A private AI side panel for the tab you're already reading.
Ask about the page in front of you — and, when you ask it to, let it work that page for you one approved action at a time. No account needed to start. It ships with access to no website at all.
Free to start · no account required · Chrome, Edge & Chromium browsers · no password recovery
There is no sign-up step in the way. Install it, click the toolbar icon, and the panel opens into a working chat.
Chrome 116 or newer — that's where the side panel arrived. The same install works in Microsoft Edge and in Chromium browsers such as Brave, Vivaldi, Arc and Opera.
Add to Chrome — freeFirefox and Safari aren't supported. Both differ on the pieces the side panel and the wallet bridge are built from, so each would be a port rather than the same upload — not something we'd ship half-working. Prefer a different surface? There's the desktop app, the CLI, and the web app at privateer.pro.
Attach the current tab in one click and ask about it: summarise this, what does this clause commit me to, where is the pricing, what changed since I last looked. Then, if you want, ask it to do something about it.
Attach the tab and the panel reads it — the text, not a guess from the URL. Ask what a clause commits you to, what changed, where the number you want is buried.
Works as a guestClick, type, scroll, navigate and open tabs are things it can do — and every one raises an approval row in the conversation first. You approve, or you decline.
Needs an accountAsk for five of something and it opens each in its own background tab, grouped and labelled, with a card in the panel saying what it is and why it made the list. Press a card to go there, or close the whole set at once.
Opening a page is not reading it — it still only sees the tab you attach.
Needs an accountAsk it to copy a site and it reads the layout, type and colour of what's on screen and writes you one self-contained HTML document, saved to your library so it's on your phone before you close the tab.
It's a rebuild, not the original, and it's told to say so. Sign-in and payment pages are refused.
Needs an accountEmail and password, or a wallet — Solana, Ethereum, Sui or Tron. Wallet sign-in takes its signature on a privateer.pro page, never on the tab you happen to be on.
The model and its privacy tier sit above the composer where you can read them while you type. Guests pick from a free, zero-retention shortlist; an account opens the same full catalogue as the app.
Once you're signed in, chats started in the panel are ordinary account chats — encrypted on this device and synced, so they show up in the Privateer app on your phone and on the web.
Anything that changes a page stops and asks first. There is no per-site "always allow" — on the open web, the next page is not the last one.
It can read a page you've attached and answer about it. It cannot touch it. This is where a guest lives, and it's a perfectly good place to stay.
The default once you sign in. Every click, keystroke, scroll, navigation and opened tab raises a row naming what it wants to do — and waits.
Approved-in-advance actions run without stopping to ask, with a red banner up the whole time, every action still listed in the thread, and a count of what ran unasked at the end of the answer.
Nothing in a page and nothing in a model's reply can arm no quarter — it is a control under the composer that only you can move. Closing the browser raises the gate again, so a session you meant to be brief can't quietly become permanent.
And the gate outranks the switch: with the control on Read only, no quarter changes nothing. There is no combination in which a page you have not attached can be acted on.
The extension ships with access to no website at all. Not "all sites you visit" — none.
chrome://extensions
Attaching a page is the consent to read it, so the panel doesn't ask twice for something you just did on purpose. Anything that changes a page is a separate decision, every time — which is what the approval rows above are.
When you attach a tab, that grant is the only page access the extension
ever has, and it's Chrome's own dialog that gives it — not ours. Every
site you've granted is listed in the Account screen inside the panel,
revocable there and in chrome://extensions.
One account. The question is what you're working on.
| Browser extension | Desktop & mobile app | CLI | |
|---|---|---|---|
| Works on | The web page in front of you | Your chats, media and files | Code, in a folder you grant it |
| Best for | Reading, comparing, shopping, filling things in | Everything else Privateer does | Scripting, servers, and anyone who lives in a shell |
| Needs | A Chromium browser; no account to start | A download, or just a browser | One install command |
| Not there | Attachments, media generation, voice, connectors | — | Chat surfaces beyond the terminal |
This is a surface that reads web pages. It would be easy to oversell and we'd rather write the awkward sentence than bury it.
Your message and the text of the page you attached go to our server for inference in plaintext, routed to a zero-data-retention or trusted-execution model wherever the catalogue has one. That's how an answer gets produced. It's a transfer.
No account, no chat rows on our servers, nothing written to your browser but a count of how many free messages you've used. Close the panel and the conversation is gone.
What gets stored — your chats, and anything you save — is encrypted on your device before it's sent, under a key we don't hold.
