Effective 21 August 2026
Privacy notice
Free tier
Free scans run locally. ExtGuard does not upload source code, findings, or telemetry. The optional Marketplace availability check sends only extension identifiers to Microsoft when you enable it.
Team tier
Team features are opt-in. After Team activation, each completed scan automatically uploads a privacy-minimized summary while the license remains active. The service processes the billing email, Stripe customer and subscription identifiers, seat count, a one-way machine identifier digest, license status, extension identifiers, numeric risk scores, finding categories, counts, and report timestamps.
Team reports must not contain source code, detected secret values, usernames, or absolute file paths. Card details are collected and processed by Stripe, not ExtGuard.
Purpose and retention
Data is used to provide subscriptions, enforce seat limits, validate licenses, and retain Team scan summaries. Operational logs exclude license keys and report bodies. Subscription records may be retained where required for billing, fraud prevention, or legal compliance.
Your choices
You can keep using the free tier without an account. Team users can deactivate a device and manage or cancel billing through the Stripe customer portal. For privacy requests, use the repository security contact and do not include license keys in public issues.