation previews, saved chat names, selected memory notes, and prompt/context text are processed only after the user clicks extension actions such as Preview current chat, Save chat, Search, Use this chat, or Use Vault Context.
- User-generated content: manually entered memory notes, tags, confidence values, approval status, imported text, and saved chat titles.
- Extension settings: saved email address, Supabase project settings for self-hosted use, max memory count, default source, auto-approve preference, and local session state.
- Technical metadata: encrypted memory row IDs, user ID, timestamps, encryption version, initialization vector, and salt needed to store and retrieve encrypted memories.
How Data Is Used
User data is used only for AI Memory Vault's single purpose: allowing a user to save encrypted AI chat memories and reuse selected vault context in supported AI chat tools. Data is used to:
- Create and authenticate the user's account.
- Send password reset emails when the user clicks Forgot password.
- Preview chat content selected by the user.
- Encrypt memory content before storage.
- Download and decrypt the user's own memories after the user enters the vault passphrase.
- Search decrypted memories locally in the browser.
- Insert or copy selected context into the active AI chat page when the user requests it.
Storage And Encryption
Memory content is encrypted in the user's browser before it is uploaded for hosted storage. Hosted memory content is stored in Supabase as ciphertext with the related IV, salt, and version. Supabase also stores account data needed for authentication and row-level access control.
The vault passphrase is not sent to Supabase or to the developer. If a user forgets the vault passphrase, encrypted memory content cannot be recovered. Extension settings and local session data may be stored using Chrome extension storage on the user's device or browser profile.
Data Sharing And Third Parties
AI Memory Vault does not sell user data and does not use user data for advertising, tracking, creditworthiness, or lending decisions. User data is shared only as needed to provide the product:
- Supabase: receives email address, authentication requests, session data, password reset requests, profile rows, and encrypted memory rows for the hosted vault service.
- Chrome/Browser storage: stores extension settings, local session state, and locally saved vault passphrase on the user's device or browser profile.
- Supported AI chat websites: when the user clicks Use this chat or Use Vault Context, selected decrypted context may be inserted into the active chat input on sites such as ChatGPT, Claude, Gemini, or Copilot. If the user sends that prompt, the AI chat provider receives it under that provider's own terms and privacy policy.
AI Memory Vault does not send saved memory content to external LLM APIs by itself. The extension does not run background scraping. Chat content is processed only when the user opens the extension and chooses an action.
User Control
Users choose when to preview chat content, save chats, rename saved chats, save memory suggestions, search memories, insert context, export decrypted memories, or delete saved memories. Users may delete saved memories from the product. Password reset emails are sent only when the user requests them through Forgot password.
Retention
Account data and encrypted memory rows are retained while the user keeps an account and saved memories. Deleted memory rows are removed from the active Supabase database. Local extension data remains on the user's device/browser profile until the user signs out, clears extension data, or removes the extension.
Security
Data transmitted between the extension, web app, and Supabase uses HTTPS. Memory content is encrypted client-side before hosted storage. Access to hosted rows is restricted by Supabase Row Level Security so users can access only their own rows.
Limited Use Commitments
AI Memory Vault does not transfer user data for unrelated purposes. It does not use or transfer user data for personalized advertising, retargeting, interest-based advertising, creditworthiness, or lending. Human access to user memory content is not possible without the user's vault passphrase, except where required by law or where the user intentionally shares decrypted content for support.
Contact
Project page: https://github.com/ai-encryption-tool/ai