返回首页

网页小助手隐私政策

English Privacy Policy

最后更新:2026-09-20 · 适用版本:2.0.1

本隐私政策适用于“网页小助手”Chrome 扩展。扩展只在用户主动授权的网站上工作,知识库、模型配置、缓存和会话默认保存在用户本地浏览器中。扩展不设自有服务器。

1. 我们是谁

本扩展由独立开发者开发与维护。支持邮箱:wangsenyan123@gmail.com。

2. 工作原理

用户可以在左侧网页小助手中重新学习当前页面、深度采集授权站点,也可以在设置中导入本地文档。当用户点击字段旁的“?”、在页面 AI 助手中提问、通过右键菜单发送选中文本,使用自动填表或确认发送截图时,扩展会把必要上下文发送到用户自己配置的大语言模型服务商。

3. 我们处理哪些数据

4. 敏感信息处理

填写辅助跳过密码类字段。页面填充图标默认关闭,由用户按网站开启;下拉选择框不显示填充图标。邮箱、电话、验证码、证件号等非密码字段不再统一排除,可能参与用户主动发起的填写辅助。

页面问答和知识库文本处理会尽量脱敏。自动填表时,用户主动提供的填写材料会发送给所配置的模型服务商,不进行统一脱敏,以便生成可填写的内容。脱敏不保证覆盖所有场景,截图也不保证自动遮盖敏感信息。

模型 API Key 保存在本地,并在获取模型列表、测试连接、问答及自动填表请求中发送至用户配置的接口用于认证。“仅本地存储”不表示密钥或请求内容从不经网络传输。扩展还会处理页面 URL、标题和最近网页标签状态,以定位用户操作的目标。请使用可信的 HTTPS 模型接口。

5. 登录态页面采集

页面学习和深度采集由用户点击对应操作启动,不保证每次都出现额外确认弹窗。若用户已经登录该网站,采集可能使用当前浏览器登录态读取用户授权域名内的页面。扩展不会内置远程采集目标,采集范围来自用户当前页面、用户授权域名、当前页面发现的同站链接或用户导入的本地文档。

6. 数据存储、传输与共享

本扩展对用户数据的使用仅限于提供和改进本扩展的单一用途:在用户主动授权的网站上,为表单字段和页面内容提供基于本地知识库与用户自配置大模型的填写建议和问答辅助。本扩展不会将用户数据用于与该用途无关的广告、画像、转售、信用评估或借贷目的。

7. Chrome Web Store Limited Use 披露

本扩展对个人或敏感用户数据的使用符合 Chrome Web Store User Data Policy(包括 Limited Use 要求):数据仅用于提供或改进本扩展明确说明的用户可见功能;仅在完成这些功能所必需时,由用户主动操作后传输到用户自己配置的模型服务商;不会用于个性化广告、再营销、兴趣画像、数据出售、信用评估或借贷用途;开发者不会人工读取用户页面内容、截图、知识库或对话数据,除非用户为排查问题主动提供并明确同意。

8. 权限用途

权限用途
storage本地保存配置、知识库、缓存、反馈、采集进度和会话状态。
activeTab用户点击扩展图标后,对当前标签页执行诊断、页面采集或上下文提取。
contextMenus在选中文本时追加“AI 搜索/向 AI 提问”菜单项。
scripting仅在用户授权站点上动态注册内容脚本。
tabs识别当前标签页、打开后台采集标签页、记录最近网页标签以恢复上下文。
unlimitedStorage支持用户创建较大的本地知识库和导入文档。
host_permissions: https://api.deepseek.com/*在使用 DeepSeek 时获取模型列表、测试连接及发送 AI 请求。此为安装包声明的主机权限。
optional_host_permissions: <all_urls>不在安装时请求。仅在用户主动授权站点、使用截图、页面采集或配置自定义模型 endpoint 时请求。站点启用和模型 endpoint 会按实际域名授权;当前截图流程可能在用户主动截图时额外申请较广的可选主机权限。

9. 数据保留与删除

答案缓存默认 7 天后不再用于回答,过期不表示立即从本地存储删除。用户可以在设置页删除知识库、移除白名单域名,并修改或删除模型配置;当前设置页不提供单独的清空缓存按钮。截图默认作为用户确认发送的附件,不会自动长期保存到知识库。卸载扩展会删除 Chrome 为扩展保存的本地数据。

删除本地配置或卸载扩展不会自动删除模型服务商已经接收的数据;其保留期限及删除方式由服务商政策决定。API Key 使用浏览器扩展本地存储,本扩展不提供额外的密钥加密保险库。

10. 联系我们

如有隐私问题,请通过 wangsenyan123@gmail.com 联系。

Web Helper Privacy Policy

Last updated: September 20, 2026. Applies to version 2.0.1.

