Privacy & data controls
Liberaflow Browser Automation 개인정보처리방침
사용자가 선택한 브라우저 탭의 작업을 기록하고 재생할 때 어떤 정보가 처리되는지,
어디에 저장되는지, 언제 외부 AI 제공자에게 전송될 수 있는지 설명합니다.
시행일: 2026년 8월 10일
최종 업데이트: 2026년 8월 10일
명시적으로 시작
탭 선택, 사전 고지와 동의 없이는 녹화를 시작하지 않습니다.
로컬 우선
녹화 데이터는 같은 컴퓨터의 데스크톱 앱으로 전달되어 암호화 저장됩니다.
화면 캡처 기본 꺼짐
녹화용과 AI 자가치유용 화면 캡처를 각각 따로 켜야 합니다.
AI 전송 전 확인
제공자와 데이터 항목을 먼저 표시하며, 취소하면 전송하지 않습니다.
Liberaflow는 브라우저 자동화 데이터를 판매하거나 맞춤형 광고, 신용평가 또는 대출 판단에 사용하지 않습니다.
개인정보처리방침
한국어 · 기본
1. 적용 범위와 운영자
이 방침은 Liberaflow Browser Automation 브라우저 확장 프로그램과
해당 확장을 연결해 사용하는 Liberaflow 데스크톱 앱의 브라우저 자동화 기능에 적용됩니다.
운영자는 Liberaflow입니다.
2. 처리하는 정보
확장은 사용자가 탭을 선택하고 사전 고지에 동의해 녹화를 시작하거나, 저장된 작업을
재생하도록 요청한 경우에만 해당 탭의 자동화 정보를 처리합니다.
| 구분 |
처리될 수 있는 항목 |
목적 |
| 브라우저 문맥 |
승인된 탭의 URL, 페이지 제목, 탭·창 식별자, 이동 기록과 시각 |
대상 탭 고정, 페이지 이동 기록 및 재생 |
| 사용자 활동 |
클릭, 양식 입력, 선택, 체크, 제출, 키 입력, 다이얼로그 응답 |
워크플로 단계 생성 및 사용자가 요청한 재생 |
| 웹사이트 콘텐츠 |
요소의 역할·접근 가능한 이름·selector 후보, 필요한 DOM 또는 페이지 텍스트 |
클릭 대상 식별, 재생 및 사용자가 요청한 AI 보조 기능 |
| 화면 이미지 |
클릭 전후 화면 또는 재생 실패 화면 |
사용자 가이드 생성 또는 사용자가 선택한 AI 자가치유 |
| 설정·진단 |
연결·녹화 상태, 화면 캡처 선택, 동의 기록, 민감정보가 제거된 오류·실행 기록 |
선택 유지, 연결 복구, 오류 확인과 데이터 삭제 |
사용자가 선택한 웹페이지의 내용에 따라 개인 식별 정보, 건강 정보, 금융·결제 정보,
인증 정보, 개인적인 커뮤니케이션, 위치, 웹 기록, 사용자 활동 또는 기타 웹사이트 콘텐츠가
포함될 수 있습니다. 비밀번호, 일회용 인증 코드, 카드 보안 코드 및 인증 토큰은 구조화된
이벤트 기록에서 제외하며 URL의 민감한 query와 fragment를 제거합니다. 다만 사용자가
화면 캡처를 별도로 켜면 현재 화면에 보이는 정보가 이미지에 포함될 수 있습니다.
3. 처리 목적
- 사용자가 승인한 브라우저 탭의 클릭·입력·선택·이동을 워크플로로 기록
- 저장된 워크플로를 사용자의 요청에 따라 같은 브라우저에서 재생
- 사용자가 선택한 화면 이미지를 단계 확인 및 가이드 문서 작성에 사용
- 사용자가 별도로 동의한 경우 AI를 이용한 단계 편집, 코드 생성, 읽기 또는 재생 실패 복구
- 연결 유지, 오류 진단, 보안 경계 적용 및 사용자가 요청한 삭제 수행
4. 사용자 선택과 수집 시점
- 녹화는 사용자가 대상 탭을 선택하고 제품 내 고지를 확인한 뒤 동의해야 시작됩니다.
