⌖ PatchpinDownload free ↗

PATCHPIN / FREE CHROME EXTENSION

Privacy

Patchpin stores selected element text, source-location hints, requested edits, optional sanitized HTML snippets, screenshots, additional prompt instructions in Chrome’s local extension storage. It does not upload that information to Patchpin or an analytics service. AI connections are optional and described below.

Page access starts when the user opens Patchpin with its icon, shortcut, or context-menu action. It uses temporary activeTab access, scripting to display its composer, local storage to save drafts, and context menus for element selection. The shipping extension has no installed persistent access to websites. Follow this site optionally requests access only to the current domain and its subdomains, allowing an already-open panel to follow navigation in that tab. The optional manifest declarations allow requesting a domain discovered at runtime; they do not grant access to all sites. The panel is not injected into unrelated sites or tabs. Closing it stops following.

Copying a prompt puts its text on the clipboard. Exporting a bundle writes a ZIP download containing the prompt, an HTML report, structured changes, and screenshots. HTML reports, Markdown files and JSON change sets are also available as separate downloads. Any subsequent sharing with an AI tool is controlled by the user.

When Patchpin opens on a page it runs a short read-only check in the page's own context to read framework component names and source locations exposed by development builds. The result is validated, stored with the change and never sent anywhere else.

Exported page URLs omit query parameters, fragments, and URL credentials. HTML reference capture removes executable tags, embedded frames, form controls, and URL attributes. Selected page text and screenshots can still contain sensitive information. Users should review them before sharing.

Users can delete screenshots or changes in the composer and delete entire page drafts in Settings. Uninstalling the extension removes its local extension storage. Downloaded exports and copies shared outside Chrome must be deleted separately.

The extension has no cookies, telemetry, advertising, or background browsing collection. Explicit links to the project open in a new browser tab and are subject to the destination site’s privacy practices.

Patchpin is made by Kyle Kirkby. Support: https://x.com/the_actual_kyle. Attribution links in Patchpin point to Kyle Kirkby and AdVentur.ai; they do not modify the website you are editing or your exported prompts. The marketing site is hosted by Cloudflare, which processes ordinary web requests under its own privacy practices. The marketing website uses PostHog through https://v.adventur.ai to measure pageviews, downloads, demo prompt copies and attribution clicks. Events are labelled as Patchpin marketing activity and include the page route, browser/device information and referring page. URL query strings and fragments are removed. Analytics identifiers stay in page memory; no analytics cookies or persistent browser storage are used. Session replay, automatic form/text capture and anonymous person profiles are disabled. Do Not Track is respected. PostHog receives ordinary connection information such as IP addresses under its own privacy practices. This website analytics integration is not included in the Chrome extension.

Optional local AI companion

Connecting an AI tool requests optional permission for http://127.0.0.1/*. The extension only contacts its fixed companion address http://127.0.0.1:43187. It stores a pairing code locally in trusted extension contexts; content scripts never receive the code. Disconnect removes the code and permission. No AI request runs automatically.

Clicking Suggest replacements sends only the selected text parts and rewrite direction to the companion and then your chosen signed-in CLI/provider (Codex, Claude Code, or Cursor). The provider processes that text under its own privacy policy, subscription and limits. The companion runs in an empty temporary directory with restricted CLI tools, validates responses, and removes its temporary output. It never receives screenshots, HTML, page URLs, draft contents, or AI-provider credentials from Chrome. CLI authentication remains managed by the CLI.

Open prompt in Cursor passes the current prompt to the installed desktop app through Cursor’s documented URI. Cursor asks the user to review and send it. The link does not automatically execute the prompt or attach screenshots.

Optional agent inbox

The agent inbox is off until the user turns it on in the composer or Settings, and it needs a paired companion. While it is on, each saved page change set, including its screenshots, selectors, page text and prompt, is sent to the companion at http://127.0.0.1:43187, which keeps it in memory until it stops. Coding agents on the same computer read it through the companion's MCP endpoint, which refuses browser requests. Agents can mark changes done with a short summary; that is the only data the extension reads back. Turning the inbox off stops sharing; stopping the companion clears what it held.

Domain feedback and appearance

Saved pages are grouped by registrable domain, including subdomains. Each page retains its own original URL, route, edits and screenshots. Public-suffix boundaries separate hosted tenants; local development origins remain separate by port. Copying or exporting a site includes saved feedback from its pages. Existing per-page drafts are preserved. Theme and primary-colour choices are saved locally.