Legal

Privacy Policy — GuardStone

Last updated: July 16, 2026

This Privacy Policy explains how the GuardStone Chrome extension ("the Extension", "we", "us") handles information when you install and use it. By installing the Extension you agree to the practices described here.

The Extension is a productivity companion for the Lovable (lovable.dev) web application. It runs only on Lovable pages and is not designed for use on any other website.

1. Information we access

+

The Extension accesses the minimum data required to work:

  • License key — the activation key you paste into the Extension login screen. Stored locally on your device via chrome.storage.local and browser localStorage.
  • User preferences — Monitor ON/OFF state and UI settings, stored locally on your device.
  • Page context on lovable.dev — the Extension reads and augments the Lovable chat/editor UI to add shortcuts, prompt optimizations, and workflow tools. It does not scrape unrelated browsing history.
  • Network requests to Lovable's chat API — when the Monitor is ON, the Extension observes prompts you send from the Lovable chat and can forward them through our backend proxy to add features (e.g. prompt optimization, guardrails). The Monitor can be disabled at any time from the Extension UI.

2. Information we do NOT collect

+
  • We do not collect browsing history from other websites.
  • We do not read cookies, passwords, or form data outside lovable.dev.
  • We do not access your webcam, microphone, location, or clipboard.
  • We do not sell, rent, or share personal data with advertisers.
  • We do not use the data for advertising, profiling, or credit scoring.

3. Permissions we request and why

+
  • storage — to save your license key and preferences locally so you don't have to re-enter them on every page load.
  • host permission for https://lovable.dev/* and https://*.lovable.dev/* — required to inject the Extension UI and helper scripts into the Lovable app. The Extension does not run on any other domain.

4. How your data is used

+
  • License key is sent to our backend only to validate activation and enforce plan limits.
  • Prompt content (when Monitor is ON) is forwarded to our backend proxy only to deliver the requested feature (e.g. optimization) and is not stored beyond what is needed to fulfill the request and for standard security/abuse logs.
  • All communication with our backend happens over HTTPS.

5. Third-party services

+

The Extension communicates with:

  • Our own backend hosted on guardstone-admin.lovable.app and Supabase (license validation, proxy, and configuration).
  • Lovable (lovable.dev) — the site the Extension enhances. We do not control Lovable's own privacy practices.

6. Data retention

+

License records and minimal request logs are retained only as long as necessary to operate the service, prevent abuse, and comply with legal obligations. Local data can be cleared at any time by removing the Extension.

7. Your rights

+

You can uninstall the Extension at any time to remove all locally stored data. To request deletion of license or account data on our backend, contact us at the address below.

8. Children

+

The Extension is not directed to children under 13 and we do not knowingly collect data from them.

9. Changes to this policy

+

We may update this policy from time to time. The "Last updated" date at the top will reflect any changes.

10. Contact

+

Questions or data requests: supporthub24@gmail.com · Website: guardstone-admin.lovable.app