Purpose and Developer

Web Helper provides page understanding, question answering, and related form-filling assistance using authorized website content, a local knowledge base, and a model service configured by the user. It is maintained by an independent developer. Contact: wangsenyan123@gmail.com.

Data We Process

The extension stores website preferences, model configuration and API keys, imported document text, captured page titles, URLs and text, knowledge-base excerpts, cached answers, feedback, and task state in local browser storage. Chat history is stored in browser session storage and is cleared when the browser closes.

To identify the target of an extension action, it locally updates the most recent web tab's ID, URL, title, window ID and update time on tab activation or page loading. This state is not limited to enabled websites. It is a latest-tab record rather than a complete browsing-history list.

User-initiated requests may include questions, selected text, field information, page excerpts, recent conversation context, knowledge-base excerpts, form-filling input, and attached screenshots. Imported documents and authorized signed-in pages may contain personal or business information.

Model Requests and Sharing

API keys are stored locally and sent to the user-configured endpoint for authentication when fetching model lists, testing connections, or making AI requests. Local storage does not mean these credentials never travel over the network. The extension does not provide an additional encrypted credential vault. Use trusted HTTPS endpoints.

Questions and relevant context are sent directly to the configured model service to fulfill the user's request. Image-capable models can receive attached screenshots when the user submits them. Other models receive available text context instead. The developer operates no data backend for receiving this content. The selected provider's terms govern its processing, retention and deletion of received data.

Form Filling and Sensitive Content

Field-hint icons are off by default and can be enabled per website. Password fields are excluded from filling assistance, and select or combobox controls do not display field-hint icons. Other inputs, including email addresses and phone numbers, may participate in filling assistance.

Text supplied by the user for automatic filling is sent to the selected model without uniform redaction so that it can be used to generate field values. Other text-processing paths attempt redaction, but cannot guarantee removal of every sensitive value. Screenshots are not guaranteed to have sensitive details masked. Only process content you are authorized to share.

Page Capture and Permissions

Page learning and deep capture start when the user activates the corresponding action; an additional confirmation dialog is not guaranteed for each operation. Capture may use the browser's existing signed-in session to read authorized pages. Content scripts are registered for enabled, authorized sites.

Storage permissions support local settings and knowledge bases. Tab access identifies the relevant page, maintains the recent-tab record, opens and closes background capture tabs, and restores the sidebar after initial setup. Scripting enables in-page functionality, context menus provide selected-text questions, and active-tab access supports user-triggered page operations. Unlimited storage accommodates larger local knowledge bases.

The package declares access to api.deepseek.com for users who configure that service. Access to other websites and model endpoints is requested as needed. The current screenshot workflow may request the broad optional <all_urls> permission when the user initiates capture; this optional permission is not granted at installation.

Retention and Control

Local knowledge bases and configuration remain until removed or replaced by the user or cleared with extension data. Cached answers expire after seven days; expired entries may remain stored until extension data is cleared. The latest-tab record is replaced as the relevant tab changes. Screenshots are not automatically archived into the knowledge base.

You can remove knowledge bases and websites and edit or delete model configurations in settings. There is no separate clear-cache button in the current settings screen. Uninstalling the extension removes its browser-managed local data, but does not delete information already received by a model provider. Contact that provider about its deletion procedures.

Limited Use

Data use is limited to the disclosed user-facing purpose, in accordance with the Chrome Web Store User Data Policy, including Limited Use requirements. User data is not sold or used for advertising, profiling, creditworthiness or lending decisions. The developer does not read page content, screenshots, knowledge bases or conversations unless the user voluntarily provides them and consents to troubleshooting. No remote executable code is downloaded as part of model requests.