- 클릭 전후 화면 캡처와 AI 자가치유 화면 캡처는 기본적으로 꺼져 있고 서로 별도 설정입니다.
- AI 기능은 선택한 제공자, 목적, 전송 데이터와 화면 이미지 포함 여부를 전송 전에 표시합니다.
- 사용자는 동의하지 않고 로컬 녹화·재생·수동 편집을 계속 사용할 수 있으며, 설정에서 기존 AI 동의를 철회할 수 있습니다.
5. 저장 위치와 보유 기간
- 확장은 Chrome의 Native Messaging 통로를 통해 같은 컴퓨터에서 실행 중인 등록된 Liberaflow 데스크톱 앱과 통신합니다.
- 연결·녹화 상태와 두 화면 캡처 선택은 확장 전용 로컬 저장소에 저장됩니다. 확장은 녹화된 워크플로 또는 비밀 자격증명을 Chrome 저장소에 저장하지 않습니다.
- 워크플로, 실행 기록, 설정, 저장형 화면 이미지와 생성물은 운영체제의 Application Support/AppData 영역에 AES-256-GCM으로 암호화됩니다. 복호화 키는 별도의 운영체제 보안 저장소에 보관됩니다.
- 자동 정리는 기본적으로 켜져 있으며 기본 보유 기간은 14일입니다. 사용자는 설정에서 기간을 변경하거나 자동 정리를 끌 수 있습니다.
- AI 자가치유를 위해 만든 임시 화면 이미지는 요청 성공 또는 실패와 관계없이 사용 직후 삭제됩니다.
- 사용자는 워크플로를 개별 삭제하거나, 설정에서 브라우저 자동화 데이터와 암호화 키를 모두 삭제할 수 있습니다.
- 확장 설정은 사용자가 변경하거나 브라우저에서 확장 데이터를 삭제 또는 확장을 제거할 때까지 남을 수 있습니다.
6. 외부 제공자와 선택적 전송
녹화 자체는 로컬에서 이루어집니다. 사용자가 AI 기능을 직접 실행하고 전송에 동의한 경우에만
선택한 제공자에게 기능 수행에 필요한 데이터가 전달됩니다. 기능에 따라 민감정보가 제거된 URL,
DOM 또는 페이지 텍스트, 워크플로 단계, 입력값, 사용자의 요청 문구와 사용자가 허용한 화면 이미지가
포함될 수 있습니다.
현재 선택 가능한 제공자는 OpenAI(Codex), Anthropic(Claude) 및 로그인한 사용자에게 제공되는
OpenRouter입니다. 실제 제공자와 데이터 항목은 앱이 전송 직전에 표시합니다. 외부 제공자의 처리 지역,
보유 기간 및 모델 개선 사용 여부는 사용자의 계정 유형·설정과 각 제공자의 최신 정책에 따릅니다.
사용자는 전송 화면에서 취소하여 국외 전송을 거부할 수 있으며, 이 경우 해당 AI 기능만 실행되지 않습니다.
Liberaflow는 사용자 데이터를 판매하지 않으며, 맞춤형 광고, 신용평가 또는 대출 판단을 위해
사용하거나 이전하지 않습니다. 법령상 의무가 있는 경우를 제외하고 공개한 단일 목적과 무관하게
사용자 데이터를 제공하지 않습니다.
7. Chrome Web Store Limited Use
Chrome API에서 받은 정보의 사용 및 전송은 Chrome Web Store 사용자 데이터 정책과 Limited Use
요건을 준수합니다. 해당 정보는 공개된 브라우저 자동화 기능을 제공하거나 개선하기 위한 목적으로만
사용하며, 사용자 데이터 판매, 맞춤형 광고, 신용 판단 또는 허용되지 않은 사람의 열람에 사용하지 않습니다.
