Privacy at Agentcy

We believe people should be able to embrace AI confidently without sacrificing visibility, oversight, or trust.

SafeAI is designed to help organizations identify risk while collecting only the minimum information needed to detect and redact sensitive data and apply organization policies.

SafeAI operates where supported AI work happens.

SafeAI Prompt Guard is designed to run only on supported AI platforms and related SafeAI testing environments. It looks for supported prompt and chat input areas on those platforms and is not designed to monitor unrelated websites.

When connected to a workspace, SafeAI may analyze prompt content entered into supported AI tools to help identify sensitive information, policy-related events, and potential organizational risk.

Sensitive information is handled thoughtfully.

SafeAI includes built-in detection for common forms of sensitive information, such as email addresses, phone numbers, SSN-like patterns, and unusually large prompts. Organizations may also configure additional workspace rules, including keyword, pattern, and context-based detections.

When potential sensitive information is identified, SafeAI presents a warning along with a safer redacted preview so the user can review, revise, dismiss, or continue with the prompt.

The dashboard shows useful context, not unnecessary detail.

Incident activity is designed to provide useful security and policy context without exposing unnecessary detail. Records may include redacted prompt previews, timestamps, supported AI platform information, matched policy or detection rules, detected categories, risk classifications, and related guard actions.

Policy acknowledgement activity and extension status information help authorized workspace users understand whether SafeAI is connected and whether organization policies have been acknowledged.

Frequently Asked Privacy Questions

Who operates SafeAI and Agentcy services?

+

These services are operated by Agentcy LLC (“Agentcy,” “we,” “our,” or “us”).

What information may SafeAI receive?

+

SafeAI may send limited workspace, account, and incident-related information to the backend to support security, visibility, and organization policy features. This may include workspace and user identifiers, extension status activity, supported AI platform details, event classifications, risk and severity indicators, matched policy or detection rules, policy acknowledgement activity, and redacted incident previews.

For account and workspace access, Agentcy uses authentication and organization information such as signed-in user identifiers, email addresses, names, organization membership, workspace roles, invitations, and account entitlement settings.

What does SafeAI store?

+

Incidents are stored with a short preview of the prompt event. When SafeAI detects specific sensitive values, those values are replaced with placeholders before the preview is sent.

Policy acknowledgements store the linked user, workspace, source domain, timestamp, and policy version. Extension status records store the linked installation, user, status, and last-seen time so admins can see whether connected browsers are active.

How does SafeAI redact sensitive data?

+

SafeAI replaces detected sensitive values with plain placeholders such as [EMAIL], [PHONE], [SSN], [NAME], [ADDRESS], or a category-based placeholder. The redacted preview is what gets sent with an incident record.

Some signals, such as a large prompt warning, may not have a specific value to replace. In those cases SafeAI records the risk signal and item count rather than trying to rewrite the whole prompt.

Who can see SafeAI information?

+

Workspace information is designed to remain separated by organization, with dashboard visibility scoped according to the active workspace and user role.

Access to workspace activity and administrative features is role-based. Organization owners and administrators may have broader visibility into workspace activity, policies, extension health, and team management features, while standard users are limited to the information and actions appropriate for their assigned role.

What online AI tools does SafeAI monitor?

+

SafeAI currently supports monitoring on the following web-based AI tools: ChatGPT, Claude, Gemini, Grok, Meta AI, and Perplexity.

Does SafeAI monitor my browsing activity outside of AI tools?

+

No. SafeAI does not monitor browser activity outside of supported AI tool websites: chatgpt.com, claude.ai, gemini.google.com, grok.com, grok.x.com, meta.ai, and perplexity.ai.

Does Agentcy sell customer data or use it for advertising?

+

Agentcy does not sell customer data.

Agentcy does not use monitored prompt content, redacted incident snippets, workspace rules, or policy activity for advertising.

How does SafeAI handle security and access?

+

SafeAI uses authenticated access controls, workspace roles, organization-scoped records, and secure extension-to-workspace linking to help protect customer data and limit access appropriately.

SafeAI is designed to maintain secure connections between browser extensions and authorized workspaces. When an extension is disconnected or unlinked, the associated connection is deactivated and browser check-ins are designed to stop after the local connection is removed.

How does SafeAI handle data retention and deletion?

+

SafeAI stores workspace-related records needed to support dashboard functionality, organization policies, extension management, incident visibility, and related workspace activity.

Data retention and self-service deletion controls are still evolving as the platform develops. Customers may contact Agentcy with privacy, retention, or deletion questions while additional controls are being finalized.

Does Agentcy utilize any third-party services?

+

Agentcy uses trusted third-party services to support account authentication, secure sign-in sessions, workspace invitations, and platform infrastructure.

The SafeAI dashboard communicates with backend services that support workspace functionality, organization management, incident visibility, and related platform features. Infrastructure and hosting providers may vary depending on the deployment environment used by your organization.

What controls do users and admins have?

+

Users can choose how to respond to a SafeAI warning, including fixing the prompt with redaction, reviewing the warning, ignoring it, or dismissing it. Users can also unlink the browser extension from its options page.

Owners and admins can manage workspace access, invite teammates, view extension connection status, and configure workspace detection rules and presets.