Legal

Privacy Policy

DummyDrop does not collect, transmit or sell any data. It has no server, no account, no analytics and no network access of its own.

Last updated: 11 October 2026 · applies to DummyDrop version 1.1.0 and this website

1. The short version

  • Everything DummyDrop does happens inside your browser, on your device.
  • The publisher receives none of your information: not what is on the pages you open, not what you fill, not your settings.
  • Your settings, saved values and profiles are kept in the browser's local extension storage and are never sent anywhere.
  • There are no accounts, no analytics, no advertising, no tracking and no remote code.
  • The browser gives DummyDrop access to a page only after you click its icon or press its shortcut on that page, or after you approve a site yourself.

2. Who is responsible

DummyDrop is published by Harshil Kachhadiya, an individual (“the publisher”). Because the publisher receives no information from the extension, the publisher does not hold personal data about the people who use it. How to get in touch is in section 13.

3. What DummyDrop handles, and where it stays

The table lists everything DummyDrop reads, creates or stores. None of it is sent to the publisher or to anyone else.

Information Why Where it stays
Details of the form fields on the page you opened DummyDrop on: each field's label, name, id, placeholder, aria-label, autocomplete value, nearby text, input type, limits (such as maximum length), the options of dropdowns and radio groups, and whether the field is empty To list the fields, recognise what each one is, and fill valid values. In the memory of the page and of DummyDrop's window while they are open. Not saved. DummyDrop does not read the text you have typed into a field; it only notes whether the field is empty.
Generated dummy values, and the previous values of the fields it filled To fill the fields you ticked, and to make Undo exact. Created on your device from lists bundled in the extension. The previous values are kept in the page's memory only until you reload or close the page. Nothing is saved.
Your settings: country, theme, email domains, password rules, data source per field type, keep-open options, site rules, and whether you have seen the welcome screens and the card warning To behave the way you set it up. The browser's local extension storage on your device (chrome.storage.local).
Saved values, profiles and your own fields that you type in To fill your own values and identities. The same local extension storage, unencrypted. If you save a password here it is stored like every other value (see Security).
Remembered field types: the site's host name, a short identifier of the field (built from its type and its name, label or placeholder), and the type you chose So you set an unclear field's type only once. The same local extension storage.
Floating window position To reopen the window where you left it. The same local extension storage.
Always-on sites you approve To work on those sites without an icon click. The browser holds the permission you gave. DummyDrop shows the list in its settings; it does not keep a separate copy.
Backup files you export So you can back up or move your settings. A file you choose to save, containing your settings, saved values, profiles, site rules and remembered field types, in plain text. It goes nowhere unless you move it.
A number on the toolbar icon after the fill-all shortcut To show how many fields were filled. Shown on the icon for about three seconds, then cleared.

The extension's storage is not synced by your browser account: it stays on the device and browser profile where you use DummyDrop.

4. What it never does

  • Send page content, field details, generated values, settings or usage information anywhere.
  • Contact any server, or load or run remote code.
  • Use analytics, advertising, tracking, fingerprinting or cookies.
  • Read pages in the background. It reads a page only while DummyDrop is open on it, or when you press the fill-all shortcut, and only where the browser has given it access.
  • Sell, rent or share information with anyone, or use it for profiling, advertising, or credit decisions.
  • Request access to a website unless you click for it (see Access to pages).

Because nothing is collected, nothing can be transferred to third parties or used for any purpose other than DummyDrop's single purpose: filling the form fields you choose with dummy data. If that ever changed, this policy would be updated first, and any use of user data would follow the Chrome Web Store User Data Policy and its Limited Use requirements.

5. Access to pages

DummyDrop reads a page only through the browser's activeTab permission, which the browser grants for a page when you click the DummyDrop icon or use its keyboard shortcut there. It does not declare any always-on scripts. Optionally, you can approve access to one site at a time (the shield button, or an Allow access button for an embedded frame); the browser asks you each time, and you can remove a site whenever you like. The Permissions page lists every permission and the reason for it.

6. This website

This website is a set of static pages. It sets no cookies, runs no scripts, and has no analytics, advertising, tracking pixels, embedded videos, social media widgets, third-party fonts or forms.

The pages are currently hosted on GitHub Pages. As with any web host, GitHub receives technical information such as your IP address and browser details when your browser requests a page, and may keep logs under its own privacy statement. The publisher does not receive that information from GitHub and does not use it.

7. Third parties

DummyDrop uses no third-party services. The only third-party service involved in your contact with the publisher is GitHub, if you choose to report a problem through GitHub Issues (see Contact). The links on this site to other websites (GitHub, the Chrome Web Store policy page, and similar) are for your information; those sites have their own policies.

8. Your control

  • See and change your data: everything DummyDrop stores is visible and editable in its settings page.
  • Take a copy: Import & export in the settings saves your data as a JSON file.
  • Delete it: Reset in the settings deletes all saved values, profiles, site rules, remembered field types and settings, and the saved window position, after asking you to confirm. Removing DummyDrop from your browser deletes its storage too. Exported files are yours to delete.
  • Withdraw site access: remove a site under Always-on sites in the settings, or in your browser's extension settings.

Data stays on your device until you do one of these.

9. Security

  • DummyDrop makes no network requests and runs no remote code, so there is nothing to intercept in transit.
  • Its extension pages run under a strict Content-Security-Policy (script-src 'self'). Highlights and the floating window are drawn inside closed Shadow DOM, so the page you are testing cannot reach into them.
  • Extension storage is not encrypted. Anyone who can use your computer account or browser profile could read it, and exported files are plain text. Do not save a real password or other secret as one of your values or in a profile. Use dummy credentials only.

10. Children

DummyDrop is a tool for testing and development and is not directed at children. It does not collect personal information from anyone, including children.

11. Your rights

Because the publisher receives none of your information, there is nothing for the publisher to access, correct, export or delete on your behalf. You can do all of that yourself on your device, as described in Your control, whatever privacy law applies to you.

12. Changes to this policy

The date at the top shows when this policy was last updated. If a change would affect how information is handled, the new policy will be published here before the change takes effect.

13. Contact

Questions about this policy are welcome. Please open an issue on the DummyDrop support tracker on GitHub. Issues there are public, so please do not include personal or sensitive information in one. See Support for what to include.