Security

PromptDC is built with a security-first architecture across our flagship Desktop app for macOS and Windows, Chrome extension, and IDE extensions. Whether you are enhancing writing in Safari or Slack, coding in Cursor or VS Code, or refining prompts inside terminal CLIs like Claude Code, Codex CLI, Gemini CLI, and Grok, your data and BYOK API keys remain strictly protected with local storage and HTTPS transit encryption.

Report a security issue

spromptdc@gmail.com

Internal security

All internal tools and restricted areas are protected by authentication and are hidden from search engines.

Local key storage

Your BYOK API keys are stored locally on your device across the desktop app (macOS & Windows), browser, and editor extensions—never saved in our database.

Modern infrastructure

Built on modern, hardened stacks with HTTPS transit encryption for all prompt enhancements across desktop apps, browsers, IDEs, and terminals.

Request data flow

For Lifetime BYOK requests, your API key travels encrypted over HTTPS through the PromptDC backend directly to your chosen provider (OpenAI, Anthropic, Google, or xAI). Keys and prompts are held in memory only for that single enhancement and are never saved to our database.

Step 1

PromptDC Desktop, Chrome, or IDE extension

Your explicitly selected text in any app, browser, IDE, or terminal CLI (Claude Code, Codex CLI, Gemini CLI, Grok), and your profile settings

Step 2

PromptDC backend

Supabase edge function with HTTPS encryption. BYOK keys pass through in memory for that request and are never written to our database.

Step 3

Your selected AI provider

Encrypted API call to OpenAI, Anthropic, Google, or xAI

Step 4

Response back inline

The enhanced prompt returns directly into your desktop review popover, browser field, or editor panel

Subprocessors

PromptDC uses a small set of subprocessors for core product operations.

Supabase

Authentication, database, and edge functions

Stripe

Payments

OpenAI

Default LLM provider

Anthropic, Google, and xAI

LLM providers for BYOK requests

Plunk

Transactional email

Aiola

Analytics after cookie consent

Common questions

Responsible disclosure

If you discover a security issue, we want to hear from you. We value the input of the security community and will investigate all reports promptly across our macOS and Windows desktop app, Chrome extension, IDE extensions, and web services.

spromptdc@gmail.com

24h investigation window

Direct support communication

Responsible resolution

How we handle data?
Read the Privacy Policy

The legal terms?
See the Terms of Service

A question or a bug?
Reach help & support

Write better with AI

Enhance any text you select on the desktop, on the web, in your editor or terminals.

Download PromptDC