Privateer, Beside the Page

A private AI side panel for the tab you're already reading.

Ask about the page in front of you — and, when you ask it to, let it work that page for you one approved action at a time. No account needed to start. It ships with access to no website at all.

Free to start · no account required · Chrome, Edge & Chromium browsers · no password recovery

Install It, Open It, Use It

There is no sign-up step in the way. Install it, click the toolbar icon, and the panel opens into a working chat.

Chrome Web Store

Chrome 116 or newer — that's where the side panel arrived. The same install works in Microsoft Edge and in Chromium browsers such as Brave, Vivaldi, Arc and Opera.

Add to Chrome — free
  1. Install. No account, no configuration, nothing to set up.
  2. Open the panel from the toolbar icon and ask it something. Twenty free messages per rolling 24 hours, on a zero-retention model.
  3. Attach a tab when you want it to read the page you're on. Chrome will ask you about that one site.
  4. Sign in when you want it to act on a page, save what it builds, or carry the conversation to your phone.

Firefox and Safari aren't supported. Both differ on the pieces the side panel and the wallet bridge are built from, so each would be a port rather than the same upload — not something we'd ship half-working. Prefer a different surface? There's the desktop app, the CLI, and the web app at privateer.pro.

It Can See What You Show It

Attach the current tab in one click and ask about it: summarise this, what does this clause commit me to, where is the pricing, what changed since I last looked. Then, if you want, ask it to do something about it.

Page attached
You — what does the cancellation clause actually say?
It's clause 7.3: 30 days' notice in writing, and the annual discount is clawed back pro rata. Quoting it back…
Click "Manage subscription"
on this page · navigation stays on this site
ApproveDecline
Model shown above the composer, with its privacy tier

Chat about this page

Attach the tab and the panel reads it — the text, not a guess from the URL. Ask what a clause commits you to, what changed, where the number you want is buried.

Works as a guest

Act on it, with you in the loop

Click, type, scroll, navigate and open tabs are things it can do — and every one raises an approval row in the conversation first. You approve, or you decline.

Needs an account

Results as tabs, not links

Ask for five of something and it opens each in its own background tab, grouped and labelled, with a card in the panel saying what it is and why it made the list. Press a card to go there, or close the whole set at once.

Opening a page is not reading it — it still only sees the tab you attach.

Needs an account

Rebuild a page

Ask it to copy a site and it reads the layout, type and colour of what's on screen and writes you one self-contained HTML document, saved to your library so it's on your phone before you close the tab.

It's a rebuild, not the original, and it's told to say so. Sign-in and payment pages are refused.

Needs an account

Sign in your way

Email and password, or a wallet — Solana, Ethereum, Sui or Tron. Wallet sign-in takes its signature on a privateer.pro page, never on the tab you happen to be on.

Your model, its tier, in view

The model and its privacy tier sit above the composer where you can read them while you type. Guests pick from a free, zero-retention shortlist; an account opens the same full catalogue as the app.

Once you're signed in, chats started in the panel are ordinary account chats — encrypted on this device and synced, so they show up in the Privateer app on your phone and on the web.

It Asks. Every Time.

Anything that changes a page stops and asks first. There is no per-site "always allow" — on the open web, the next page is not the last one.

Read only

It can read a page you've attached and answer about it. It cannot touch it. This is where a guest lives, and it's a perfectly good place to stay.

Ask each time

The default once you sign in. Every click, keystroke, scroll, navigation and opened tab raises a row naming what it wants to do — and waits.

No quarter

Approved-in-advance actions run without stopping to ask, with a red banner up the whole time, every action still listed in the thread, and a count of what ran unasked at the end of the answer.

It's your switch, not the model's

Nothing in a page and nothing in a model's reply can arm no quarter — it is a control under the composer that only you can move. Closing the browser raises the gate again, so a session you meant to be brief can't quietly become permanent.

And the gate outranks the switch: with the control on Read only, no quarter changes nothing. There is no combination in which a page you have not attached can be acted on.

Why There Are So Few Permissions

The extension ships with access to no website at all. Not "all sites you visit" — none.

No host access on install Attaching asks Chrome for one origin Granted sites listed in your account Revocable in chrome://extensions

Reading is unattended. Changing is not.

Attaching a page is the consent to read it, so the panel doesn't ask twice for something you just did on purpose. Anything that changes a page is a separate decision, every time — which is what the approval rows above are.

When you attach a tab, that grant is the only page access the extension ever has, and it's Chrome's own dialog that gives it — not ours. Every site you've granted is listed in the Account screen inside the panel, revocable there and in chrome://extensions.

Panel, App, or Terminal

One account. The question is what you're working on.

Browser extensionDesktop & mobile appCLI
Works on The web page in front of you Your chats, media and files Code, in a folder you grant it
Best for Reading, comparing, shopping, filling things in Everything else Privateer does Scripting, servers, and anyone who lives in a shell
Needs A Chromium browser; no account to start A download, or just a browser One install command
Not there Attachments, media generation, voice, connectors Chat surfaces beyond the terminal

Privacy, Plainly, and No More

This is a surface that reads web pages. It would be easy to oversell and we'd rather write the awkward sentence than bury it.

What goes up

Your message and the text of the page you attached go to our server for inference in plaintext, routed to a zero-data-retention or trusted-execution model wherever the catalogue has one. That's how an answer gets produced. It's a transfer.

