GuideGen

Privacy Policy

Last updated 3 August 2026

The short version. The GuideGen browser extension records your workflow and keeps everything on your own computer. Nothing is uploaded unless you deliberately publish a guide to get a shareable link. If you never publish, we never receive your screenshots.

This policy covers the GuideGen browser extension and the website at guidegen.backpocket.website (and guide-gen.vercel.app, which serves the same site). It explains what we hold, why, and how to get rid of it.

What changed in version 1.1. Earlier releases had no account and no publishing, and transmitted nothing at all. Version 1.1 adds both. Two things now leave your device, and only these two: your email address and password when you sign in, and a guide's images and text at the moment you press Publish on that guide. Recording, editing and all five export formats still run entirely on your own machine.

1. The extension: local by default

When you record a guide, the extension saves the following to your browser's own extension storage, on your device:

While a guide is unpublished, none of this leaves your machine. The extension makes no analytics, telemetry or tracking requests at any point.

The same list applies to catch-up capture, which records the same things on a site you have switched it on for and holds them for up to seven days so you can turn recent activity into a guide after the fact. It is off until you enable it, per site, and none of it is ever uploaded. Section 9a covers it in full.

From version 1.1 the editor is a page on this website rather than a page inside the extension, so that there is one editor to keep good instead of two. When you open it, that page asks the extension directly — browser to browser, over Chrome's externally_connectable channel — for the guides stored on your machine, one screenshot at a time as you scroll. Those screenshots are read into the page in your browser; they are not sent to our servers. The extension answers these requests only from this one website address, and from no other page.

Exports — HTML, Markdown, PDF, PowerPoint and video — are generated inside your browser and saved straight to your downloads folder. We never see them. Video narration is synthesized on your own machine by a speech engine bundled in the extension, so the text of your internal processes is never sent to a text-to-speech service.

2. What changes when you publish a guide

Publishing is an explicit action that creates a shareable link. Only then do we receive:

Unpublished guides are never uploaded. Publishing one guide does not upload the others.

One consequence of sharing a link. When a published link is pasted into a chat app or a social network, that platform fetches the page to build a preview, and the preview shows the guide's title — to everyone in that conversation, whether or not they open it. The image beside it is a fixed GuideGen banner; a screenshot from your guide is never used as a preview image, so nothing from inside the guide is copied into a third party's preview cache. Shared guide pages are also marked not to be indexed by search engines.

Screenshots can contain other people's information. A screenshot captures whatever was on screen, which may include customer names, addresses, order details or anything else in the application you were documenting.

The extension provides a redaction tool that pixelates selected regions permanently, before anything is uploaded, and password fields are masked at capture time. Please redact before publishing. You decide what to record and what to share, and you remain responsible for it under any data-protection obligations that apply to you.

3. Account data

From version 1.1 the extension asks you to sign in before it records. That does two things: it identifies whose guides the editor should show you, and it ties a published guide to you so that you — and nobody else — can update or delete it later. Signing in does not upload anything. A guide you have never published stays in your browser's own extension storage, on that machine.

We store your email address, your name, an internal user ID, and the timestamps of account creation and sign-in. We do not ask for a phone number, a company, or payment details. We do not use your email address for marketing.

You can sign in two ways. With email and password, the password is handled by Google Firebase Authentication and is never visible to us. With Continue with Google, we never see a password at all — Google confirms who you are and tells us your email address and name, nothing else. We ask Google for three things (openid, email, profile) and no access to Gmail, Drive, contacts or anything else in your Google account.

One consequence worth stating plainly, because it is a design decision rather than an oversight: unpublished guides cannot follow you to another computer. They are not on our servers, so there is nothing for us to sync. Published guides are the ones that travel.

Separately, if you export a guide that someone else shared with you, your email address is recorded against that guide for its owner to see — see section 4a.

4. Who processes your data

We use two service providers. We do not sell, rent or share your data with anyone else.

ProviderWhat they holdWhere
Google Firebase Account records and published guide text/structure United States
Cloudinary Screenshot image files of published guides Global content delivery network

If you are in a region with data-transfer rules such as the UK, EU or India, note that publishing a guide involves transferring that guide outside your region. If that is a problem for your organisation, use the extension without publishing — every export format works entirely offline.

4a. If you export a guide someone shared with you

A guide's owner can switch on exports for that guide. If they have, and you sign in to export it, two things happen and you are told both before you sign in:

If you would rather not be recorded, don't sign in: printing the page from your browser and saving the images work exactly the same either way, and leave no record with us.

That record belongs to the guide's owner. They can clear it, and it is deleted when they delete the guide. If you want your entry removed, ask them, or email us.

Owners: the export switch is a convenience, not a lock. A published guide's images are already public URLs, so anyone holding the link can save them, print the page or screenshot it whether exports are on or off. Switching exports off removes a button; it does not protect the contents. If a guide shouldn't be copied, don't publish it.

5. Public links

A published guide gets a link containing a long random identifier that cannot practically be guessed. Anyone holding that link can view the guide without signing in — that is the point of it — so treat it as you would any shared document link. Guide pages carry a noindex instruction so search engines do not list them.

You can unpublish a guide at any time, which immediately stops the link from working.

6. No tracking

This website sets no advertising or analytics cookies and runs no third-party trackers. If you sign in, your browser stores a session locally so you stay signed in. That is all.