Chrome Web Store Limited Use 정책 보기
8. 파기 방법
사용자가 삭제를 요청하거나 설정한 보유 기간이 지나면 관련 암호화 파일을 로컬 저장소에서 삭제합니다.
전체 삭제를 선택하면 브라우저 자동화 데이터 디렉터리와 암호화 키를 함께 제거합니다. AI 요청용 임시
화면 이미지는 사용 직후 삭제합니다. 외부 AI 제공자에게 이미 전송된 데이터의 삭제는 해당 제공자의
계정 설정과 개인정보처리방침에 따릅니다.
9. 이용자의 권리와 행사 방법
- 녹화·재생을 중지하고 화면 캡처 설정을 언제든 끌 수 있습니다.
- AI 전송 화면에서 취소하거나 설정에서 저장된 AI 동의를 철회할 수 있습니다.
- 저장된 워크플로와 실행 기록을 개별 삭제하거나 브라우저 자동화 데이터를 모두 삭제할 수 있습니다.
- 개인정보 처리에 관한 열람·정정·삭제·처리정지 요청은 아래 연락처로 접수할 수 있습니다.
10. 안전성 확보 조치
- 승인된 탭과 최상위 frame에만 녹화·재생 세션을 고정합니다.
- Native Messaging 상대와 앱 세션을 검증하고 연결이 끊기면 녹화·재생을 안전 상태로 중지합니다.
- 저장 데이터는 AES-256-GCM으로 암호화하고 키는 운영체제 보안 저장소에 분리합니다.
- 비밀번호·OTP·카드 보안 코드·인증 토큰과 민감한 URL 값을 구조화된 기록 및 진단 로그에서 제거합니다.
- 화면 캡처와 외부 AI 전송은 기본 꺼짐 및 별도 동의 원칙을 적용합니다.
11. 자동 수집 장치
이 개인정보처리방침 페이지는 광고·분석용 쿠키를 설치하지 않습니다. 브라우저 확장은 웹사이트의
쿠키나 로컬 저장소 값을 읽기 위한 권한을 요청하지 않습니다.
12. 방침 변경
처리 항목, 목적, 제공자 또는 사용자 선택 방식이 변경되면 시행 전에 이 페이지와 제품 내 고지를
업데이트합니다. 중요한 변경으로 새로운 데이터 처리가 필요한 경우에는 기존 동의와 별도로 다시 알리고
필요한 동의를 받습니다.
Privacy Policy
English
1. Scope and operator
This policy applies to the Liberaflow Browser Automation browser extension
and the Browser Automation features of the Liberaflow desktop application used with it.
The operator is Liberaflow.
2. Information processed
The extension processes automation information from a browser tab only after the user selects
that tab and consents to start recording, or asks to replay a saved workflow.
| Category |
Information that may be processed |
Purpose |
| Browser context |
Approved tab URL, page title, tab and window identifiers, navigation history and timestamps |
Pinning the approved tab and recording or replaying navigation |
| User activity |
Clicks, form inputs, selections, checks, submissions, key presses and dialog responses |
Creating workflow steps and performing user-requested replay |
| Website content |
Element role, accessible name, selector candidates and necessary DOM or page text |
Identifying targets, replay and user-requested AI assistance |
| Screenshots |
Before-and-after action images or a failed replay screen |
User guides or user-selected AI-assisted recovery |
| Settings and diagnostics |
Connection and recording state, screenshot choices, consent records and sanitized error or run records |
Remembering choices, connection recovery, diagnostics and deletion |
Depending on the page selected by the user, this information may contain personally identifiable,
health, financial and payment, authentication, personal communication, location, web history,
user activity or other website content. Passwords, one-time codes, card security codes and
authentication tokens are excluded from structured event capture, and sensitive URL query and
fragment values are removed. A screenshot separately enabled by the user may still include
information visible on the screen.
3. Purposes
- Record clicks, inputs, selections and navigation in a user-approved browser tab as a workflow.
- Replay a saved workflow in the same browser when requested by the user.
