SiteEgress compliance

Compliance mapping.

This page maps product behavior to common review questions. Legal applicability depends on the publisher, user, deployment, jurisdiction, and use case.

이 페이지는 제품 관행을 설명하며 인증 또는 법률 의견이 아닙니다.

TopicProduct practiceEvidence and boundary
Single purposeWebsite privacy and browser-visible data-flow inspectionProduct pages, manifest description, and extension UI use the same narrow purpose.
URL 쿼리 최소화정리된 매개변수 이름만 사용값은 검사하거나 보관하지 않습니다.
Data minimizationRetain metadata and categories instead of typed valuesNo passwords, form values, Cookie values, storage values, bodies, or raw destination IPs in reports.
User choiceOptional history and Geo InsightsBoth features are off by default and can be cleared or disabled.
사용자 제어 비교선택 전후 체크포인트와 로컬 영수증동의 UI를 자동 클릭하지 않고 법적 증거로 표시하지 않습니다.
TransparencyExplainable evidence types, score limits, permissions, and third-party lookupPrivacy policy names ipwho.is and explains country-location limitations.
Limited useAudit data is used only for the product's user-facing purposeNo sale, advertising profile, creditworthiness use, or unrelated transfer.
SecurityPackaged code, bounded data, sanitization, and restrictive exportsSecurity page and responsible disclosure channel document the controls and limitations.
Optional local bridgeDual opt-in and minimized evidence exchange with Agent GuardNo new Chrome permission; no value-bearing content or raw IP addresses; peer context cannot rewrite the audit.
Reference frameworks

How the product relates to common review questions

Chrome Web Store

The published listing, permission justifications, data-use disclosure, privacy policy, screenshots, and extension behavior should remain consistent.

GDPR concepts

The design supports data minimization, purpose limitation, transparency, user choice, and local deletion. This is not a determination that a user or publisher is compliant.

CCPA/CPRA concepts

SiteEgress does not sell or share audit data for cross-context behavioral advertising. Applicability and controller/business duties remain case-specific.

Enterprise review

Organizations should separately assess browser policy, approved extensions, third-party lookup rules, retention, legal basis, and incident-response requirements.