Privacy Policy
ScamShield ("we", "our", "the extension") is a Chrome browser extension that helps job seekers identify potentially fraudulent job postings, recruiter messages, and profiles. This policy explains what data we collect, how we use it, and what we do not do with it.
1. What We Collect
Scan content. When you trigger a scan, the text content of the job posting, recruiter message, or profile currently visible on your screen is sent to our backend API for analysis. This content may include job titles, descriptions, salary figures, company names, and recruiter-provided text. We do not collect your name, LinkedIn credentials, email address, or any personal account information from these platforms.
Scan results. Analysis results (verdict, score, flags, reasoning) are cached on our server for up to 6 hours, keyed by a hash of the content — not by any personal identifier. This prevents redundant API calls for identical content.
Waitlist email (optional). If you submit your email address via the waitlist form on our landing page, that address is stored by Formspree and forwarded to us at team@scamshield-app.com. We use it only to notify you when the extension launches or updates. We do not sell or share this address.
Usage data. We do not collect browsing history, page URLs, keystrokes, or any data beyond the content you explicitly choose to scan.
2. How We Use It
- To analyze submitted content for scam indicators using Claude AI (Anthropic)
- To cache results and reduce repeated API calls for identical content
- To send launch and update notifications to waitlist subscribers
We do not use scan content to train AI models, build user profiles, serve advertising, or sell to third parties.
3. Third-Party Services
Anthropic (Claude AI). Scan content is sent to Anthropic's API for analysis. Anthropic's data handling is governed by their privacy policy. We do not send any personal identifiers alongside content.
Formspree. Waitlist email submissions are processed by Formspree. Their privacy policy applies to data they receive.
Vercel. Our landing page is hosted on Vercel. Standard server access logs (IP address, request path, timestamp) may be retained by Vercel per their data retention policy.
4. Data Retention
- Scan content: not stored beyond the API request lifecycle
- Cached results: up to 6 hours, keyed by content hash only
- Waitlist emails: retained until you unsubscribe or request deletion
5. Your Rights
To request deletion of your waitlist email or ask any question about your data, contact us at team@scamshield-app.com. We will respond within 30 days.
6. Children
ScamShield is not directed at children under 13. We do not knowingly collect data from children.
7. Changes to This Policy
We may update this policy as the product evolves. Material changes will be noted by updating the "Last updated" date above. Continued use of the extension after changes constitutes acceptance.
Questions? Contact us at team@scamshield-app.com