Privacy
Context Pack Privacy
Last updated: October 2, 2026
Version scope: This page describes Context Pack 1.3.0, including its explicit context-menu and keyboard capture paths and bounded direct-HTTPS-PDF behavior.
Context Pack handles the contents of PDF, DOCX, Markdown, and text files you choose. After you explicitly choose Capture page or Capture selection, it also handles readable website content, the page title, links, and the current URL. The complete current URL is read transiently and locally so content links can be resolved; credentials, the full query, and the fragment are removed from the source URL before review, retained state, or export. This data is used only to build the context pack you requested.
Supported local documents, ordinary captured pages and selections, Markdown normalization, and token estimation are processed inside the Chrome extension. The only 1.1.0 network exception is the explicit HTTPS direct-PDF request described below.
What stays local
- Document and captured-page contents are not uploaded.
- There is no account, sync, analytics, advertising, or tracking integration.
- Working content, URLs, tab IDs, source lists, and generated Markdown remain in the open workspace and are not written to browser storage. Closing or reloading always discards the editable session. Copying or downloading keeps only the exported Markdown, not that session.
- After the first-run guide is closed, one non-content local preference prevents it from reopening automatically. It contains only the guide-completed value, can be cleared with browser data, and is not used for tracking or sync. Help can reopen the guide without changing the current pack.
- Clipboard content and downloaded Markdown created at your request remain under your control.
- Copy and download happen only after you choose them.
1.2.0: dashboard text and Markdown Preview
These features are included in Context Pack 1.2.0. Permissions, in-memory storage and the direct-HTTPS-PDF request boundary are unchanged.
Supported visible action labels, selected non-editable choice labels, and disabled/pressed/expanded states may enter reviewed Markdown. Labels and choice summaries are capped at 200 Unicode code points and carry a simplification warning. Input values, editable regions, hidden choices, option values, form names and arbitrary attributes stay excluded. Visible labels can still contain private information: this is not automatic PII redaction. Complex tables may become row/cell text with span annotations and a warning.
Markdown Preview uses packaged Marked in a disposable local worker and creates only allowlisted DOM nodes. HTML is displayed as text; images become alt text and are not loaded. Preview makes no HTTP(S) source requests. Allowed HTTP, HTTPS and mailto links open only on user click, without opener/referrer access. Preview never changes copied/downloaded Markdown or persists the pack.
1.3.0: table review, Quick Copy and links
These features are included in Context Pack 1.3.0. No new permissions, persistent content storage or source-request path are added. The existing direct HTTPS PDF exception remains unchanged.
Explicit table and link capture reads visible content only in the invoking main frame after DOM/range safety checks. Capture selected table uses highlighted content to identify exactly one whole sanitized outer table, not just selected cells; invalid/ambiguous selections are rejected. Menus are restricted to HTTP/HTTPS document/frame URLs; non-matching frames such as about:srcdoc offer no action and trigger no workspace guidance. Received unsupported editable/iframe selected-table events send only a bounded refusal reason for workspace guidance, without reading content or running capture code. No passive page hook or injected picker is added. Hidden/editable/form-input content and out-of-table referenced labels are excluded; preflight still measures live form-value lengths transiently. Visible content may be private: this is not automatic PII redaction. Links are sanitized without opening or fetching their destinations; some content-identifying query parameters may remain.
Pending table choices, sanitized link records, filters and edited drafts stay in workspace memory and are cleared on Add, Cancel, close or reload. An accepted table or link list becomes one retained source. Preview uses packaged workers, makes no source requests, displays HTML as text and does not load images.
Quick Copy exports the current page/selection/table/link draft without adding a source. Copy URLs locally parses the current edited Markdown for unique safe HTTP/HTTPS destinations; Copy Markdown exports the draft exactly. Neither is PII redaction. User-directed clipboard exports can outlive the workspace or be retained by the operating system or other applications; they are not extension content persistence. See the capture workflow.
Page and selection access — public 1.1.0 baseline
Version 1.1.0 requests exactly activeTab, contextMenus, and scripting. Chrome grants temporary activeTab access to the current page when you invoke the extension. Open current pack opens a new empty workspace when none is loaded or focuses the current workspace, without reading a page. Popup, context-menu, and keyboard capture actions explicitly open or focus that workspace and read only the invoking tab's main frame for local review. When no capture, review, or conversion is pending, later invocations from other tabs target the same current workspace; a busy attempt does not replace current work. It requests no host, browsing-history, storage, account, or persistent-content-script permission.
After you request page or selection capture, a local safety preflight measures the relevant main-frame DOM boundary before cloning. For page capture, the safety preflight traverses main-frame DOM text and attributes and measures the UTF-16 length of current input and textarea values. For selection capture, it traverses the selected range plus required boundary and inline ancestors and measures the same copied live-value state within that boundary. Chrome can copy those values even when they are absent from DOM text and attributes. This measurement is used only to reject oversized content safely. Form values and interactive controls are omitted and never enter review, retained source state, or export. For a visible switch, checkbox, or radio control, only its bounded accessible label, non-value state such as on/off, checked, mixed, or selected, and whether it is actually disabled may be converted to plain text, including when the control appears inside an omitted form.
Captured content links keep only http:, https:, or mailto: targets. Credentials, fragments, and recognized tracking or secret-bearing query keys are removed. Other query parameters may remain when they identify visible source content, so review retained links before adding a capture.
Explicit capture controls and direct PDF
contextMenus is used only to expose user-invoked Capture this page and Capture selected text actions. An event-driven service worker routes those actions and keyboard page capture (Windows/Linux Alt+Shift+M; macOS Option+Shift+M) to the same in-memory, review-before-add workspace. It does not persist page content, URLs, tab IDs, source lists, or Markdown.
When the active top-level tab is a direct HTTPS URL without an embedded username or password, its path ends in .pdf, and you explicitly request page capture, Context Pack makes exactly one HTTPS request to that same active URL. The request may include the current site's credentials, uses no referrer, bypasses cache, and rejects redirects. The response must be application/pdf, contain a recognizable PDF signature, and remain within 20 MB; the request times out after 30 seconds.
The source site's origin receives that request. PDF bytes are parsed locally and are not sent onward to TryAIBlock, analytics, advertising, or another processing service. Extension code never reads or retains cookie values. The complete request URL is used transiently; credentials, query, and fragment data are removed from the source URL shown in review, retained state, and export.
HTTP direct PDF URLs are not fetched. Download the PDF in the browser and add it as a local file instead. Embedded, custom, blob:, DRM-backed, redirected, non-PDF, and inaccessible viewers use the same download-and-import fallback. Context Pack does not crawl links or fetch pages in the background.
Ordinary page and selection capture and local-file conversion make no HTTP(S) requests. The 1.1.0 Content Security Policy permits HTTPS connections only for this explicit direct-PDF path.
Limited Use
Information received through Chrome APIs is used only to provide the page or selection capture you request. It is not transferred, used for advertising, or made available for human review. This use follows the Chrome Web Store User Data Policy, including its Limited Use requirements.
Packaged processing
PDF.js, PDF workers and data assets, Mammoth, the DOCX worker, Markdown converters, browser capture, and the o200k_base tokenizer are packaged with the extension. No executable code is fetched. Version 1.1.0 permits only the explicit HTTPS direct-PDF data request described above in addition to packaged extension resources.
Website hosting
This page describes the extension. The website itself contains no analytics or advertising scripts; its hosting provider may process basic request metadata to deliver and protect the site.
Contact
Email support@tryaiblock.com.