7. Retention and deletion

8. Your rights

Depending on where you live, you may have the right to access, correct, export or delete your data, or to object to our handling of it. Email us and we will help. You may also complain to your local data-protection authority.

9. Permissions the extension requests

The extension asks for access to all websites because it cannot know in advance which application you will want to document — it may be any internal dashboard or tool. The recorder does nothing unless you have explicitly started a recording, or have switched on catch-up capture for that specific site (see below), and it reads only the label and on-screen position of the element you click, plus the request summary described in section 9b.

It also asks for webRequest, which lets it see the network requests a page makes while it is capturing. This is observational only: it cannot block, redirect or modify a request. Section 9b covers what is recorded, and what is masked before it is stored.

9a. Catch-up capture

What it is. "Capture last 2 minutes" lets you make a guide out of something you have already finished. That is only possible if the extension was capturing while you worked, so on any site you switch it on for, GuideGen records each action and its screenshot as you go and discards them again — keeping only a rolling window of recent activity.

It is off until you turn it on, per site. There is no global switch in the extension's interface and it is never on by default. You enable it for one website at a time, and you can switch it off again at any point. While it is on, that site's pages show a small marker in the corner for as long as it is running.

What is kept, and for how long. The same information a recording captures — the label and position of the control, the page URL and title, and a screenshot of the visible page — held in the extension's own local storage on your device. It is capped, and anything older than seven days is deleted automatically whether or not you have used it. You can delete it yourself at any time from your dashboard or the extension.

It is never uploaded. Nothing held by catch-up capture is sent to us or to anyone else. It is not part of publishing: turning a capture into a guide creates an ordinary guide on your device, and that guide is only ever uploaded if you then press Publish on it, exactly as with a recording you started yourself.

Two things it will not capture. It does not run in private or incognito windows at all. And when a password field is focused, it keeps the written step but takes no screenshot — typed values are never recorded in either case, but a login screen is the one picture least worth keeping.

It also asks to create an offscreen document. That is a Chrome mechanism for doing work that needs a page but has no need to be seen: it is used to render the narrated video, because that requires a canvas, an audio engine and a video recorder. It has no access to any website you visit.

9b. The API log

What it is. While a recording is running — or on a site you have armed for catch-up capture — GuideGen notes the network requests the page makes, and attaches them to the step that triggered them. For each request that means the method, the address with its query values masked, the status code and how long it took. This is what turns "I clicked Save and it didn't work" into "clicking Save sent POST /api/orders and got a 500", which is the difference between a report someone can act on and one they cannot.

What it never records. The value of any header that looks like a credential, in any circumstance and on either setting below. Where a request carried an authorization, cookie, x-api-key or similarly named header, the name is kept and the value is replaced with a marker before it is stored — so a captured request shows that it was authenticated without carrying the token that authenticated it. There is no setting that turns that off. The same applies to values inside the query string and to obvious secrets in a sent body: a parameter called token keeps its name and loses its value, and a password field in a submitted form is replaced the same way. Your browser cookies are not readable by this mechanism at all.

The full exchange is a separate opt-in, and it is off. By default only the summary above is recorded. You can switch on "Include full API requests & responses" — once per recording, or per armed site for catch-up capture — and then GuideGen also keeps, for each request, its headers, the body that was sent and the body that came back, whether the request succeeded or failed. That is what lets it show you any request as a curl command with its response.

Be deliberate about that switch. A successful response is often real data — customer records, addresses, a whole result set — and unlike a screenshot you cannot look at it and decide before you share it. It is off by default for that reason, it applies only to the recording (or the armed site) you turn it on for, and it is worth turning on when you are capturing a bug rather than leaving on for everything.

What is kept is trimmed — roughly eight thousand characters per response, four thousand per request — a limited number are held per guide, and values under credential-looking keys are masked even inside a body, so a sign-in response does not carry its token. Any step's log can be deleted from the editor, and none of it is ever uploaded: publishing a guide never publishes its API log.

That command is a record of a call, not a way to repeat it: with the credential values masked and cookies absent, pasting it into a terminal will not sign in as you.

Everything else GuideGen records, you can see: a screenshot is a picture of what was on your screen, and you can black out parts of it before sharing. A response body is data you never looked at, which is exactly why this one is a decision you make each time rather than a default.

You can remove it. Each step's API log can be deleted from the editor, on its own, without affecting the rest of the guide. Turning the catch-up setting off also discards anything already held — the requests as well as the responses — not merely future ones.

Where it goes. Nowhere, unless you send it. The log lives with the guide on your device. Of the ways to get a guide out of GuideGen, only the AI handoff — the text you copy to paste into an assistant — includes it. HTML, Markdown, PDF, PowerPoint, narrated video and published shareable links all leave it out entirely, so publishing a guide never publishes its API log. When you paste a handoff into an assistant, the log goes wherever that conversation goes; that is the point of it, and it is worth reading what you are pasting.

The permission behind it. This is why the extension asks for webRequest. It is observational only — GuideGen watches requests, and cannot block, redirect or alter any of them.

10. Children

GuideGen is a workplace documentation tool and is not directed at anyone under 16.

11. Changes

If we add anything that changes what we collect, this page will be updated before that feature ships, and material changes will be announced to registered users by email.

12. Contact

GuideGen is operated by Gaurav Singh.
Email heygauravsingh@gmail.com for anything in this policy, including data deletion requests.