The key derives from your password, or from the wallet you signed up with. Lose it and the data is gone: there's no reset flow we could honestly build, because we can't recover what we can't read. That's what holding no key means, not an oversight we intend to fix.
An encryption badge. It doesn't belong on a surface that sends page text to a model to be read — and a badge that's true of storage but not of inference is the kind of shortcut that costs you the right to be believed about the rest.
Same posture as every other non-Sealed Privateer turn. Full detail: privacy policy · transparency repo.
The rough edges, before you hit them rather than after.
The app speaks eleven languages. The panel speaks one. If you use Privateer in anything but English, this surface will feel like a step backwards until that's fixed.
How faithfully a rebuilt page resembles the original is tuned by reasoning about what a model needs to see, not by rebuilding a corpus of real sites and comparing. Expect a rebuild of a complicated page to be a likeness rather than a replica.
Chrome, Edge, Brave, Vivaldi, Arc, Opera. Not Firefox, not Safari — both would need a port rather than the same build, and we'd rather say so than ship one that half works.
No attachments, no image or video generation, no voice, no connectors in the panel — those live in the Privateer app. And while chats you start here sync to the app, the panel can't yet list or reopen an earlier one from inside itself.
Straight answers, including the uncomfortable ones.
No. Install it, open the panel, and it works — twenty free messages per rolling 24 hours, on a zero-data-retention model, with nothing stored on our servers or in your browser beyond a count of how many you've used.
An account lifts the cap and turns on what a guest can't do: acting on a page, saving a rebuild, and carrying your chats to the app on your phone and the web.
Only the ones you attach. It ships with access to no website at all. When you attach a tab, Chrome asks you for that one origin, and that grant is the only page access it ever has.
Every site you've granted is listed in the Account screen inside the panel, and revocable there and in chrome://extensions.
Not unless you've armed no quarter yourself. Clicking, typing, scrolling, navigating and opening tabs each raise an approval row in the conversation before they happen, and you approve or decline. There's no per-site "always allow" — on the open web the next page is not the last one.
The third position of the control under the composer: Read only, Ask each time, No quarter. Armed, it runs approved-in-advance actions without stopping to ask — with a red banner up the whole time, every action still listed in the thread, and a count of what ran unasked at the end of the answer.
It's your switch, not the model's: nothing in a page and nothing in a model's reply can arm it, and closing the browser raises the gate again.
No. Opening a page is not reading it. When it answers "find me five of these" by opening five background tabs, it can still only see a tab you've attached — the cards in the panel say what each result is and why it made the list, from the page it found them on.
Yes, transiently. Your message and the text of the page you attached go to our server for inference in plaintext, routed to a zero-data-retention or trusted-execution model wherever the catalogue has one. That's how an answer gets produced, and we'd rather write it here than bury it.
What gets stored once you have an account — your chats, and anything you save — is encrypted on your device first, under a key we don't hold. You won't find an encryption badge on this surface, because of the first paragraph.
One self-contained HTML document written from what's on screen — the layout, the type, the colour. It's a rebuild, not the original, and it's told to say so. It saves to your Privateer library encrypted, so you can open it on your phone before you close the tab.
It refuses to rebuild sign-in and payment pages. Saving needs an account, because a saved build is encrypted under your account key and there's no key until you have one.
Chrome 116 or newer, which is where the side panel arrived, plus Microsoft Edge and Chromium browsers such as Brave, Vivaldi, Arc and Opera. Firefox and Safari aren't supported — both differ on the pieces the side panel and the wallet bridge are built from, so each would be a port rather than the same upload.
With an email and password, or with a wallet — Solana, Ethereum, Sui or Tron. It's the same account as the Privateer app, so chats you start in the panel show up on your phone and on the web.
Wallet sign-in takes its signature on a privateer.pro page, never on the tab you happen to be on.
Nothing to install, and nothing to try. Beyond the guest allowance it runs on your Privateer account, on the same plans and credit top-ups as everything else — see pricing.
You lose access to your encrypted data, permanently. The key derives from your password or the wallet you signed up with, so there's no reset flow to build — we can't recover what we can't read. That's the same here as everywhere else, and it's the honest cost of the rest of it.
It's English only for now. There are no attachments, no image or video generation, no voice and no connectors in the panel — those live in the Privateer app. And while chats you start in the panel sync to the app, the panel can't yet list or reopen an earlier one from inside itself.
Free to start. No account. It sees what you show it, and asks before it touches anything.