Effective July 17, 2026
Privacy Policy
This policy explains what ReadPenn AI processes when you use the website, Chrome extension, and hosted audit service.
1. What ReadPenn processes
When you start an audit, ReadPenn processes the webpage you selected, including:
- Screenshots captured from the selected page;
- the page URL;
- design and accessibility details derived from the page, such as headings, labels, colours, image metadata, calls to action, and detected interface issues; and
- the brief, audience, or intended emotion you enter.
During the current beta, the extension creates a random installation identifier in your Chrome profile. The service stores only a one-way hash of that identifier, first and most recent activity dates, extension version, and audit count. This lets us count active installations without requiring your name or email. We also process feedback you choose to submit. Security rate limits use one-way values rather than storing the raw identifier or raw IP address in the rate-limit record.
2. Chrome permissions
The extension requests access needed to inspect the active page, capture the page for an audit, keep local audit history, and display the side panel. It acts when you open or use ReadPenn; it does not sell browsing activity or use it for advertising.
3. How information is used
- Generate the audit you requested;
- count active installations and audits;
- enforce usage and security limits;
- maintain, troubleshoot, and improve the service; and
- respond to support and privacy requests.
ReadPenn does not sell personal information or use audited webpage content for targeted advertising.
4. Service providers
ReadPenn shares only the information needed to operate with these providers:
- Anthropic processes audit screenshots and accompanying context to generate the report.
- Vercel hosts the website and API.
- Supabase provides the anonymous installation, usage, and feedback database.
Information may be processed in countries where these providers operate and under their applicable terms.
5. Retention
- ReadPenn does not save audit screenshots in its application database after returning the report.
- Audit history and the random installation identifier are stored locally in your Chrome profile until you clear extension data or remove the extension.
- Under Anthropic's standard commercial API terms, API inputs and outputs are automatically deleted from its backend within 30 days, subject to stated safety, legal, or separately agreed exceptions.
- Hashed installation activity, usage, and feedback records are kept only while reasonably needed to understand the beta, operate and secure the service, or respond to a valid request.
6. Your choices and requests
Only audit pages you are authorised to share. Do not audit pages containing passwords, payment details, medical information, confidential client material, or other sensitive data. Because the installation identifier is anonymous and one-way hashed, we may need the identifier from your extension to locate a deletion request. Contact matildaanashie@gmail.com for help.
7. Security and children
ReadPenn uses reasonable technical and organisational safeguards, but no online service can guarantee absolute security. The service is not directed to children under 13, and we do not knowingly collect their personal information.
8. Changes and contact
We may update this policy as ReadPenn changes. The revised effective date will be posted on this page. Questions or privacy requests can be sent to matildaanashie@gmail.com.