deja

privacy policy

Private by design — not by promise.

Last updated: July 18, 2026 · Applies to the Deja browser extension

The short version: Deja stores the prompts you type in a local database inside your own browser. It makes no network calls of any kind — nothing you type, and no usage data, ever leaves your machine. There is no server, no account, no analytics, and no third party. This page can be short because there is almost nothing to disclose.

What Deja collects and stores

What Deja never does

Built-in protections

Where your data lives, and how to delete it

Everything lives in your browser profile on your device. You are in full control:

Sites the extension runs on

Deja's content scripts run only on these sites — the list is auditable in the extension manifest:

PlatformHosts
ChatGPTchatgpt.com, chat.openai.com
Claudeclaude.ai
Geminigemini.google.com
DeepSeekchat.deepseek.com
Grokgrok.com

Permissions, explained

Data sharing and selling

Deja does not share, sell, or transfer your data to anyone — including us. Since no data ever leaves your device, there is nothing we could share even if we wanted to.

Changes to this policy

If Deja's data practices ever change (for example, an optional cloud-sync feature), this policy will be updated before that change ships, the "Last updated" date will change, and any new data flow will be strictly opt-in — never a silent default.

Contact

Questions or concerns: open an issue on GitHub, or use the feedback links inside the extension's settings — they open a prefilled issue you review and submit yourself; nothing is reported automatically.