- Use screenshots selected by the user for step review and guide creation.
- Provide AI-assisted editing, code generation, reading or failed-step recovery after separate consent.
- Maintain the connection, diagnose errors, enforce security boundaries and perform requested deletion.
4. User choices and timing
- Recording starts only after the user selects a tab, reviews the in-product disclosure and consents.
- Before-and-after recording screenshots and AI recovery screenshots are off by default and use separate settings.
- Before an AI transmission, the app shows the provider, purpose, data categories and whether a screenshot is included.
- The user may decline and continue using local recording, replay and manual editing, and may revoke saved AI consent in Settings.
5. Storage and retention
- The extension communicates with the registered Liberaflow desktop app on the same computer through Chrome Native Messaging.
- Connection and recording state and the two screenshot choices are stored in extension-local storage. Recorded workflows and secret credentials are not stored in Chrome storage.
- Workflows, run records, settings, persistent screenshots and generated artifacts are encrypted with AES-256-GCM in the operating system's Application Support/AppData area. The decryption key is kept separately in operating-system secure storage.
- Automatic cleanup is enabled by default with a default retention period of 14 days. The user may change the period or turn automatic cleanup off.
- A temporary AI recovery screenshot is deleted immediately after use, whether the request succeeds or fails.
- The user may delete workflows individually or delete all Browser Automation data and the encryption key in Settings.
- Extension settings may remain until the user changes them, clears extension data or uninstalls the extension.
6. External providers and optional transfers
Recording itself occurs locally. Data is sent to a selected provider only when the user directly
invokes an AI feature and consents to the transmission. Depending on the feature, this may include
sanitized URL context, DOM or page text, workflow steps, input values, the user's instruction and
a screenshot the user has allowed.
Currently available providers are OpenAI (Codex), Anthropic (Claude), and OpenRouter for signed-in
users. The app identifies the actual provider and data categories immediately before transmission.
Processing location, retention and model-improvement practices depend on the user's account type,
settings and the provider's current policy. The user may refuse an international transfer by
canceling the transmission; only that AI feature will be unavailable.
Liberaflow does not sell user data or use or transfer it for personalized advertising, credit
scoring or lending decisions. Except when legally required, Liberaflow does not transfer user data
for purposes unrelated to the disclosed single purpose.
7. Chrome Web Store Limited Use
The use and transfer of information received from Chrome APIs complies with the Chrome Web Store
User Data Policy, including the Limited Use requirements. Such information is used only to provide
or improve the disclosed Browser Automation features, and not for selling user data, personalized
advertising, credit decisions or unauthorized human review.
Read the Chrome Web Store Limited Use policy
8. Deletion
When the user requests deletion or the selected retention period expires, the related encrypted
files are deleted from local storage. Choosing Delete All removes the Browser Automation data
directory and encryption key. Temporary AI screenshots are deleted immediately after use. Deletion
of information already sent to an external AI provider is governed by that provider's account
controls and privacy policy.
9. User rights
- Stop recording or replay and turn either screenshot setting off at any time.
- Cancel an AI transmission or revoke saved AI consent in Settings.
- Delete saved workflows and run records individually or delete all Browser Automation data.
- Request access, correction, deletion or restriction by contacting us below.
10. Security measures
- Recording and replay sessions are pinned to the approved top-level tab.
- The Native Messaging peer and app session are verified, and disconnection stops recording and replay safely.
- Stored data is encrypted with AES-256-GCM and the key is separated into operating-system secure storage.
- Passwords, OTPs, card security codes, authentication tokens and sensitive URL values are removed from structured records and diagnostic logs.
- Screenshots and external AI transmissions follow off-by-default and separate-consent controls.
11. Automatic collection technologies
This privacy-policy page does not set advertising or analytics cookies. The browser extension does
not request permission to read website cookies or local-storage values.
12. Changes
If data categories, purposes, providers or user controls change, we will update this page and the
in-product disclosure before the change takes effect. Material new processing will be disclosed
separately and, where required, will require new consent.