What we don't do
- · We don't sell your personal information.
- · We don't use your chats, prompts, or folders for advertising.
- · We don't use your saved chats, prompts, folders, or any of your personal data to train AI models.
- · We don't read pages outside of ChatGPT, Claude, Gemini, and Grok.
- · We don't store your full credit-card details – Stripe handles all payment data.
- · We don't fingerprint your device.
What Sortbase does
Sortbase is a Chrome extension that organizes your AI chats across ChatGPT, Claude, Gemini, and Grok. It adds folders, a prompt library, keyword search, and one-click transfers between models. That's the single purpose of the extension – every permission and every piece of data we handle exists to serve it.
What we collect
Account information
When you create a Sortbase account, we collect:
- Your email address
- A unique account identifier (UUID)
- Account creation date
Authentication uses email magic links through our identity provider, Supabase Auth. There are no passwords to store.
If you sign in with Google instead, we receive your email, name, and profile picture from Google.
Onboarding questions
When you set up Sortbase, we ask a few questions to tailor your experience: which AI platforms you use, what you use AI for, how often, your age range (optional), and what brought you to Sortbase. These answers are tied to your account.
Chat content
Chats are uploaded to our database (Supabase, in the us-west-1region) only when you save the chat to a Sortbase folder, or forward the chat to a different model. Anything you don't save or forward stays on your device.
Sortbase does not silently scrape your conversation history in the background. Unsaved chats remain on your device and on the AI platform's own servers.
Folders, prompts, and settings
Your folder structure, custom prompts, and account settings are synced to your Sortbase account so they're available on every device you sign in on.
Usage events
We track how the extension is used to improve it: events like extension installed, folder created, chat added to folder, prompt used, transfer completed. Event payloads are sanitized before they're stored – they do not contain your chat messages, prompt text, email addresses, or auth tokens.
Website analytics and the Meta Pixel
On our marketing website only (not the extension), we use cookieless Vercel Analytics, plus the Meta (Facebook) Pixel if you accept cookies. It reports your page views and “Add to Chrome” clicks to Meta to measure our ads, and it's off until you opt in.
Error logs
When the extension encounters an error, we record the error message and a truncated stack trace (capped at about 4 KB) so we can fix the bug. Error logs do not contain your chat content.
Billing data
If you subscribe to a paid plan, payment processing happens through Stripe. Stripe handles your full payment details – we never see your full credit-card number, and none of it is stored on Sortbase servers.
Install-invite emails
If you submit your email on the mobile install-invite form at sortbase.ai, we store your email address, a timestamp, your user-agent, and a one-way hash of your IP address (for rate-limiting). Unsubscribe from any email – we mark the record as unsubscribed and won't email you again. Email support@sortbase.ai if you want the record deleted entirely.
Where your data lives
Sortbase relies on a small number of named third-party services. Here is each one, what we use it for, and what data we send to it.
| Service | Where | Purpose | What we send |
|---|---|---|---|
| Supabase | us-west-1 | Database, authentication, file storage | Account information, saved chats, folders, prompts, settings, usage events |
| Stripe | Global (US) | Payment processing | Email, customer ID, subscription status |
| Vercel | Global edge | Web hosting (sortbase.ai and our API) | Standard request logs (IP, user agent, requested URL) |
| Google OAuth | Global | Optional sign-in method | Email, profile name, profile picture |
| Resend | Global (US) | Transactional email (sign-in links, account emails) | Email address, email delivery metadata |
| Meta (Facebook) Pixel | Global | Ad measurement (marketing site, after cookie consent) | Page views, install clicks, IP, user agent, Meta cookie IDs |
All data is encrypted in transit (TLS) and at rest (AES-256 on Supabase).
Chrome extension permissions
Each permission the Sortbase extension requests serves the single purpose of organizing your AI chats:
- Host permissions for chatgpt.com, claude.ai, gemini.google.com, and grok.com – to inject the Sortbase sidebar into each platform's interface and to read the chat content of conversations you save.
- storage and unlimitedStorage – to keep your folders, prompts, and settings in your browser.
- cookies (read-only)– to detect when you're signed into a supported AI platform so the sidebar can attach to the right account.
- webRequest (observe-only, scoped to the four supported AI platforms) – to notice when a chat is created, renamed, or deleted on a supported platform so your folders stay in sync. It observes request metadata on those platforms only; it cannot modify or block requests, and it sees nothing on any other site.
- webNavigation (scoped to the four supported AI platforms)– to detect in-page navigation between chats on the supported platforms (they're single-page apps), so the sidebar follows you to the conversation you opened.
The extension does not read pages on any other domain. It does not access your browsing history, form fields on unrelated sites, or content on tabs that aren't one of the four supported AI platforms.
Limited Use of Google API data
Sortbase's use of information received from Google APIs adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements. We do not transfer this information to third parties for advertising, and a human will not read this data unless we have your affirmative agreement, are required to by law, or need to investigate abuse or comply with our terms.
Your rights
You can:
- Access the data we hold about you.
- Delete your account and all associated data – email support@sortbase.ai and we'll process the deletion within 30 days.
California (CCPA / CPRA)
If you're a California resident, the California Consumer Privacy Act gives you the right to know what personal information we collect, the right to delete and correct it, the right to opt out of “sale” or “sharing” (we don't do either, as those terms are defined under Cal. Civ. Code § 1798.140), and the right not to be discriminated against for exercising any of these rights. To exercise your rights, email support@sortbase.ai.
How long we keep your data
- Your account and the data inside it (folders, prompts, saved chats, settings) – until you delete your account or ask us to.
- Usage events and error logs – stored indefinitely for product improvement, but never tied to chat or prompt content.
- Subscription records – retained as long as required for tax, accounting, and audit purposes (typically up to seven years).
Children
Sortbase is not intended for children under 13. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has created a Sortbase account, email support@sortbase.ai and we will delete the account and any associated data.
Do Not Track and Global Privacy Control
Our only third-party tracker is the Meta Pixel, and it loads only if you accept cookies. Since nothing tracks you until you opt in, Do Not Track and Global Privacy Control (GPC) signals have nothing to override.
Changes to this policy
If we make material changes to this policy, we'll update the version number and effective date at the top of this page and notify you in the extension via an in-app banner. Prior versions of this policy are available on request.
Contact
For privacy questions, account-deletion requests, or anything else covered by this policy:
Email: support@sortbase.ai
Mailing address: Sortbase LLC, 5900 Balcones Dr STE 100, Austin, TX 78731, US