Keepframe
Privacy Policy · Last updated: August 25, 2026
Privacy Policy
Keepframe is a Chrome browser extension that adds an AI companion for YouTube: live concept cards,
transcript access, and AI-generated study materials (Brief, Study Notes, Full Summary) shown alongside
the video you are watching. The service is provided by Keepframe (keepframe.one), which
acts as the data controller for the processing described in this policy. This policy explains what data
Keepframe processes, why, and who processes it on our behalf.
We designed Keepframe to work without accounts. We do not ask for your name, email
address, or any profile information to use the product.
1. What We Process
- Anonymous identifier — when you first use Keepframe, the extension generates a random anonymous ID (a UUID) stored locally in your browser and sent with requests to our backend. It lets us apply your plan limits and, if you subscribe, associate your subscription — without identifying you personally. It is not linked to your name, email, or any other identity unless you provide one during payment (see "Payments").
- Usage metering — we record how many analyses your anonymous ID has run (to enforce the monthly allowance on the Free and Pro plans, and the daily safeguards that apply on every plan, including Power) and basic, non-identifying usage events used to monitor service health and detect abuse.
- The video you choose to analyze — when you run an analysis, the extension sends your anonymous ID and the transcript of the YouTube video you are currently watching to our backend, which forwards the transcript to our AI provider to generate cards, briefs, notes, and summaries. We only process the specific video you actively choose to analyze — Keepframe does not track your general browsing or watch history.
- Transcript cache — to reduce cost and load, a transcript fetched for a public YouTube video may be stored in a shared cache keyed by the video ID and language, so it can serve other users who later analyze the same public video. This cache contains publicly available transcript text, not personal data, and entries expire automatically (currently after 90 days).
- Local extension storage — your settings and locally saved content (for example, cards you save) are stored in your browser's local extension storage on your device. This stays on your device and is not uploaded except as needed to run an analysis you request.
2. What We Do NOT Collect
- Your name, email address, or any personal identifiers
- Your Google or YouTube account information
- Your browsing history or YouTube watch history
- Your OpenAI API key (if you previously used an older version — keys were only ever stored locally in your browser and never transmitted)
- Any data from YouTube pages you visit without opening Keepframe
Feedback form. If you write to us from the goodbye page, we receive your message and — only
if you choose to give it — your email address, so we can reply. We do not link it to your
anonymous installation identifier. We keep it only as long as needed to answer you.
3. Payments
Paid plans (Pro, Power) are processed by Stripe. When you subscribe, you provide payment
details directly to Stripe; Keepframe does not receive or store your card number. Stripe processes your
payment information under its own privacy terms. We receive from Stripe only what we need to activate and
manage your subscription against your anonymous ID (for example, subscription status).
4. Third-Party Services (Sub-processors)
We use the following providers to operate Keepframe. Each processes data only to provide their service to us:
- OpenAI — processes the video transcript you submit to generate concept cards, briefs, notes and summaries. OpenAI Privacy Policy →
- Stripe — processes subscription payments for paid plans. Stripe Privacy Policy →
- Supabase — hosts our backend database (anonymous IDs, usage counters, promo codes, service events, transcript cache). Supabase Privacy Policy →
- Railway — hosts our backend server. Railway Privacy Policy →
- Google Analytics — measures visits to keepframe.one and campaign attribution only after you accept optional analytics. Advertising storage, advertising personalization, and Google signals remain disabled. Google Privacy Policy →
We do not sell your data, and we do not use it for advertising.
5. Data Storage & Security
- Your anonymous user ID and settings are stored locally in Chrome's extension storage on your device.
- Usage data (anonymous ID + analysis counters) is stored in a secured database (Supabase) hosted in the EU (West Europe).
- All communication between the extension and our servers uses HTTPS encryption.
- Transcript text you submit is processed to build your materials; a copy of a public video's transcript may be retained in the shared cache described in Section 1 (expiring automatically), and is not linked to your identity.
6. Data Retention
- Anonymous ID and usage counters — retained while your anonymous ID is active, so we can apply plan limits; monthly analysis counters reset each billing period.
- Transcript cache — entries expire automatically (currently 90 days).
- Payment records — retained by Stripe under its terms and as required for accounting and tax obligations.
- Service/usage events — retained only as long as needed for service health, security, and abuse prevention.
- Website analytics — user- and event-level data is retained for up to 14 months in Google Analytics; aggregated reports may remain available longer.
If you uninstall Keepframe, your local data is deleted automatically by the browser. You may request deletion of your server-side data at any time by contacting us.
7. Cookies and Local Storage
The Keepframe extension does not use advertising or tracking cookies. It uses Chrome's local extension
storage to keep your anonymous ID and settings on your device.
The keepframe.one website stores your analytics choice locally. It also keeps the campaign parameters
already present in the page address for the duration of the browser tab so the same source can be attached to an
outbound Chrome Web Store link. This first-party session storage does not contact Google or another provider.
Google Analytics is optional and uses basic Consent Mode: the Google tag does not load and no analytics data is
sent before you accept. If you accept, Google Analytics may use first-party analytics cookies to distinguish visits.
You can change or withdraw your choice at any time using the Privacy choices button on the website.
We do not enable advertising storage, advertising personalization, or Google signals.
8. Your Rights
Depending on where you live (including under the GDPR and CCPA), you may have the right to access, correct,
or delete personal data we hold about you, and to object to or restrict certain processing. Because
Keepframe operates on an anonymous ID with no account, the most direct way to remove your association with
our service is to clear the extension's local data or uninstall it, which disconnects your device from your
anonymous ID. For requests relating to payment data, contact Stripe or reach us and we will coordinate.
9. Children's Privacy
Keepframe is not directed to children and is not intended for use by anyone under the age required to
consent to data processing in their country (for example, 16 under the GDPR, 13 in the United States).
We do not knowingly collect personal data from children.
10. Chrome Web Store Limited Use
Keepframe's use of information received from Google APIs and the Chrome Web Store adheres to the
Chrome Web Store User Data Policy,
including its Limited Use requirements. We use the data described above only to provide and improve the
product's user-facing features, and we do not transfer or sell it for unrelated purposes.
11. Changes to This Policy
We may update this Privacy Policy from time to time. The "Last updated" date above reflects the current
version. We will note material changes here. Continued use of Keepframe after changes constitutes
acceptance of the updated policy.
← Back to Keepframe