Nyanza.ai - Nyanza Autofill browser extension

Privacy Policy

Last updated: July 21, 2026

Nyanza Autofill helps you fill out job applications using the profile you built at nyanza.ai. The extension keeps a local autofill copy, while your synced source profile and kits live in your Nyanza account. The extension fills supported fields and you review and submit the application. It never clicks a page-owned Next, Continue, or final Submit control.

The short version: we don't sell your data, run advertising analytics, or load remote code. The extension exchanges data with your nyanza.ai account. When you ask Nyanza to generate a kit or answer, relevant job and career content may be processed by Nyanza's server and its managed AI provider or the provider you configured. Values placed into an employer-controlled page may be processed by that page before you submit. An optional, default-off vault can securely store and fill a host-bound employer-site login on narrowly reviewed account steps.

What the extension does

Its single purpose is to help you apply to jobs with your own Nyanza materials. It can read and save a posting you choose, show fit and sponsorship history, request a prepared kit or draft, fill matching application fields, attach your tailored résumé, and record the outcome. You review everything and submit directly on the application page.

If you separately enable the login vault, the extension can generate or retrieve an employer-site credential, store it encrypted in your Nyanza account, and fill it only on a reviewed account-creation or sign-in surface for the same host. Account consent, verification challenges, and the Create Account or Sign In action remain yours.

For Save + build kit, the extension reads only this browser's Local/Cloud engine choice from nyanza.ai. In known Local mode it saves the posting but does not request cloud kit generation. If it cannot verify the choice, it explains that the build uses Nyanza's server and an AI provider and requires a second confirmation before starting it. The relayed preference contains no API key, model name, prompt, résumé, or profile content.

Background preparation (opt-in, off by default)

Nyanza has an optional background-preparation mode you turn on yourself in your nyanza.ai settings. It is off unless you enable it. It acts only on applications whose grounded kit cleared Nyanza's strictest gates and only after you grant the relevant board permission and start a capped run. It can fill supported fields on the current application surface and attach the planned résumé, then hands the page back to you. It never clicks a page-owned Next, Continue, or final Submit control and never sends an application. It stops for anything it is not sure about, including a visible CAPTCHA, missing required answer, stale high-risk data, or an ambiguous control. At a reviewed account wall, the separately enabled vault may fill the host-bound login and then stop for your action; all other account walls remain manual. You can turn preparation off at any time, and every run is logged for you to see.

Information the extension handles

The extension does not use Chrome's History API or build or store a browsing history. Guided autofill handles the current page URL and content only when you invoke it. If you separately enable the in-page prompt, it can inspect pages covered by the site access you grant to detect an application form. Background preparation processes only approved jobs during a capped run you start.

How your information is used

Your information is used only for these purposes. It is never used for advertising, creditworthiness, or lending.

Where your information is stored and sent

Nyanza does not send extension data to advertising analytics or use it for unrelated purposes. The AI-provider and employer/ATS disclosures above are the feature-related destinations.

Autofill compatibility reports

The extension's Autofill history remains available after the original application tab closes. It explains field and page failures and shows whether an eligible report is not shared, queued, uploaded, waiting to retry, or revoked. You can share one event, retry or cancel a queued report, revoke an uploaded report, delete a local receipt, or clear device history. These controls do not edit or delete your private Saved Answers.

Local field receipts, page receipts, queued report payloads, and payload-free delivery records are physically deleted after at most 90 days. The local ledgers are also size capped, and surviving rows are rebuilt through allowlist schemas on worker startup.

Shared report content is retained by Nyanza for at most 90 days and is capped per account. Revoking deletes the structural content; Nyanza may keep only the random event ID and revocation time for up to 180 days so a delayed offline retry cannot restore it. Deleting the Nyanza account removes its dedicated structural-report store. Clearing device history by itself does not delete reports already sent to Nyanza, and the extension warns you when remote reports remain.

Nyanza clusters only closed structural fields such as ATS family, page type, adapter version, normalized field intent, widget type, failure code, pseudonymous fingerprint, and verified resolution outcome. Extension version is retained as an aggregate breakdown rather than used to split the same component pattern into separate clusters. A cluster is shown as candidate evidence only after at least 3 distinct users across 2 distinct sites. Aggregates contain counts, not user identities or site hashes. A single correction never creates a global rule. Learned recipes are not distributed to or executed by the extension.

Disabled future "Report this form" diagnostic

This richer diagnostic is a design only and is not enabled. The extension does not currently capture or upload form HTML, labels, option text, or screenshots for self-healing. Any future version would require a separate preview and consent flow, clone only the relevant form area, and aggressively remove values, checked/selected states, filenames, hidden inputs, tokens, scripts, styles, unrelated content, and sensitive/legal/ self-identification fields. It would also require short encrypted retention, restricted operator access, and deletion controls. Whether labels, options, reduced markup, or screenshots should ever be allowed; how redaction is verified; retention and operator access; third-party content; and backup/derived-data deletion remain open privacy decisions. The feature will stay disabled until those decisions and safety thresholds are resolved.

What the extension does not do

Permissions and why they're needed

Your choices

You can view and edit the extension's local autofill copy from its "Edit details" screen. You can turn aggregate reliability sharing on or off at any time in Fill settings; it is off by default. Autofill history lets you revoke shared reports and delete individual local receipts; you can also clear device history or remove the extension. Clearing local storage does not revoke a report already received by Nyanza, so use Revoke first when you also want the server content deleted. Individual receipts and reports are bounded by the caps and retention periods above. Private Saved Answers remain separate and are not changed by these controls. Vault logins can be revealed, copied, or deleted from the extension when the vault is available. Your synced source profile, kits, and activity remain in your Nyanza account until you edit or delete them there. To stop the extension from accessing the account, sign out of nyanza.ai; to remove optional site access, revoke it in Chrome's extension settings.

Changes to this policy

If this policy changes, we'll update the date at the top of this page.

Contact

Questions about this policy or your data? Email privacy@nyanza.ai.