Privacy Policy
Last updated: September 15, 2026
ChromeKeePass is designed to keep password generation, form assistance, and KeePass communication local to your device. ChromeKeePass does not operate a cloud service for storing your passwords or credentials.
Data processed by the extension
To provide its core features, ChromeKeePass may locally process the current website URL, login identifiers such as usernames or email addresses, passwords returned by your local KeePass database, password-field metadata, and nearby signup-form text. This processing is used only to find matching KeePass entries, fill credentials when requested, and detect when to offer a secure password suggestion.
KeePass integration
ChromeKeePass communicates only with the KeePassHttp service configured on your own computer, normally through 127.0.0.1 or localhost. Requests containing credential-related fields are encrypted using the KeePassHttp association key before being sent to the local service. ChromeKeePass does not send KeePass credentials to ChromeKeePass servers.
Password generation
Generated passwords are created locally in your browser using the browser's cryptographic random number generator. Generated passwords are not transmitted to ChromeKeePass servers. When you choose to use or copy a generated password, it may be inserted into the active form and/or written to your device clipboard.
Signup form detection
The extension locally inspects password input fields, field metadata, and limited nearby page text to determine whether a page appears to contain an account-creation form. This information is not sent to ChromeKeePass servers.
Local storage
ChromeKeePass uses Chrome local extension storage to keep extension preferences and KeePassHttp association information, including the local endpoint, association identifier, cryptographic association key, and related connection settings. ChromeKeePass does not intentionally store your KeePass passwords or website credentials in its local extension storage.
Clipboard
ChromeKeePass may write a password to your clipboard when you explicitly use a copy action or when the password-generation workflow attempts to make the newly generated password available for copying. Clipboard contents are handled locally by your device.
Remote code and analytics
ChromeKeePass does not load or execute remote JavaScript or WebAssembly code. The extension does not include advertising, analytics, or third-party tracking services.
Data sharing and sale
ChromeKeePass does not sell user data. ChromeKeePass does not transfer user data to third parties for advertising, creditworthiness, lending, or purposes unrelated to the extension's core functionality.
Website
The ChromeKeePass website is a static website and does not intentionally collect personal information, create user accounts, or include advertising or analytics scripts by default. The hosting provider may process standard technical request logs such as IP address, browser type, requested URL, and request time for security, reliability, and abuse prevention.
Changes to this policy
This policy may be updated when ChromeKeePass changes. If a future version adds cloud synchronization, analytics, or other data-processing features, this policy will be updated before those features are released.