Manage your privacy substitution mappings
Show your real data in AI responses
Alt+Shift+R
Quickly enable or disable all substitution
Alt+Shift+S
To change these shortcuts:
Chrome: chrome://extensions/shortcuts
Firefox: about:addons → gear icon → Manage Extension Shortcuts
Show a subtle underline on text that will be substituted
Automatically detect and redact API keys, tokens, passwords, SSNs, credit card numbers, and custom patterns
Define your own patterns to catch proprietary tokens, internal URLs with keys, or any format the built-in scanner doesn't cover.
Tip: For a URL like https://dns.example.com/abc123, use a pattern like dns\.example\.com/[A-Za-z0-9;]+ to match the secret path segment.
Warn when potential personal data (IPs, addresses, paths) is detected that you haven't configured
Automatically replace detected PPI with generic placeholders (192.0.2.1, 123 Example Street, etc.) when sending
Show a + button on detected PPI to instantly create a mapping with a suggested fake value
Number of activity log entries to keep
Keep your identities, mappings, and settings in sync across browsers.
Encryption is required for all sync channels. Set up a password (and optionally TOTP) before enabling any sync method. Authentication is only required when new data arrives and your cached key has expired.
Automatically sync via your browser account (Firefox Sync / Chrome account). Works across devices using the same browser.
Generate a code in one browser, paste it in another. Newest data wins automatically.
Pick the same folder in each browser once. Changes are written to
silent-send-sync.json automatically whenever settings change,
and read back whenever this page is opened or regains focus.
Works with any cloud storage that has a desktop sync client —
Dropbox, OneDrive, Google Drive, iCloud Drive, Box, pCloud, Nextcloud,
Synology Drive, or any network share. Just pick the cloud-synced folder.
Store settings in a private GitHub Gist. Works across any browser or device
with just a GitHub account. Create a
Personal Access Token
with the gist scope, paste it below, and click Push.
The Gist ID is remembered — future pushes update the same Gist.
Automatically push and pull settings on an interval. Uses the Gist or URL method configured above.
Any URL that supports HTTP GET (read) and PUT (write). Works with Nextcloud/ownCloud WebDAV, a self-hosted server, or a cloud function. Add custom headers (e.g. Authorization) as JSON if needed.
Devices that sync with this extension. The device list is shared via sync data.
Snapshots of your data are saved automatically on each sync. Restore a previous version if a sync overwrote something important.
Join an organization to receive required substitution rules and auto-redact patterns from your admin. Org rules merge with your personal rules and cannot be disabled.
Export all your identities, mappings, and settings to a file. Encrypted exports require a password to decrypt.
Import real values from a CSV, password manager export, or browser autofill export. Passwords are never imported — only usernames, emails, names, and domains. Imported values appear with blank substitutes so you can fill in fakes.
Manage all your substitution rules. Longer matches take priority.
| Real Value | Substitute | Category | Case | Enabled |
|---|
Imported passwords are automatically redacted when sent to AI services. Password values are hidden by default — enter your vault password to reveal them.
| Password | Redacted As | Enabled |
|---|
Add domains for self-hosted AI services (like OpenWebUI). The extension will activate on these domains in addition to the built-in ones.
When you add a domain, your browser will ask you to confirm access. No extra steps needed.
Require a separate admin password to disable the extension, clear data, or change org settings. This is a deterrent — it cannot prevent browser-level uninstall or dev tools access.
Clears all identities, mappings, settings, and logs. Cannot be undone.