As a guest, nothing is stored

No account, no chat rows on our servers, nothing written to your browser but a count of how many free messages you've used. Close the panel and the conversation is gone.

With an account, encrypted first

What gets stored — your chats, and anything you save — is encrypted on your device before it's sent, under a key we don't hold.

No password recovery — by design

The key derives from your password, or from the wallet you signed up with. Lose it and the data is gone: there's no reset flow we could honestly build, because we can't recover what we can't read. That's what holding no key means, not an oversight we intend to fix.

What you won't find on this page

An encryption badge. It doesn't belong on a surface that sends page text to a model to be read — and a badge that's true of storage but not of inference is the kind of shortcut that costs you the right to be believed about the rest.

Same posture as every other non-Sealed Privateer turn. Full detail: privacy policy · transparency repo.

Where the Extension Actually Is

The rough edges, before you hit them rather than after.

English only, for now

The app speaks eleven languages. The panel speaks one. If you use Privateer in anything but English, this surface will feel like a step backwards until that's fixed.

A rebuild is unmeasured against real sites

How faithfully a rebuilt page resembles the original is tuned by reasoning about what a model needs to see, not by rebuilding a corpus of real sites and comparing. Expect a rebuild of a complicated page to be a likeness rather than a replica.

Chromium browsers only

Chrome, Edge, Brave, Vivaldi, Arc, Opera. Not Firefox, not Safari — both would need a port rather than the same build, and we'd rather say so than ship one that half works.

The panel is not the whole app

No attachments, no image or video generation, no voice, no connectors in the panel — those live in the Privateer app. And while chats you start here sync to the app, the panel can't yet list or reopen an earlier one from inside itself.

Questions, Answered

Straight answers, including the uncomfortable ones.

Do I need an account?

No. Install it, open the panel, and it works — twenty free messages per rolling 24 hours, on a zero-data-retention model, with nothing stored on our servers or in your browser beyond a count of how many you've used.

An account lifts the cap and turns on what a guest can't do: acting on a page, saving a rebuild, and carrying your chats to the app on your phone and the web.

Which websites can it read?

Only the ones you attach. It ships with access to no website at all. When you attach a tab, Chrome asks you for that one origin, and that grant is the only page access it ever has.

Every site you've granted is listed in the Account screen inside the panel, and revocable there and in chrome://extensions.

Can it click things without asking me?

Not unless you've armed no quarter yourself. Clicking, typing, scrolling, navigating and opening tabs each raise an approval row in the conversation before they happen, and you approve or decline. There's no per-site "always allow" — on the open web the next page is not the last one.

What is "no quarter"?

The third position of the control under the composer: Read only, Ask each time, No quarter. Armed, it runs approved-in-advance actions without stopping to ask — with a red banner up the whole time, every action still listed in the thread, and a count of what ran unasked at the end of the answer.

It's your switch, not the model's: nothing in a page and nothing in a model's reply can arm it, and closing the browser raises the gate again.

Does it read the tabs it opens?

No. Opening a page is not reading it. When it answers "find me five of these" by opening five background tabs, it can still only see a tab you've attached — the cards in the panel say what each result is and why it made the list, from the page it found them on.

Does Privateer see the page I attach?

Yes, transiently. Your message and the text of the page you attached go to our server for inference in plaintext, routed to a zero-data-retention or trusted-execution model wherever the catalogue has one. That's how an answer gets produced, and we'd rather write it here than bury it.

What gets stored once you have an account — your chats, and anything you save — is encrypted on your device first, under a key we don't hold. You won't find an encryption badge on this surface, because of the first paragraph.

What does "rebuild this page" actually produce?

One self-contained HTML document written from what's on screen — the layout, the type, the colour. It's a rebuild, not the original, and it's told to say so. It saves to your Privateer library encrypted, so you can open it on your phone before you close the tab.

It refuses to rebuild sign-in and payment pages. Saving needs an account, because a saved build is encrypted under your account key and there's no key until you have one.

Which browsers work?

Chrome 116 or newer, which is where the side panel arrived, plus Microsoft Edge and Chromium browsers such as Brave, Vivaldi, Arc and Opera. Firefox and Safari aren't supported — both differ on the pieces the side panel and the wallet bridge are built from, so each would be a port rather than the same upload.

How do I sign in?

With an email and password, or with a wallet — Solana, Ethereum, Sui or Tron. It's the same account as the Privateer app, so chats you start in the panel show up on your phone and on the web.

Wallet sign-in takes its signature on a privateer.pro page, never on the tab you happen to be on.

What does it cost?

Nothing to install, and nothing to try. Beyond the guest allowance it runs on your Privateer account, on the same plans and credit top-ups as everything else — see pricing.

What happens if I forget my password?

You lose access to your encrypted data, permanently. The key derives from your password or the wallet you signed up with, so there's no reset flow to build — we can't recover what we can't read. That's the same here as everywhere else, and it's the honest cost of the rest of it.

What can't it do yet?

It's English only for now. There are no attachments, no image or video generation, no voice and no connectors in the panel — those live in the Privateer app. And while chats you start in the panel sync to the app, the panel can't yet list or reopen an earlier one from inside itself.

Open the panel.

Free to start. No account. It sees what you show it, and asks before it touches anything.