Privacy isn’t a policy.
It’s how we built it.
Most “privacy-first” tools are policy promises. FillDef is architecture: your data is encrypted on your device, our AI only sees field labels, and every request is auditable in your browser. Verify everything below.
Where your data goes
The whole architecture in one picture. Solid lines stay on your device. The dashed line is the only thing that ever crosses the network — and it carries labels, not values.
What stays on your device
Three categories. None of them ever touches our servers.
What we send to AI — and what we don’t
The local pattern dictionary handles 80–90% of fields with no network call. The remaining unusual labels go to AI, with this exact split:
The AI returns a profile key like tax_id. FillDef then reads that key from your encrypted profile in your browser and writes the value into the form locally. The AI never sees the value.
What we store on our servers
The complete list. If it isn’t below, we don’t have it.
| We store | Why |
|---|---|
| Email address | Account login + receipts |
| Credit balance | So you can spend credits across devices |
| Purchase history | Required for tax + refund handling |
| Fill counts (numbers only, never values) | Free-tier accounting + abuse prevention |
No form contents, no values, no URLs you fill on, no behavioral telemetry.
What we don’t do
We sell credits. That’s the whole business. There’s no second product made out of your data because we don’t have your data.
Verify it yourself
Don’t take our word for it. Three ways to confirm everything on this page is true.
The boundary of what we can defend
Defense-in-depth has limits, and pretending otherwise is its own dishonesty. FillDef encrypts your profile and keeps it local — but if your computer is compromised, an attacker with local access can read what your browser can read. The same goes for browser sync if you’ve enabled it across machines.
We can’t defend the device itself; that’s still your job. What we can promise is that no data leaves the device unless you decide it does — and the only thing that ever does is a field label.
Privacy questions
What does "AI sees only labels" mean in practice?
What if my computer is compromised?
Is the encryption key on your servers?
Do you log IP addresses?
Why is this page different from your privacy policy?
Try it. See for yourself.
Five fills are free every month. Open DevTools, watch the network tab, fill a form — and decide.