Docs
Privacy and security
The short version is on the homepage. This is the long one, written for the person who has to approve the extension.
What leaves your browser
- The flow's saved metadata, to the AI provider you chose, under your key, with every question. With Anthropic or Google, also when a flow opens in the panel or you change the model, to check the flow fits the model you picked. That is element names, labels, descriptions, formulas, default values, and whatever text the flow's author typed into it. No records, no data from the objects the flow touches.
- Your question, the earlier turns of the chat, and any instructions you wrote in Settings, to the same provider.
- Your API key, on its own, to the provider that issued it: when you add it, and at most once a day after that, to get its list of models.
- Nothing else. There is no account, no server of ours, no telemetry, and no analytics. We never see your key, your flow, or your conversation.
Your Salesforce session
The extension uses the session you already have to read the flow from your own org through Salesforce's API. That session is sent only to your org's own My Domain hosts and never anywhere else. It is never stored.
Your API key
Kept in Chrome's extension storage on your computer. With Remember this key off, it lives in session storage and is gone when Chrome closes. Forget everything on this computer in Settings removes every key, every chat, and every setting. It is the only way to remove a saved key today; removing one key on its own, keeping the chats, is planned for a later version.
Permissions
Three: cookies, to read the Salesforce session; sidePanel, to be a side panel; storage, for the key and the chats. Host access is limited to your Salesforce My Domain hosts and the three providers. There is no access to other tabs or to browsing history.
What Chrome enforces
The extension ships a content security policy that Chrome applies whatever this page says: the panel may connect only to the Salesforce hosts and the three providers, and may load nothing from anywhere else, no remote scripts, images, fonts, or frames. Anything the model returns is rendered as sanitised text; it can never run as code in the panel.
How to check
- The permission list at
chrome://extensions. - DevTools on the panel, where every request it makes is visible.
- The source, which is public on GitHub under the GPL-3.0 licence, with its tests, its grounding checks, and its security review. Installing and using the extension carries no obligation under that licence; its conditions fall only on someone who redistributes a changed version.
Reporting a problem
Email support@getflowcompanion.com. Expect an acknowledgement within three business days.
The full privacy policy is the formal statement of all of this.