Local prompt risk detection before data is sent to AI tools
Trust-Prompt adds a local precheck layer between you and AI chat tools. Before a prompt is sent, it is analyzed in your browser — deterministic, offline, and enforced before transmission.
Status
Status
Panel controls are a website demo. They do not change your real extension settings.
Controls
StoreBasic is ChatGPT-only. Pro adds scope controls, upload policy, settings lock, and a local audit view when licensed.
Step 1 – Intercept before sending
Trust-Prompt reliably holds the send action until the decision is known (pre-send enforcement).
StoreBasic intercepts prompt submissions on supported sites (ChatGPT). Trust-Prompt prevents sending until the check finishes — so the decision happens before transmission.
Warning — review before sending
This message contains medium-risk indicators. Proceed only via explicit confirmation.
Simulation for explanation. Real enforcement applies in StoreBasic and Pro.
Real UI example: WARN requires explicit user confirmation. (StoreBasic + Pro)
Step 2 – Local rule-based analysis
Signals are detected locally (offline) and mapped to WARN/BLOCK decisions with a deterministic ruleset.
In StoreBasic, prompts are evaluated locally with a versioned ruleset: no servers, no cloud processing, no AI calls. Pro uses the same deterministic approach and adds Pro-only modules around it.
- Financial data (e.g., valid IBANs verified via MOD97) — BLOCK
- Payment card combinations (card + CVV / card + expiry) — BLOCK
- Secrets and tokens (API keys, JWT-like tokens, private keys) — BLOCK
- PII indicators (email, phone number, address-like patterns) — WARN
- Upload event detection (attachment added) — no file inspection (StoreBasic + Pro)
Step 3 – Clear decision (WARN / BLOCK)
Two enforced outcomes: WARN (confirm to proceed) and BLOCK (send prevented).
Trust-Prompt surfaces a decision before sending: BLOCK prevents transmission; WARN requires explicit consent to proceed.
WARN example (StoreBasic + Pro).
BLOCK example (StoreBasic + Pro).
Audit (Pro)
Pro adds a local audit view for governance signals (counts + rule IDs) without storing prompt content.
Pro only: A local audit view can help governance by showing usage signals (e.g., checks, warnings, blocks, and user decisions) without storing prompt content.
Checks
Warnings
Blocks
Proceed / Stop / Redact
Awareness score
Audit panel is a simulation for the website. Audit is Pro only.
File uploads
StoreBasic never reads files. It only detects an attachment event and warns. Pro can enforce upload policies.
StoreBasic: no file inspection, no OCR, no document analysis. Trust-Prompt only detects the attachment event and warns users to avoid uploading sensitive documents to AI tools.
Pro: adds upload policy controls (allow / warn / block) for stricter governance.
Upload event warning (StoreBasic + Pro). File content is not read.
Pro controls (interactive preview)
Click the items below to preview what Pro modules do (website demo).
Pro only: modules help protect settings and enforce policies in stricter environments. Click below to preview what each Pro control does.
Privacy by design (GDPR / EU AI Act alignment)
Designed to minimize data exposure: local checks, no telemetry, and no prompt storage by default.
- No telemetry
- No logging of prompt content
- No external requests for prompt checking (StoreBasic)
- No user profiling
Trust-Prompt follows privacy-by-design and data-minimization principles aligned with GDPR/DSGVO expectations. It is a technical safeguard and does not replace legal advice or internal compliance processes.
Official references: GDPR (Regulation (EU) 2016/679) — EUR-Lex · EU AI Act (Regulation (EU) 2024/1689) — EUR-Lex · European Commission — Regulatory framework for AI